Business Daily Media

The Times Real Estate

.

Cloud Systems Are the New Battleground for Crypto Mining Threat Actors

Trend Micro report warns of growing attack surface for CPU-mining

HONG KONG SAR - Media OutReach - 30 March 2022 - Trend Micro Incorporated (TYO: 4704; TSE: 4704), a global cybersecurity leader, today announced a new report revealing a fierce, hour-by-hour battle for resources among malicious cryptocurrency mining groups.

To read the "A Floating Battleground Navigating the Landscape of Cloud-Based Cryptocurrency Mining" report: https://www.trendmicro.com/vinfo/hk/security/news/cybercrime-and-digital-threats/probing-the-activities-of-cloud-based-cryptocurrency-mining-groups

"Just a few hours of compromise could result in profits for the perpetrators. That's why we're seeing a continuous fight for cloud CPU resources. It's akin to a real-life capture-the-flag, with the victim's cloud infrastructure the battleground," said Stephen Hilt, Senior Threat Researcher at Trend Micro. "Threats like this need joined-up, platform-based security to ensure the bad guys have nowhere to hide. The right platform will help teams map their attack surface, assess risk, and apply for the right protection without adding excessive overheads."

Threat actors are increasingly scanning for and exploiting these exposed instances, as well as brute-forcing SecureShell (SSH) credentials, in order to compromise cloud assets for cryptocurrency mining, the report reveals. Targets are often characterized by having outdated cloud software in the cloud environment, poor cloud security hygiene, or inadequate knowledge on how to secure cloud services and thus easily exploited by threat actors to gain access to the systems.

Cloud computing investments have surged during the pandemic. But the ease with which new assets can be deployed has also left many cloud instances online for longer than needed—unpatched and misconfigured.

On one hand, this extra computing workload threatens to slow key user-facing services for victim organizations, as well as increasing operating costs by up to 600% for every infected system.

Crypto mining can also be a precursor to more serious compromise. Many mature threat actors deploy mining software to generate additional revenue before online buyers purchase access for ransomware, data theft, and more.

The Trend Micro report details the activity of multiple threat actor groups in this space, including:

Outlaw, which compromises IoT devices and Linux cloud servers by exploiting known vulnerabilities or performing brute-force SSH attacks.

TeamTNT, which exploits vulnerable software to compromise hosts before stealing credentials for other services to help it move around to new hosts and abuse any misconfigured services.

Kinsing, which sets up an XMRig kit for mining Monero and kicks any other miners off a victim system.

8220, which has been observed fighting Kinsing over the same resources. They frequently eject each other from a host and then install their own cryptocurrency miners.

Kek Security, which has been associated with IoT malware and running botnet services.

To mitigate the threat from cryptocurrency mining attacks in the cloud, Trend Micro recommends organizations to:

  • Ensure systems are up-to-date and running only the required services
  • Deploy firewall, IDS/IPS, and cloud endpoint security to limit and filter network traffic to and from known bad hosts
  • Eliminate configuration errors via Cloud Security Posture Management tools
  • Monitor traffic to and from cloud instances and filter out domains associated with known mining pools
  • Deploy rules that monitor open ports, changes to DNS routing, and utilization of CPU resources from a cost perspective

About Trend Micro

Trend Micro, a global cybersecurity leader, helps make the world safe for exchanging digital information. Fueled by decades of security expertise, global threat research, and continuous innovation, Trend Micro's cybersecurity platform protects hundreds of thousands of organizations and millions of individuals across clouds, networks, devices, and endpoints. As a leader in cloud and enterprise cybersecurity, the platform delivers a powerful range of advanced threat defense techniques optimized for environments like AWS, Microsoft, and Google, and central visibility for better, faster detection and response. With 7,000 employees across 65 countries, Trend Micro enables organizations to simplify and secure their connected world.

#TrendMicro

News from Asia

Generali Hong Kong Champions Inclusion Through LGBTQI+ Video Series Reaching Over 5 Million Views

HONG KONG SAR - Media OutReach Newswire - 24 February 2025 - Generali Hong Kong continues to lead efforts in Diversity, Equity, and Inclusion (DE&I) through its continued commitment to fosteri...

Bupa expands its Connected Care commitment with the new Global Prestige VHIS Plan (Signature) for discerning customers

Bupa introduces a prestigious VHIS plan with enhanced protection, personalised health concierge services, and dedicated health expertise for those who seek the best HONG KONG SAR - Media Out...

XTransfer Expands U.S. Footprint with 5 Additional Payment Licenses

Strengthening Global Trade Financial Solutions NEW YORK, US - Media OutReach Newswire - 24 February 2025 - XTransfer, a leading global B2B cross-border trade payment platform, continues solidifyi...

Sahm Capital Empowers Investors at CMF Riyadh 2025 Investor Bootcamp

RIYADH, SAUDI ARABIA - Media OutReach Newswire - 24 February 2025 - Sahm Capital, a leading financial services provider, empowered investors at the CMF Riyadh 2025 Investor Bootcamp. Hadeel Bedeer...

ISCA Forms Partnership with Xi'an Jiaotong-Liverpool University (XJTLU) to Establish Singapore Chartered Accountant Qualification Programme in China

SINGAPORE - Media OutReach Newswire - 24 February 2025 - The Institute of Singapore Chartered Accountants (ISCA) has signed a Memorandum of Understanding (MOU) with Xi'an Jiaotong-Liverpool Univer...

DFI Retail Group to Announce 2024 Full Year Financial Results and Host Analyst Presentation Live Webcast

HONG KONG SAR - Media OutReach Newswire - 20 February 2025 - DFI Retail Group Holdings Limited will announce its 2024 Full Year Results after market close on 10 March 2025, followed by an analyst ...

Chatsworth International School Celebrates 30 Years of Excellence

SINGAPORE - Media OutReach Newswire - 25 February 2025 - Chatsworth International School, a leading international school in Singapore, is proud to celebrate its 30th anniversary this year. Since ...

Musk, memecoins, and the crypto market: Octa broker's expert view

KUALA LUMPUR, MALAYSIA - Media OutReach Newswire - 25 February 2025 - Over the past few years, the strategic endorsements, enigmatic tweets, and business manoeuvres of Elon Musk have caused shock ...

Etiqa Insurance Singapore Returns as Official Travel Insurer at NATAS Travel Fair 2025

Travel, Explore, Live It with Etiqa’s Extensive Travel Insurance Offers and Exciting Prizes SINGAPORE - Media OutReach Newswire - 25 February 2025 - Etiqa Insurance Singapore, a leading general a...

Asian Hardware Online Exhibition 2025 Grand Opening – A Premier B2B Hardware Event

TAIPEI, TAIWAN - Media OutReach Newswire – 25 February 2025 - The Asian Hardware Online Exhibition 2025 (AsianHardware 2025) is set to redefine the hardware products industry with its innovative h...

Small and medium size businesses failing to realise the significant benefits and cost savings of AI

Experienced business marketing and sales strategist, Jennifer Benedek, founder and director of FWD Focus, is set to host a much-needed ‘Human+AI M...

How women can thrive in business: Renee Gracie’s top tips

Empowering women entrepreneurs is essential for fostering economic growth, innovation, and social progress. Women-owned businesses contribute sign...

New sales and partnerships heads at Quickli point to strong growth

Australia’s leading mortgage serviceability platform, Quickli, today announces the appointment of two new leaders to its team—Jennifer Roche and D...

Breaking Barriers: How Buxton’s Sophie is Redefining Business Development

In December 2024, Sophie added another accolade to her impressive career, receiving the National Business Development Manager of the Year Award at ...

Brisbane Welcomes World's Leading International Agritech Startups for Agventure Downunder

Brisbane will become the epicentre of global agrifood innovation this week and it welcomes the world’s leading agritech startups for Agventure Dow...

Shearwater Capital Invests in EvenBetter.ai to Drive Gender Pay Gap Action

EvenBetter.ai, a Sydney-based startup focused on helping Australian businesses build evenly to address gender pay equity, has secured a $500,000 i...

Sell by LayBy