Business Daily Media

The Times Real Estate

.

Cloud Systems Are the New Battleground for Crypto Mining Threat Actors

Trend Micro report warns of growing attack surface for CPU-mining

HONG KONG SAR - Media OutReach - 30 March 2022 - Trend Micro Incorporated (TYO: 4704; TSE: 4704), a global cybersecurity leader, today announced a new report revealing a fierce, hour-by-hour battle for resources among malicious cryptocurrency mining groups.

To read the "A Floating Battleground Navigating the Landscape of Cloud-Based Cryptocurrency Mining" report: https://www.trendmicro.com/vinfo/hk/security/news/cybercrime-and-digital-threats/probing-the-activities-of-cloud-based-cryptocurrency-mining-groups

"Just a few hours of compromise could result in profits for the perpetrators. That's why we're seeing a continuous fight for cloud CPU resources. It's akin to a real-life capture-the-flag, with the victim's cloud infrastructure the battleground," said Stephen Hilt, Senior Threat Researcher at Trend Micro. "Threats like this need joined-up, platform-based security to ensure the bad guys have nowhere to hide. The right platform will help teams map their attack surface, assess risk, and apply for the right protection without adding excessive overheads."

Threat actors are increasingly scanning for and exploiting these exposed instances, as well as brute-forcing SecureShell (SSH) credentials, in order to compromise cloud assets for cryptocurrency mining, the report reveals. Targets are often characterized by having outdated cloud software in the cloud environment, poor cloud security hygiene, or inadequate knowledge on how to secure cloud services and thus easily exploited by threat actors to gain access to the systems.

Cloud computing investments have surged during the pandemic. But the ease with which new assets can be deployed has also left many cloud instances online for longer than needed—unpatched and misconfigured.

On one hand, this extra computing workload threatens to slow key user-facing services for victim organizations, as well as increasing operating costs by up to 600% for every infected system.

Crypto mining can also be a precursor to more serious compromise. Many mature threat actors deploy mining software to generate additional revenue before online buyers purchase access for ransomware, data theft, and more.

The Trend Micro report details the activity of multiple threat actor groups in this space, including:

Outlaw, which compromises IoT devices and Linux cloud servers by exploiting known vulnerabilities or performing brute-force SSH attacks.

TeamTNT, which exploits vulnerable software to compromise hosts before stealing credentials for other services to help it move around to new hosts and abuse any misconfigured services.

Kinsing, which sets up an XMRig kit for mining Monero and kicks any other miners off a victim system.

8220, which has been observed fighting Kinsing over the same resources. They frequently eject each other from a host and then install their own cryptocurrency miners.

Kek Security, which has been associated with IoT malware and running botnet services.

To mitigate the threat from cryptocurrency mining attacks in the cloud, Trend Micro recommends organizations to:

  • Ensure systems are up-to-date and running only the required services
  • Deploy firewall, IDS/IPS, and cloud endpoint security to limit and filter network traffic to and from known bad hosts
  • Eliminate configuration errors via Cloud Security Posture Management tools
  • Monitor traffic to and from cloud instances and filter out domains associated with known mining pools
  • Deploy rules that monitor open ports, changes to DNS routing, and utilization of CPU resources from a cost perspective

About Trend Micro

Trend Micro, a global cybersecurity leader, helps make the world safe for exchanging digital information. Fueled by decades of security expertise, global threat research, and continuous innovation, Trend Micro's cybersecurity platform protects hundreds of thousands of organizations and millions of individuals across clouds, networks, devices, and endpoints. As a leader in cloud and enterprise cybersecurity, the platform delivers a powerful range of advanced threat defense techniques optimized for environments like AWS, Microsoft, and Google, and central visibility for better, faster detection and response. With 7,000 employees across 65 countries, Trend Micro enables organizations to simplify and secure their connected world.

#TrendMicro

News from Asia

Galaxy Macau Celebrates 34 Awards, Continuing Its Ongoing Legacy of Luxury in Tourism and Leisure

MACAU SAR - Media OutReach Newswire - 17 January 2025 - As the world step into 2025, Galaxy Macau™, the world-class luxury integrated resort (hereafter referred to as "Galaxy Macau"), has proudly ...

The Functional Foods for Wellness Summit BKK 2025 concluded successfully in Bangkok, Thailand, on January 16th

BANGKOK, THAILAND - Media OutReach Newswire – 17 January 2025 - The Functional Foods for Wellness Summit BKK 2025 concluded successfully in Bangkok, Thailand, on January 16th. The summit received ...

1st APAC Intelligent Finance Forum and "Embarking on Prosperity Journey Together" Partnership Convention Concluded Successfully in Hong Kong

HONG KONG SAR - Media OutReach Newswire - 17 January 2025 - On January 16, 2025, the 1st APAC Intelligent Finance Forum, hosted by the Global Corporate Scale Management Association and co-organ...

CUHK: The influential academic leader in the world

HONG KONG SAR - Media OutReach - 15 November 2021 - Established in 1963 and still expanding, The Chinese University of Hong Kong (CUHK) is ranked among the best research universities internationall...

Nomination period for the Broermann Medical Innovation Award started

Prize money of one million euros higher than the prize money for the Nobel Prize for Medicine Award honors researchers worldwide who have done pioneering work in medicine, biotech...

Galaxy Macau Collaborates with "Luzhou Laojiao · Guojiao 1573" Spring Festival Tasting Pop-Up Store Debuts

Experience Exclusive 2025 Yisi Snake Year Baijiu at Galaxy Macau Until March 31, 2025 MACAU SAR - Media OutReach Newswire - 18 January 2025 - In the spirit of the Lunar New Year, the world-class ...

VinFast officially enters the Indian market with the launch of the VF 6 and VF 7

NEW DELHI, INDIA - Media OutReach Newswire - 18 January 2025 - VinFast officially announces its first electric vehicles for the Indian market at the Bharat Mobility Global Exp...

Kim Yew Integrated Celebrates 40 Years With $68,000 Donation To The Business Times Budding Artists Fund

SINGAPORE - Media OutReach Newswire - 20 January 2025 - Led by a new management and board since 2021, Kim Yew Integrated marked its 40th anniversary with a $68,000 donation to The Business Times B...

Trend Micro is Recognized as a 2024 Gartner® Peer Insights™ Customers’ Choice for Cloud-Native Application Protection Platforms

The Gartner® Peer Insights™ Customers' Choice Distinction is based on feedback and ratings from end-user professionals who have experience with the product or service HONG KONG SAR - Media OutReac...

Wildberries Expands AI-Based Tools for Marketplace Users

MOSCOW, RUSSIA - Media OutReach Newswire - 20 January 2024 - Wildberries, one of the largest e-commerce platforms in Eurasia, has expanded its use of artificial intelligence (AI) to enhance the us...

When Will Infrastructure Companies See Gains from Generative AI?

A lot of questions are swirling about the state of generative AI right now. How far along are companies with their bespoke GenAI efforts? Are orga...

DLPA partners with Crestcom to bring its leadership training solutions

Dynamic Leadership Programs Australia (DLPA), a leading provider of leadership training and workforce strategy solutions, has joined forces with r...

Infosys and Tennis Australia Create New Generative AI Innovations at the Australian Open 2025

Infosys (NSE, BSE, NYSE: INFY), a global leader in next-generation digital services and consulting, in partnership with Tennis Australia, has unv...

UBH Group Pioneers Australia's Path to Nuclear Sovereignty

Sovereign technology company, UBH Group, has achieved a landmark milestone as the first organisation in the Southern Hemisphere to secure ISO 1944...

The unsung heroes: How MSPs can safeguard SMBs while boosting profitability

In Australia, small-to-medium-sized businesses (SMBs) form the backbone of the economy, accounting for 95% of all businesses. Yet, they remain pri...

Businesses grapple with wage compliance as new laws take effect

Australian businesses are navigating a landscape of rising compliance complexity as new wage theft laws under The Closing Loopholes Acts take hold...

Sell by LayBy