web analytics
  • News and Threat Analysis

    THANATOSCRYPT IS EXPLOITING BLUEKEEP VULNERABILITY TO MINE CRYPTO FROM YOUR SYSTEMS

    Some days before, Ethical Debuggers presented how Chinese hackers are attacking servers to mine cryptocurrency from them. Today, we are presenting a similar campaign ,which is currently going on ,to mine cryptocurrency from your systems . It was found by Tencent Security Intelligence Team. This time the hackers used a simple phenomenon to attack on your systems. They used a Bluekeep vulnerability which was discovered in early May, an year ago. It was a vulnerability in Microsoft’s Desktop Protocol and allows attacker to execute arbitrary code post exploitation. This vulnerability was regarded as one of the high-risk vulnerability and can be tracked via CVE-2019-0708. On 6 September 2019, Metasploit launched…

  • News and Threat Analysis

    BEWARE !CHINESE GoLang MALWARE MAKING SERVERS A CRYPTOMINER

    In this article, we will talk about a campaign which is being run by Chinese Cyber criminals and this time they don’t want to watch what we are doing, rather they want some resources from our system to mine cryptocurrency. Some researchers from Barracuda have researched about a new variant of Golang(a high level language) malware that is making victim’s machine a cryptominer.This malware does not affect our local machines, rather it targets the back end servers which are either running on Linux or windows. They directly attack on the backbone of a web application framework and exploit some vulnerabilities in the server. After getting settled inside the machine, they start…