Attacker Installs Crypto Mining Malware on Over 170,000 Devices

gepubliceerd op by Coindesk | gepubliceerd op

More than 170,000 devices in Brazil were targeted in a cryptojacking attack last month.

According to a blog post published by security firm Trustwave, a wide-scale cyberattack was launched on MicroTik routers late last month.

The effort led to the installation of the Coinhive mining software in a "Mass" infection of more than 17,000 devices.

Trustwave security researcher Simon Kenin wrote that all of the devices used "The same sitekey," indicating that one entity reaped the mined tokens from all of the devices.

According to a previous post by Trustwave, also co-authored by Kenin, Coinhive gained traction in 2017 as a service that claimed to provide monetizing solutions for websites without using any advertisements.

Instead, site owners were to embed JavaScript code that would take hold of the central processing unit power of site visitors to mine the cryptocurrency monero.

Mining reportedly ended up costing site visitors up to 99 percent of their CPU processing power, leading to further issues for consumers as their devices generated more heat and used up large amounts of electricity.

Trustwave has since released a detection tool to block the mining malware, and as Kenin explains in his most recent post, readers should heed his "Warning call" and patch any MikroTik devices "As soon as possible," emphasizing that the severity of the attacks could reach "Hundreds of thousands" of consumers around the globe.

Kenin also reports that illicit cryptocurrency mining operations such as these are "a trend we've been seeing a lot of over the last three years, as attackers shift from ransomware into the world of miners."

Such sentiments are being echoed by other cybersecurity firms such as Skybox Security which also reported in their 2018 mid-year update that among cybercriminals, crypto mining now accounted for 32 percent of all cyberattacks, with ransomware making up 8 percent.

x