A relatively quiet week with several interesting research articles discussing increasingly sophisticated cryptocurrency mining and stealing malware, a detailed technical report on the BCH miner hash fight, and a fun vulnerability hunt inside AntMiner firmware.
Malware:
The Nansh0u Campaign - Hackers Arsenal Grows Stronger - a detailed report on an advanced threat actor targeting MS-SQL and PHPMyAdmin servers. The actor is unique in their use of Easy Programming Language (EPL), a Chinese-based programming language as well as an advanced arsenal including kernel rootkits, signed backdoors with the ultimate goal of Monero mining.
YouTube Cryptocurrency Videos Pushing Info-Stealing Trojan - a phishing campaign on YouTube advertising “bitcoin generator” was found to be distributing a Qulab Trojan. The AutoIT-based malware has a number of features including credential harvester and a wallet clipper designed to replace cryptocurrency addresses stored in the clipboard for a number of coin types …
Keep reading with a 7-day free trial
Subscribe to Blockchain Threat Intelligence to keep reading this post and get 7 days of free access to the full post archives.