Malware News New cryptomining malware doesn't need a browser session to operate

LASER_oneXM

Level 37
Thread author
Verified
Top Poster
Well-known
Feb 4, 2016
2,520
XMRig is an endpoint cryptomining malware capable of doing damage without an active browser session, and its use is on the rise.

  • A new cryptomining malware, XMRig, is doing something that previous strains haven't: It can operate without an open browser session.
  • Cryptomining malware is the hot new threat, and it's adapting. Security professionals need to be careful not to rely on old methods to protect their systems.
Antimalware company Check Point has released their latest Most Wanted Malware report for March, and it's warning of a surge in cryptomining malware attacks driven by the XMRig malware.
Cryptomining malware, which uses the computing resources of an infected machine to mine cryptocurrency on behalf of the attacker, has been booming in the past several months, both on PCs and mobile devices. What makes XMRig worthy of particular attention is that it signals a departure from previous cryptomining malware models, which have generally required an open browser session.

XMRig is endpoint malware, meaning it infects the target machine and can operate without an active browser session, a shift which spells trouble for security professionals.
"Cryptomining malware has been quite the success story for cybercriminals, and XMRig's rise indicates that they are actively invested in modifying and improving their methods in order to stay ahead of the curve," Maya Horowitz, Check Point's threat intelligence group manager, said in the report.
....
..
According to Palo Alto Networks, XMRig malware has infected more than 15 million machines around the world, with the bulk of the victims located in Asia, Africa, and South America.
It appears to be spreading via file sharing websites like DropMeFiles, 4Sync, and Rapid Files, which all feature public linking to downloads. Palo Alto Networks also reported instances of internet users being infected by malicious Adfly advertisements as well.
...
......
 
  • Like
Reactions: harlan4096

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top