Tuesday, February 7, 2023
  • Login
CryptoMoon.News
  • Home
  • Bitcoin
  • Ethereum
  • Altcoin
  • NFTs
  • Metaverse
  • Crypto101
    • Blockchain101
    • Altcoin101
    • Defi101
    • Funding101
    • How to Crypto
  • Press Release
  • Contact Us
No Result
View All Result
  • Home
  • Bitcoin
  • Ethereum
  • Altcoin
  • NFTs
  • Metaverse
  • Crypto101
    • Blockchain101
    • Altcoin101
    • Defi101
    • Funding101
    • How to Crypto
  • Press Release
  • Contact Us
No Result
View All Result
CryptoMoon.News
No Result
View All Result
Home Altcoin

Hackers Net Thousands in Monero Thanks to Vulnerability in Network Weathermap Plugin

admin by admin
July 30, 2022
in Altcoin
0
Hackers Net Thousands in Monero Thanks to Vulnerability in Network Weathermap Plugin
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter

U.S security firm Trend Micro has discovered a Monero crypto-mining attack targeting Linux Servers. The latest attack has been linked to an earlier $3 million USD Windows hack.


According to the Trend Micro report, a group has taken advantage of a vulnerability in the Network Weathermap plugin for Cacti. The open-source visualization tool is widely used by ISPs, internet exchanges, telecommunications networks, and Fortune 500 companies to map network activity.

Hackers Have Made $75,000 USD So Far

Trend Micro’s Smart Protection Network indicates the hack is still ongoing and primarily affects Network Weathermap users in Japan, Taiwan, China, the U.S, and India. It has discovered two Monero wallets receiving funds from the hack totaling illegal crypto-mining returns of $74,677 as of March 21st, 2018.

Figure 2. Country distribution of the malicious cryptocurrency-mining campaign

The Network Weathermap attack has been connected to an earlier hack which used JenkinsMiner malware on Windows machines and made hackers at least $3 million USD in Monero.

Trend Micro believes that the hackers may have taken advantage of a security flaw and a delay in the Network Weathermap owners “patching”, or updating, of their open source tool:

It’s possible these attackers are taking advantage not only of a security flaw for which an exploit is readily available but also of patch lag that occurs in organizations that use the open-source tool.

The hackers are exploiting CVE-2013-2618, a five-year-old vulnerability in the Network Weathermap system. They have exploited the flaw to gain code execution ability on the underlying servers, installing a customized version of legitimate mining software XMRig. The report explains:

It’s also a classic case of reused vulnerabilities, as it exploits a rather outdated security flaw whose patch has been available for nearly five years.

Users May Still Be Inadvertently Mining Monero

As the hack is ongoing, users of the Network Weathermap tool could still be inadvertently mining Monero, which is then being transferred to the hackers’ Monero wallets. According to Trend Micro, victims of the attack will be running Linux x86-64, Cacti, and the outdated Network Weathermap plugin with open access to an internet connection.

Monero Is the Hacker’s Coin of Choice

Monero is the most anonymous of the leading cryptocurrencies and as such is utilized widely in attacks of this nature. Monero coins do not have any identifying attributes, all coins are the same. Stolen, or illegally mined coins cannot be blocked by exchanges or wallets. Monero user addresses are also hidden by Monero’s use of ring signatures and stealth addresses.

Do you use the Network Weathermap tool? Have you been an inadvertent victim of a cryptocurrency mining hack? We’d like to hear your comments.


Images courtesy of iStockPhoto, Trend Micro

Source: https://bitcoinist.com/hackers-net-thousands-in-monero-thanks-to-vulnerability-in-network-weathermap-plugin/

Related News

Cryptocurrency Trading News: Bitcoin, Litecoin, Dogecoin Slide in Last 24 Hours
Altcoin

Cryptocurrency Trading News: Bitcoin, Litecoin, Dogecoin Slide in Last 24 Hours

July 31, 2022
MEXICO GETS A RIPPLE GATEWAY
Altcoin

MEXICO GETS A RIPPLE GATEWAY

July 31, 2022
BlackCoin Pool KNC Titan Promotional Giveaway, Extravaganza!
Altcoin

BlackCoin Pool KNC Titan Promotional Giveaway, Extravaganza!

July 31, 2022
[INTERVIEW]BoostCoin and it’s X13 Algorithm
Altcoin

[INTERVIEW]BoostCoin and it’s X13 Algorithm

July 31, 2022
The AltCoin Roundup: Mastiff, Boost, and X11Coin
Altcoin

The AltCoin Roundup: Mastiff, Boost, and X11Coin

July 31, 2022
Blackcoin just got Coinkited!
Altcoin

Blackcoin just got Coinkited!

July 31, 2022
SaturnCoin: Change to SAT2 and its new specifications
Altcoin

SaturnCoin: Change to SAT2 and its new specifications

July 31, 2022
Darkcoin: Anon Strikes Back!
Altcoin

Darkcoin: Anon Strikes Back!

July 31, 2022
What is cryptojacking? A beginner’s guide to crypto mining malware
Blockchain101

What is cryptojacking? A beginner’s guide to crypto mining malware

by admin
August 25, 2022
0

What is cryptojacking? Buying and mining are the two ways to gain cryptocurrency. One can buy crypto using cryptocurrency exchanges...

Read more
MetaMask tutorial for beginners: How to set up a MetaMask wallet?

MetaMask tutorial for beginners: How to set up a MetaMask wallet?

August 22, 2022
Analyst Who Called Bitcoin Collapse This Year Issues Fresh Warning for Altcoin Traders

Analyst Who Called Bitcoin Collapse This Year Issues Fresh Warning for Altcoin Traders

August 16, 2022
Biggest Ethereum Whale Makes Nearly $1,000,000,000 in Less Than a Month As ETH Cracks $2,000

Biggest Ethereum Whale Makes Nearly $1,000,000,000 in Less Than a Month As ETH Cracks $2,000

August 16, 2022
Biggest Ethereum Whale Makes Nearly $1,000,000,000 in Less Than a Month As ETH Cracks $2,000

Biggest Ethereum Whale Makes Nearly $1,000,000,000 in Less Than a Month As ETH Cracks $2,000

August 16, 2022
  • About
  • FAQ
  • Contact Us

© Copyright 2022 Crypto Moon All rights reserved..

No Result
View All Result
  • Home
  • Bitcoin
  • Altcoin
  • NFTs
  • Metaverse
  • Crypto101
    • Blockchain101
    • Altcoin101
    • Defi101
    • Funding101
    • How to Crypto
  • Press Release
  • Contact Us

© Copyright 2022 Crypto Moon All rights reserved..

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?