FreshRSS

πŸ”’
❌ Secure Planet Training Courses Updated For 2019 - Click Here
There are new available articles, click to refresh the page.
☐ β˜† βœ‡ The Hacker News

Cybercriminals Targeting Apache NiFi Instances for Cryptocurrency Mining

By: Ravie Lakshmanan β€” May 31st 2023 at 15:44
A financially motivated threat actor is actively scouring the internet for unprotectedΒ Apache NiFi instancesΒ to covertly install a cryptocurrency miner and facilitate lateral movement. The findings come from the SANS Internet Storm Center (ISC), which detected a spike in HTTP requests for β€œ/nifi” on May 19, 2023. β€œPersistence is achieved via timed processors or entries to cron,” saidΒ Dr.
☐ β˜† βœ‡ The Hacker News

New Cryptojacking Campaign Leverages Misconfigured Redis Database Servers

By: Ravie Lakshmanan β€” March 2nd 2023 at 11:39
Misconfigured Redis database servers are the target of a novel cryptojacking campaign that leverages a legitimate and open source command-line file transfer service to implement its attack. "Underpinning this campaign was the use of transfer[.]sh," Cado SecurityΒ saidΒ in a report shared with The Hacker News. "It's possible that it's an attempt at evading detections based on other common code
❌