According to Kaspersky Lab researchers, cybercriminals have started using sophisticated infection methods and techniques borrowed from targeted attacks in order to install mining software on attacked PCs within organizations. The most successful group observed by Kaspersky Lab earned at least $7 million by exploiting their victims in just six months during 2017.

 

Although the cryptocurrency market is experiencing plenty of ups and downs, last year’s phenomena with surges in the value of Bitcoin has significantly changed not only global economics, but the world of cybersecurity as well. With the aim of earning cryptocurrency, criminals have started to use mining software in their attacks, which, like ransomware, has a simple monetization model.

 

But, unlike ransomware, it doesn’t destructively harm users and is able to stay undetected for a long time by silently using the PC’s power. Back in September 2017, Kaspersky Lab recorded a rise of miners that started actively spreading across the world, and predicted its further development. The latest research reveals that this growth has not only continued, but has also increased and extended.

 

Kaspersky Lab researchers recently identified a cybercriminal group with APT-techniques in their arsenal of tools to infect users with miners. They have been using the process-hollowing method that is usually used in malware and has been seen in some targeted attacks of APT actors, but has never been observed in mining attacks before.

 

The attack works in the following way: the victim is lured into downloading and installing an advertisement software with the miner installer hidden inside. This installer drops a legitimate Windows utility, with the main purpose being to download the miner itself from a remote server.

 

After its execution, a legitimate system process starts, and the legitimate code of this process is changed to malicious code. As a result, the miner operates under the guise of a legitimate task, so it will be impossible for a user to recognize if there is a mining infection.

 

It is also challenging for security solutions to detect this threat. In addition, miners mark this new process through the way it restricts any task cancellation. If the user tries to stop the process, the computer system will reboot. As a result, criminals protect their presence in the system for a longer and more productive time.

 

Based on Kaspersky Lab’s observations, the actors behind these attacks have been mining Electroneum coins and earned almost $7 million during the second half of 2017, which is comparable to the sums that ransomware creators used to earn.

 

We see that ransomware is fading into the background, instead giving way to miners. This is confirmed by our statistics, which show a steady growth of miners throughout the year, as well as by the fact that cybercriminals groups are actively developing their methods and have already started to use more sophisticated techniques to spread mining software. We have already seen such an evolution – ransomware hackers were using the same tricks when they were on the rise,” said Anton Ivanov, Lead Malware Analyst at Kaspersky Lab.

 

Overall, 2.7 million users were attacked by malicious miners in 2017, according to Kaspersky Lab data. That is approximately 50% higher than in 2016 (1.87 mln). They have been falling victims as a result of adware, cracked games and pirated software used by cybercriminals to secretly infect their PCs. Another approach used was web mining through a special code located in an infected web page. The most widely used web miner was CoinHive, discovered on many popular websites.

 

In order to stay protected, Kaspersky Lab recommends that users do the following:

  • Don’t click on unknown websites, or suspicious banners and ads;
  • Do not download and open unknown files from untrusted sources;
  • Install a reliable security solution such as Kaspersky Internet Security or Kaspersky Free that detects and protects you from all possible threats, including malicious mining software.

 

For organizations, Kaspersky Lab recommends the following:

 

More information on miners’ activities can be found on Securelist.com

 

Key trends in mining attacks and the latest discoveries of cryptocurrency threats will be presented at the Security Analyst Summit by Kaspersky Lab researchers, March 9 2018 : https://sas.kaspersky.com/


RECOMMENDED ARTICLE FOR TECHWORLD


 
Synology® Sees Huge Growth in PH NAS Market, Introduces Complete Business Backup Solution
Techworld Date Posted: 1 August 2018 5:23 PM | 94 Views
Synology®, leading network attached storage (NAS), IP surveillance and network equipment provider introduces its newest products, Active Backup Suite and Service Replacement Service (SRS) for Philippines SMBs and SMEs today. . See More
 
Synology® Sees Huge Growth in PH NAS Market, Introduces Complete Business Backup Solution
Techworld Date Posted: 5:23 PM | 94 Views
Synology®, leading network attached storage (NAS), IP surveillance and network equipment provider introduces its newest products, Active Backup Suite and Service Replacement Service (SRS) for Philippines SMBs and SMEs today. See More

 
Data for Nothing: Fraudsters Use Fake Gift Cards to Lure Consumers into Handing Over Personal Data
Techworld Date Posted: 23 July 2018 2:37 PM | 368 Views
Kaspersky Lab experts have discovered the distribution of an unusual fraudulent scheme that tricks users into parting with their time and their data, for no return.. See More
 
Data for Nothing: Fraudsters Use Fake Gift Cards to Lure Consumers into Handing Over Personal Data
Techworld Date Posted: 2:37 PM | 368 Views
Kaspersky Lab experts have discovered the distribution of an unusual fraudulent scheme that tricks users into parting with their time and their data, for no return.See More

 
Smart Widens Lead in Overall Mobile Data Download Speeds – OpenSignal
Techworld Date Posted: 1 June 2018 9:00 AM | 288 Views
PLDT wireless subsidiary Smart Communications, Inc. has almost doubled its overall mobile data download speeds over the past year largely because of improved LTE availability and speeds, according to a just-released analysis by independent.... See More
 
Smart Widens Lead in Overall Mobile Data Download Speeds – OpenSignal
Techworld Date Posted: 9:00 AM | 288 Views
PLDT wireless subsidiary Smart Communications, Inc. has almost doubled its overall mobile data download speeds over the past year largely because of improved LTE availability and speeds, according to a just-released analysis by independent...See More

 
Get the Best Deals for Your Family This Christmas with the PLDT Christmas 3 Bundle Promo
Techworld Date Posted: 21 December 2017 5:04 PM | 267 Views
It’s the season of gift-giving and PLDT has the perfect present for the digitally savvy and entertainment-loving Filipino families.. See More
 
Get the Best Deals for Your Family This Christmas with the PLDT Christmas 3 Bundle Promo
Techworld Date Posted: 5:04 PM | 267 Views
It’s the season of gift-giving and PLDT has the perfect present for the digitally savvy and entertainment-loving Filipino families.See More

 
It’s Raining Pies! Nokia 6.1 Plus and Nokia 6.1 Upgrade to Android™ 9 Pie
Techworld Date Posted: 12 November 2018 4:22 PM | 79 Views
Packed with Google’s newest software and building on the features of Android™ 8.0 Oreo™, Android™ 9 Pie features artificial intelligence and machine learning to give owners a more customized and tailored experience.. See More
 
It’s Raining Pies! Nokia 6.1 Plus and Nokia 6.1 Upgrade to Android™ 9 Pie
Techworld Date Posted: 4:22 PM | 79 Views
Packed with Google’s newest software and building on the features of Android™ 8.0 Oreo™, Android™ 9 Pie features artificial intelligence and machine learning to give owners a more customized and tailored experience.See More

PCBG Contributing Writer
Allu Out, GuardiaN In
Techworld • By: PCBG Contributing Writer | Date Posted: 3 August 2017 1:59 PM | 452 Views
After failing to qualify for the quarterfinals at the recent PGL Krakow Major Championship, Natus Vincere shocked many fans due to their visibly poor performance during the group stage matches. It was one of.... See More
PCBG Contributing Writer
Allu Out, GuardiaN In
Techworld • By: PCBG Contributing Writer | Date Posted: 1:59 PM | 452 Views
After failing to qualify for the quarterfinals at the recent PGL Krakow Major Championship, Natus Vincere shocked many fans due to their visibly poor performance during the group stage matches. It was one of...See More

 
Free Content Now Available for DRAGON BALL XENOVERSE 2
Techworld Date Posted: 23 January 2018 4:46 PM | 164 Views
BANDAI NAMCO Entertainment Asia is pleased to share details about DRAGON BALL XENOVERSE 2 as new playable characters from the Tournament of Power in Dragon Ball Super. See More
 
Free Content Now Available for DRAGON BALL XENOVERSE 2
Techworld Date Posted: 4:46 PM | 164 Views
BANDAI NAMCO Entertainment Asia is pleased to share details about DRAGON BALL XENOVERSE 2 as new playable characters from the Tournament of Power in Dragon Ball SuperSee More

 
Philips Monitors in Collaboration with 20th Century Fox Will Rock Local Cinemas with the Most Anticipated Rock Band Story Ever Told
Techworld Date Posted: 5 November 2018 9:16 AM | 38 Views
Philips monitors and display solutions are very known in the world as one of the highest performing innovative monitors for both productivity and gaming.. See More
 
Philips Monitors in Collaboration with 20th Century Fox Will Rock Local Cinemas with the Most Anticipated Rock Band Story Ever Told
Techworld Date Posted: 9:16 AM | 38 Views
Philips monitors and display solutions are very known in the world as one of the highest performing innovative monitors for both productivity and gaming.See More

 
Industrial Networks of Energy and ICS Integration Companies Hit by More Cyberattacks than Any Other Industry in H2, 2017
Techworld Date Posted: 28 March 2018 3:32 PM | 320 Views
Almost 40% of all industrial control systems (ICS) in energy organizations protected by Kaspersky Lab solutions were attacked by malware at least once during the last six months of 2017, closely followed by 35.3%.... See More
 
Industrial Networks of Energy and ICS Integration Companies Hit by More Cyberattacks than Any Other Industry in H2, 2017
Techworld Date Posted: 3:32 PM | 320 Views
Almost 40% of all industrial control systems (ICS) in energy organizations protected by Kaspersky Lab solutions were attacked by malware at least once during the last six months of 2017, closely followed by 35.3%...See More

 
Kaspersky Lab Unravels the Truth on Cyber Espionage at its 3rd APAC Cyber Security Conference
Techworld Date Posted: 17 October 2017 1:26 PM | 239 Views
Kaspersky Lab unriddled the mysterious threat of cyberespionage against countries, critical infrastructure, and companies in the region on its 3rd Asia Pacific (APAC) Cyber Security Weekend in Phuket, Thailand last week.. See More
 
Kaspersky Lab Unravels the Truth on Cyber Espionage at its 3rd APAC Cyber Security Conference
Techworld Date Posted: 1:26 PM | 239 Views
Kaspersky Lab unriddled the mysterious threat of cyberespionage against countries, critical infrastructure, and companies in the region on its 3rd Asia Pacific (APAC) Cyber Security Weekend in Phuket, Thailand last week.See More


Power by

Download Free AZ | Free Wordpress Themes