According to Kaspersky Lab researchers, cybercriminals have started using sophisticated infection methods and techniques borrowed from targeted attacks in order to install mining software on attacked PCs within organizations. The most successful group observed by Kaspersky Lab earned at least $7 million by exploiting their victims in just six months during 2017.

 

Although the cryptocurrency market is experiencing plenty of ups and downs, last year’s phenomena with surges in the value of Bitcoin has significantly changed not only global economics, but the world of cybersecurity as well. With the aim of earning cryptocurrency, criminals have started to use mining software in their attacks, which, like ransomware, has a simple monetization model.

 

But, unlike ransomware, it doesn’t destructively harm users and is able to stay undetected for a long time by silently using the PC’s power. Back in September 2017, Kaspersky Lab recorded a rise of miners that started actively spreading across the world, and predicted its further development. The latest research reveals that this growth has not only continued, but has also increased and extended.

 

Kaspersky Lab researchers recently identified a cybercriminal group with APT-techniques in their arsenal of tools to infect users with miners. They have been using the process-hollowing method that is usually used in malware and has been seen in some targeted attacks of APT actors, but has never been observed in mining attacks before.

 

The attack works in the following way: the victim is lured into downloading and installing an advertisement software with the miner installer hidden inside. This installer drops a legitimate Windows utility, with the main purpose being to download the miner itself from a remote server.

 

After its execution, a legitimate system process starts, and the legitimate code of this process is changed to malicious code. As a result, the miner operates under the guise of a legitimate task, so it will be impossible for a user to recognize if there is a mining infection.

 

It is also challenging for security solutions to detect this threat. In addition, miners mark this new process through the way it restricts any task cancellation. If the user tries to stop the process, the computer system will reboot. As a result, criminals protect their presence in the system for a longer and more productive time.

 

Based on Kaspersky Lab’s observations, the actors behind these attacks have been mining Electroneum coins and earned almost $7 million during the second half of 2017, which is comparable to the sums that ransomware creators used to earn.

 

We see that ransomware is fading into the background, instead giving way to miners. This is confirmed by our statistics, which show a steady growth of miners throughout the year, as well as by the fact that cybercriminals groups are actively developing their methods and have already started to use more sophisticated techniques to spread mining software. We have already seen such an evolution – ransomware hackers were using the same tricks when they were on the rise,” said Anton Ivanov, Lead Malware Analyst at Kaspersky Lab.

 

Overall, 2.7 million users were attacked by malicious miners in 2017, according to Kaspersky Lab data. That is approximately 50% higher than in 2016 (1.87 mln). They have been falling victims as a result of adware, cracked games and pirated software used by cybercriminals to secretly infect their PCs. Another approach used was web mining through a special code located in an infected web page. The most widely used web miner was CoinHive, discovered on many popular websites.

 

In order to stay protected, Kaspersky Lab recommends that users do the following:

  • Don’t click on unknown websites, or suspicious banners and ads;
  • Do not download and open unknown files from untrusted sources;
  • Install a reliable security solution such as Kaspersky Internet Security or Kaspersky Free that detects and protects you from all possible threats, including malicious mining software.

 

For organizations, Kaspersky Lab recommends the following:

 

More information on miners’ activities can be found on Securelist.com

 

Key trends in mining attacks and the latest discoveries of cryptocurrency threats will be presented at the Security Analyst Summit by Kaspersky Lab researchers, March 9 2018 : https://sas.kaspersky.com/


RECOMMENDED ARTICLE FOR TECHWORLD


 
GeForce-Certified iCafes Cross 250 Mark in Just Two Years
Techworld Date Posted: 23 October 2017 10:21 AM | 1182 Views
NVIDIA today announced that there are now more than 250 GeForce®-certified iCafes in operation across Indonesia, Malaysia, Taiwan, Thailand, the Philippines, South Korea and Vietnam.. See More
 
GeForce-Certified iCafes Cross 250 Mark in Just Two Years
Techworld Date Posted: 10:21 AM | 1182 Views
NVIDIA today announced that there are now more than 250 GeForce®-certified iCafes in operation across Indonesia, Malaysia, Taiwan, Thailand, the Philippines, South Korea and Vietnam.See More

 
Human Error: Leading Cause of Cybersecurity Breaches According to a Study
Techworld Date Posted: 28 May 2018 11:15 AM | 533 Views
A new worldwide study cited by leading DDoS Mitigation service provider IPC (IP Converge Data Services, Inc.) reveal that a lack of skills among employees is a critical barrier holding enterprises back from implementing.... See More
 
Human Error: Leading Cause of Cybersecurity Breaches According to a Study
Techworld Date Posted: 11:15 AM | 533 Views
A new worldwide study cited by leading DDoS Mitigation service provider IPC (IP Converge Data Services, Inc.) reveal that a lack of skills among employees is a critical barrier holding enterprises back from implementing...See More

 
Symantec Significantly Expands Cloud Security Portfolio with Innovations to Secure Cloud Generation Applications, Workloads and Infrastructure
Techworld Date Posted: 6 November 2018 8:50 AM | 104 Views
Symantec Corp (NASDAQ: SYMC), the world’s leading cyber security company, today announced innovations and expansions to its cloud security portfolio, designed to help organizations protect the cloud generation applications and infrastructure they rely on.. See More
 
Symantec Significantly Expands Cloud Security Portfolio with Innovations to Secure Cloud Generation Applications, Workloads and Infrastructure
Techworld Date Posted: 8:50 AM | 104 Views
Symantec Corp (NASDAQ: SYMC), the world’s leading cyber security company, today announced innovations and expansions to its cloud security portfolio, designed to help organizations protect the cloud generation applications and infrastructure they rely on.See More

 
LIANLI Celebrates a Glorious 2018 with a Giveaway Promo
Techworld Date Posted: 22 February 2019 2:57 PM | 101 Views
LIANLI Industrial Co. Ltd., world’s leading manufacturer of aluminum chassis for enthusiasts, custom OEM/ODM case solutions and case accessories, is proud to celebrate a successful year with all its fans across the globe.. See More
 
LIANLI Celebrates a Glorious 2018 with a Giveaway Promo
Techworld Date Posted: 2:57 PM | 101 Views
LIANLI Industrial Co. Ltd., world’s leading manufacturer of aluminum chassis for enthusiasts, custom OEM/ODM case solutions and case accessories, is proud to celebrate a successful year with all its fans across the globe.See More

 
Sprout Solutions Supports Local Startup Community in PH through a Series of Free Learning Sessions
Techworld Date Posted: 16 December 2017 5:16 PM | 153 Views
Sprout Solutions, the fastest-growing Filipino tech startup providing a complete suite of HR software tools specifically made for the Philippine business environment, gives back by supporting the country’s startup community through its series of.... See More
 
Sprout Solutions Supports Local Startup Community in PH through a Series of Free Learning Sessions
Techworld Date Posted: 5:16 PM | 153 Views
Sprout Solutions, the fastest-growing Filipino tech startup providing a complete suite of HR software tools specifically made for the Philippine business environment, gives back by supporting the country’s startup community through its series of...See More

 
Lenovo Talks Digital Transformation Success for Public, Private Orgs
Techworld Date Posted: 11 June 2019 9:54 AM | 118 Views
With digital transformation a priority for both public and private organizations to improve operations, leading technology company Lenovo is urging leaders to focus on the three core aspects of workspace, workculture, and workforce for.... See More
 
Lenovo Talks Digital Transformation Success for Public, Private Orgs
Techworld Date Posted: 9:54 AM | 118 Views
With digital transformation a priority for both public and private organizations to improve operations, leading technology company Lenovo is urging leaders to focus on the three core aspects of workspace, workculture, and workforce for...See More

 
Meralco Announces 34-Centavo per kWh Rate Drop for January
Techworld Date Posted: 23 January 2019 11:39 AM | 96 Views
The country’s largest electricity distribution utility has just announced that the overall electricity rates for the first month of the year are now down to P9.84 per kilowatt-hour (kWh), which is lower by P0.34.... See More
 
Meralco Announces 34-Centavo per kWh Rate Drop for January
Techworld Date Posted: 11:39 AM | 96 Views
The country’s largest electricity distribution utility has just announced that the overall electricity rates for the first month of the year are now down to P9.84 per kilowatt-hour (kWh), which is lower by P0.34...See More

 
Personal Devices at Work
Techworld Date Posted: 15 August 2019 9:27 AM | 250 Views
Personal Devices at Work. See More
 
Personal Devices at Work
Techworld Date Posted: 9:27 AM | 250 Views
Personal Devices at WorkSee More

 
Lenovo™ and Disney Bring New Multiplayer Mode to Star Wars™: Jedi Challenges Augmented Reality Experience
Techworld Date Posted: 8 May 2018 10:28 AM | 87 Views
For the first time in Star Wars: Jedi Challenges, Star Wars fans can have lightsaber battles against each other in local multiplayer mode, the newest feature expansion for the smartphone-powered augmented reality (AR) experience.... See More
 
Lenovo™ and Disney Bring New Multiplayer Mode to Star Wars™: Jedi Challenges Augmented Reality Experience
Techworld Date Posted: 10:28 AM | 87 Views
For the first time in Star Wars: Jedi Challenges, Star Wars fans can have lightsaber battles against each other in local multiplayer mode, the newest feature expansion for the smartphone-powered augmented reality (AR) experience...See More

 
Realme Philippines Opens 100th Kiosk, Eyes 100 More Before End of 2019
Techworld Date Posted: 25 July 2019 5:20 PM | 139 Views
Realme Philippines Opens 100th Kiosk, Eyes 100 More Before End of 2019. See More
 
Realme Philippines Opens 100th Kiosk, Eyes 100 More Before End of 2019
Techworld Date Posted: 5:20 PM | 139 Views
Realme Philippines Opens 100th Kiosk, Eyes 100 More Before End of 2019See More


Power by

Download Free AZ | Free Wordpress Themes