CryptoBudha
    Demo
    What's Hot

    Dogecoin price analysis: DOGE swiftly drops 10 percent, higher local low set?

    August 17, 2022

    Largest Bitcoin Miners Lost Over $1 Billion During Crypto Crash

    August 17, 2022

    Blockchain Developer Input Output Global Announces Collaboration To Drive NFT Adoption on Cardano

    August 17, 2022
    Facebook Twitter Instagram
    • ABOUT US
    • CONTACT US
    • TERMS OF SERVICES
    Facebook Twitter Instagram
    CryptoBudha
    • Home
    • Cryptocurrency

      Dow Jones Down Amid Fed Minutes; Manchester United Pops After Elon Musk Claim; Bitcoin Falls

      August 17, 2022

      Bitcoin price sees firm rejection at $24.5K as traders doubt strength

      August 17, 2022

      Dogecoin, Shiba Inu outperform bitcoin and ether. Is it a good time to bet on meme coins?

      August 16, 2022

      Cryptoverse: Electric ether leaps on verge of Merge

      August 16, 2022

      Examining Decisions That Lead To Bitcoin – Bitcoin Magazine

      August 15, 2022
    • Blockchain

      Russian Bitcoin Miners ‘Used 1.25GW’ to Power Their Rigs Last Year, Double the 2020 Total – Report

      August 17, 2022

      Crypto Hacking, Theft Rise This Year While Scams, Darknet Markets Retreat

      August 17, 2022

      Report: $1.9 billion stolen in crypto hacks so far this year | News

      August 16, 2022

      Live news updates: Korean investigators yet to contact company behind $40bn crypto collapse, founder says – Financial Times

      August 16, 2022

      Meme coins surge as retail traders dive back into the crypto market

      August 15, 2022
    • ICO

      Federal Court Rejects $27.5 Million Settlement In Block.One ICO Case, Questions Reach Of Securities Law

      August 17, 2022

      Crypto Crime Falls 15% Along With Bear Market: Chainalysis

      August 17, 2022

      SEC Sues Dragonchain for $16.5 Million Dragon Token ICO

      August 16, 2022

      ‘Durmientes’ Aims to Be One of the First Films Funded Fully With NFT Sales in Latam – News Bitcoin News

      August 16, 2022

      Ethereum ICO-era whale address transfers 145,000 ETH weeks before the Merge

      August 15, 2022
    • NFT

      Blockchain Developer Input Output Global Announces Collaboration To Drive NFT Adoption on Cardano

      August 17, 2022

      Activision accused of copying Dr Disrespect NFT for ‘Call Of Duty’ skin

      August 17, 2022

      NFT at your service – English court grants service of proceedings by blockchain | Hogan Lovells

      August 16, 2022

      Trivver Develops Groundbreaking to Help Minimize NFT

      August 16, 2022

      Ryder Ripps Claims Lawsuit Over Bored Ape NFTs Is Silencing Him – ARTnews.com

      August 15, 2022
    • Metaverse

      [Ongoing Program] Brands in the Metaverse: Protecting Trademarks & Copyrights Online, in Digital Media, and Beyond – September 15th, 12:00 pm – 1:00 pm ET | Smart & Biggar

      August 17, 2022

      Gordon Ramsay Enters the Metaverse as Hell’s Kitchen Partners with The Sandbox

      August 17, 2022

      Research Firm Claims Even Early Tech Adopters Unfamiliar with Metaverse — Virtualization Review

      August 16, 2022

      Nonpaying Patients; Metaverse Medicine; and UK Approves Booster

      August 16, 2022

      Gamble In The Metaverse? This Casino Company Just Took First Step To Enter

      August 15, 2022
    • More
      1. Analysis
      2. Regulations
      3. Mining
      4. View All

      Dogecoin price analysis: DOGE swiftly drops 10 percent, higher local low set?

      August 17, 2022

      Litecoin price analysis: LTC recovers to $62.23 as bullish impulse returns – Cryptopolitan

      August 17, 2022

      Bitcoin price analysis: Bulls defend $24k as consolidation reigns supreme – Cryptopolitan

      August 16, 2022

      Indicators Suggest Reversal Is Coming

      August 16, 2022

      The case for a crypto-only agency- POLITICO

      August 17, 2022

      Crypto.com gets UK regulatory approval

      August 17, 2022

      Crypto has an Iran-shaped problem- POLITICO

      August 16, 2022

      Fidelity’s Director of Global Macro: Stablecoin Regulation Will Increase Institutional Adoption of Crypto

      August 16, 2022

      Largest Bitcoin Miners Lost Over $1 Billion During Crypto Crash

      August 17, 2022

      ‘FutureFi’: Crypto is transforming the green finance universe

      August 17, 2022

      Bankrupt Crypto Lender Celsius Gets Cash-Injection Offers, Approval to Sell Mined Bitcoin

      August 16, 2022

      Alex Mashinsky took control of Celsius trading strategy months before bankruptcy

      August 16, 2022
    CryptoBudha
    Home»Mining»Someone may be prepping an NPM crypto-mining spree • The Register
    mining.jpg
    Mining

    Someone may be prepping an NPM crypto-mining spree • The Register

    adminBy adminJuly 7, 2022No Comments4 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    According to Checkmarx researchers, a burst of about 1,300 JavaScript packages automatically created by NPM through over 1,000 user accounts could be the first step in a major crypto mining campaign.

    Creating 1,283 packages and 1,027 user accounts seems to be the job of someone experimenting with what they might be able to do.

    Effort – Dubbed CuteBoi Many of the package’s configuration files use “cute” as the hard-coded username and the non-random NPM username cloudyboi12, which is being dubbed as another software supply chain attack. IconBurstmake Involvement NPM JavaScript package and typo.

    IconBurst’s goal was to collect sensitive data from mobile applications and website forms. This library contains a JS library that was intentionally misspelled by a food wink coder.

    Owned by Microsoft GitHub, NPM hosts hundreds of thousands of JavaScript packages for developers. Modifying one or more of these libraries in some way or tricking programmers into using a booby-trapped package with a similar name will inject malware into downstream libraries and applications that depend on code. The potential makes it an attractive target for malicious users.

    This is about the same line that supply chain attacks are involved in. SolarWinds When Kasaya.. In a 2022 data breach investigation report, Verizon states that supply chain-based intrusions account for about 10% of all cybersecurity incidents.

    Deepen Desai, CISO and Vice President of Security Research and Operations at Zscaler, a zero trust security vendor, said: Register Supply chain attacks, which began as a nation-state espionage last month, are increasingly being adopted by economically motivated criminal groups.

    NPM has been hit by a share of security issues over the last two years. Approval When Credential issue To crypto mining mining malware embedded in the npm package detected in October 2021.

    In recent cases, Checkmarx researchers have found that suspicious NPM users and packages are automatically created over the course of a few days, and all packages are Eazyminer packages designed to mine Monero using unused resources. I pointed out that it contains almost the same code as. For machines such as CI / CD and web servers

    The proliferation of Eazyminer and its sudden clones is just a wrapper for the XMRig mining tool and should be incorporated into your program before you can start mining. At this stage, it seems that other libraries and applications are trying to flood NPM with randomly named packages that can be used to mine Monero.

    “Downloading and installing these packages doesn’t hurt your machine,” the researchers write. “The code copied from Eazyminer contains minor functionality intended to be triggered from within another program rather than as a standalone tool. Because the attacker did not change this functionality in the code. It will not run during installation. “

    That said, CuteBoi modified the eazyminer’s configuration file to specify a server to send mined cryptocurrencies.

    “At the heart of these packages is the XM Rig miner,” the researchers write. “Binaries compiled for Windows and Linux systems are shipped with the package. An attacker renames these binaries to match the random name of the package itself.”

    The automation that CuteBoi uses to create an army of accounts and packages is not unique. March Checkmarx I have written Learn how a cybercriminal group called Red-Lili automatically created hundreds of NPM accounts and a malicious package (one for each user) as part of a dependency disruption attack.

    In the case of Red-Lili, analysts said, “I saw an attacker launching a self-hosted server to support such automation, but in this case CuteBoi hosts a custom server to host the domain. Seems to have found a way to launch such an attack without registering. “

    In addition, CuteBoi’s mastermind seems to be using mail.tm, a free disposable mailbox provider that can be accessed via a simple Web API call. Using this process, CuteBoi can create a number of NPM user accounts, each with a valid email address. This is necessary (for one) for the purpose of two-factor authentication.

    Checkmarx Website It’s called a CuteBoi tracker that you can use to inspect all packages and users created for your campaign.Vendors have also made trackers available at GitHub..

    “Cute Boi is the second attack group of the year to launch a major attack on NPM using automation,” they write. “We expect these attacks to increase as the barriers to launching these attacks become lower.” ®

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    admin
    • Website

    Related Posts

    Largest Bitcoin Miners Lost Over $1 Billion During Crypto Crash

    August 17, 2022

    ‘FutureFi’: Crypto is transforming the green finance universe

    August 17, 2022

    Bankrupt Crypto Lender Celsius Gets Cash-Injection Offers, Approval to Sell Mined Bitcoin

    August 16, 2022

    Alex Mashinsky took control of Celsius trading strategy months before bankruptcy

    August 16, 2022
    Add A Comment

    Leave A Reply Cancel Reply

    banner
    Top Posts

    Subscribe to Updates

    Get the latest sports news from SportsSite about soccer, football and tennis.

    Advertisement
    Demo
    About Us:

    Your source for the serious news. cryptobudha is crafted specifically to exhibit the lest crypto related News. Visit our main page for more News or contact us

    Email : timeaustralian@yahoo.com

    We're social. Connect with us:

    Facebook Twitter Instagram
    Latest Posts

    Privé Société — A private membership club represented by NFTs and Privé Réserve champagne

    May 11, 2022

    MicroStrategy denies it received margin call against Silvergate loan

    June 15, 2022

    Tesla May Take $460M Impairment Charge on Its Bitcoin Holdings for Q2, Analyst Says

    July 20, 2022
    Get Informed

    Subscribe to Updates

    Get the latest creative news about the crypto world .

    Facebook Twitter Instagram Pinterest
    • ABOUT US
    • CONTACT US
    • TERMS OF SERVICES
    © 2022 ThemeSphere. Designed by ThemeSphere.

    Type above and press Enter to search. Press Esc to cancel.

    Subscribe
    Get the latest creative news about the crypto world.

    We are using cookies to give you the best experience on our website.

    You can find out more about which cookies we are using or switch them off in settings.

    CryptoBudha
    Powered by  GDPR Cookie Compliance
    Privacy Overview

    This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.

    Strictly Necessary Cookies

    Strictly Necessary Cookie should be enabled at all times so that we can save your preferences for cookie settings.

    If you disable this cookie, we will not be able to save your preferences. This means that every time you visit this website you will need to enable or disable cookies again.