#Cryptojacking

2025-09-10

⚠️ LunoBotnet: A modular Linux botnet with cryptomining + DDoS-for-hire.
✔️ Self-healing watchdogs
✔️ System binary replacement
✔️ Targets Roblox, Minecraft, Valve
✔️ Markets services via Telegram
Experts call it a criminal infrastructure platform for long-term monetization.

💬 How do you rate the detection difficulty here? Follow @technadu for analysis.

#Cyble #LunoBotnet #LinuxMalware #Cryptojacking #DDoS #Botnet #SelfHealing #Malware #CyberThreatIntel

Lunobot
2025-09-09

Misconfigured Docker APIs are a hacker’s gateway to secret crypto-mining—thanks to Tor, stopping them is tougher than ever. Is your cloud truly secure?

thedefendopsdiaries.com/securi

#dockersecurity
#cybersecurity
#cloudsecurity
#cryptojacking
#tor

Kevin Karhan :verified:kkarhan@infosec.space
2025-09-09

@anathema INHO #JavaScript should be outlawed for being the #1 source of #malware, #cryptojacking and escalation in #WastefulComputing!

2025-09-04

Watch Out: A new malware hijacking Windows Character Map to mine #crypto on a targeted device, exposing risks of attacks in everyday software processes.

Read: hackread.com/new-malware-uses-

#CyberSecurity #Malware #Cryptomining #Cryptojacking #Windows

2025-09-03

🚨 First known obfuscated AutoIt loader used to deliver NBMiner via PowerShell + charmap.exe.

Experts warn cryptojacking = intrusion signal, not a nuisance.

technadu.com/advanced-cryptoja

#CyberSecurity #Cryptojacking

Advanced Cryptojacking Campaign Uses Obfuscated AutoIt Loader to Deliver NBMiner
2025-08-19

Cyber crooks are hijacking cloud power to secretly mine crypto—one scam even racked up over $3.5M by posing as an educational platform. How safe is your data in the cloud?

thedefendopsdiaries.com/unders

#cryptojacking
#cloudsecurity
#cybercrime
#infosec
#cybersecurity

2025-07-31

Tom’s Hardware: Hacker plants three strains of malware in a Steam Early Access game called Chemia — security company found crypto-jacking infostealers and a backdoor to install yet more malware in the future. “A cyber threat intelligence firm called Prodaft revealed that ‘Chemia,’ a game previously available via Steam’s Early Access program, shipped with three strains of malware.”

https://rbfirehose.com/2025/07/31/toms-hardware-hacker-plants-three-strains-of-malware-in-a-steam-early-access-game-called-chemia-security-company-found-crypto-jacking-infostealers-and-a-backdoor-to-install-yet-more-malwa/

Kevin Karhan :verified:kkarhan@infosec.space
2025-07-18

For those who don't know the size of the problem:

In 2006 I bought a new [entry level] Computer with 256 MB of RAM and a single-core P4 Celeron with 2,8 GHz.

And now imagine that some folks have to use #Slack, #MicrosoftTeams, #Telegram, #Signal, #WhatApp, #WeChat, #QQ and #LineMessenger at the same time on their machine, and you can imagine that this will make entry-level desktops already scream harder than if someone were to loop the Lost Coast benchmark on them...

Everywhere else we'd not accept such a #bloatware IRL.

Kevin Karhan :verified:kkarhan@infosec.space
2025-07-08

You know someone fucked up #WebDesign when logging out makes your CPU spike to 85% and the fan sound like one's running a #Shitcoin #Mining #Malware (aka. #Cryptojacker) and closing the tab results in 1 GB less RAM and 3 GB less overall cached assets.

  • And yes I did check these results by running sudo sh -c "sync; echo 3 > /proc/sys/vm/drop_caches"' before, during and after the website has been opened.

#Cryptojacking #ShitWebsite #Shitty #Enshittification #JavaScript #Malware #Miner #FuckedUpShit #FuckUp

Ubuntu's Task manager showing the load opening app.deel.comSame machine, showcasing the huge spikes in terms of load at logout and then later drop in RAM useage.
Kevin Karhan :verified:kkarhan@infosec.space
2025-07-05

@MxVerda I think #JavaScript is being.runed by the fact that it's being abused for #tracking & #cryptojacking #malware to the point that disabling it is a necessity!

Kevin Karhan :verified:kkarhan@infosec.space
2025-06-18

@cR0w not really...

Obviously it's the #1 target and every #Skiddie has their own index of #WordPress sites waiting to deploy their #Cryptojacking #malware the second they get their hands on an exploit before people have patched it, but the same applies to #Windows (espechally #WindowsServer!) and other shitty applications...

Kevin Karhan :verified:kkarhan@infosec.space
2025-06-18

@tjhexf personally, I hate #JavaScript because it's #ableist, bricks #accessibility and the only "cool" thing it has demonstrated is the abuseability for #tracking and #Cryptojacking #malware!

Kevin Karhan :verified:kkarhan@infosec.space
2025-06-16

@cR0w @Dio9sys I bet you #skiddies gonna go #cryptojacking #Monero tonite...

Kevin Karhan :verified:kkarhan@infosec.space
2025-06-16

@jonathankoren I'm just the kind of person who expects shit to work on #LynxBrowser over @torproject and if it doesn't then it's ableist trash IMHO.

#Lynx #Browser #Accessibility #sarcasm #Tor

Lowyat.NETlowyat
2025-06-08

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst