Org's network connect to GitHub and Pastebin much? It's a Rocke road to cryptojacking country

Org's network connect to GitHub and Pastebin much? It's a Rocke road to cryptojacking country

You might also be slurping Chinese malware


Palo Alto Networks has spotted a new cryptomining malware technique that not only wipes out any other miners present on the target machine but uses GitHub and Pastebin as part of its command-and-control (C2) infrastructure.


The malware, believed to originate from a Chinese cybercrime group nicknamed Rocke, targets cloud infrastructure in order to plant cryptocurrency mining software, potentially causing much larger metered usage bills for companies falling victim to it.


"Rocke, which primarily targets public cloud infrastructure for criminal gain, continues to evolve its tools and take advantage of poorly configured cloud infrastructures using vulnerabilities released in 2016 and 2017," said Palo Alto, adding that the malware peddlers were "able to conduct operations with little interference and limited detection risk".


It continued: "The group can gain administrative access to cloud systems using malware that is able ..

Support the originator by clicking the read the rest link below.