• Latest
  • Trending
HeadCrab malware targets Redis to mine cryptocurrency

HeadCrab malware targets Redis to mine cryptocurrency

February 2, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

XRP, Shiba Inu, and More: Here are Top 6 Altcoins Priced Below $1 to Watch for Next Bull Run – The Crypto Basic

October 31, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

Zodia Custody expands in Hong Kong, receives VASP in Ireland … – Tekedia

October 31, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

Why Altcoins and Crypto Stocks Were Flying High Today – The Motley Fool

October 30, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

Embracing the crypto evolution: Institutional adaptation and the … – Arabian Business

October 30, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

Acala Spikes 5% on Binance's New Altcoin Pairs News — Can ACA … – CCN.com

October 30, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

Bitcoin Spark, BNB, and Toncoin: Price Outlook in Upcoming Bull Run – CryptoPotato

October 30, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

Crypto Price Today: Bitcoin holds $34,000; Ethereum slips below $1,800; most altcoins up – Business Today

October 30, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

The Next Bull Market Is Approaching: Sparking Opportunities For … – CryptoPotato

October 30, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

Crypto Analyst Benjamin Cowen Says Fed Pivot and Altcoin Rallies Won’t Happen Until This Occurs – The Daily Hodl

October 29, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

Litecoin Pronóstico del Precio: LTC insinúa una corrección del 15% si se cumplen estas condiciones clave – FXStreet

October 29, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

Brazil's USDT adoption soars in 2023, makes up 80% of all crypto transactions – Cointelegraph

October 29, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

Can Presales Like Scorpion Casino Token Match the Historic … – NewsWatch

October 29, 2023
Saturday, May 17, 2025
EGROW ONLINE
  • Home
  • Cryptocurrency
  • Bitcoin
  • Ethereum
  • Blockchain
  • Altcoins
  • ADA
  • Litecoin
  • Dogecoin
  • ICO
  • Ripple
  • Market & Analysis
  • Videos
No Result
View All Result
EGROW ONLINE
No Result
View All Result

HeadCrab malware targets Redis to mine cryptocurrency

by admin
February 2, 2023
in Cryptocurrency
0


A malware known has “HeadCrab” is being used to mine cryptocurrency via Redis servers, and approximately 1,200 servers have been taken over, according to research published Wednesday by cloud security vendor Aqua Security.

YOU MAY ALSO LIKE

Brazil's USDT adoption soars in 2023, makes up 80% of all crypto transactions – Cointelegraph

Cryptocurrency and Terrorism: Wall Street Journal Corrects Funding … – TOKENPOST

Redis is a popular open source database management system (DBMS) first released in 2009. Aqua’s research blog post, co-written by security researcher Asaf Eitani and security data analyst Nitzan Yaakov, noted that because Redis is meant to operate on a secure and closed network, the DBMS does not come with authentication enabled by default. As such, Eitani and Yaakov wrote, Redis instances have increasingly been targeted by threat actors in recent years.

Aqua Security’s blog post focuses on HeadCrab, a botnet malware first discovered in September 2021 that has, to date, compromised at least 1,200 servers. The post contains significant technical details for HeadCrab, which Eitani and Yaakov describe as “sophisticated, long-developed malware” that can evade traditional antivirus products.

“We have noticed that the attacker has gone to great lengths to ensure the stealth of their attack,” the authors wrote. “The malware has been designed to bypass volume-based scans as it runs solely in memory and is not stored on disk. Additionally, logs are deleted using the Redis module framework and API. The attacker communicates with legitimate IP addresses, primarily other infected servers, to evade detection and reduce the likelihood of being blacklisted by security solutions.”

The attacker uses the “REPLICAOF” command to make the victim’s server a replica of another server controlled by the threat actor. The threat actor uses the malware to then create new Redis commands, enabling further control, and load malicious Redis modules onto the server.

Aqua Security discovered the malware because one of their honeypots was attacked. The attacker left a text note addressed to Aqua Security within the malware in which the attacker addressed themselves as HeadCrab — hence the malware name. The attacker said they were providing “unconditional basic income to [people] with some disadvantages.”

The HeadCrab botnet is primarily used for malicious cryptocurrency mining.

“The miner configuration file was extracted from memory and showed that the mining pools were mostly hosted on private legitimate IP addresses,” the post read. “Inspection of these IP addresses revealed that they belong to either clean hosts or a leading security company, making detection and attribution more difficult. One public Monero pool service was found in the configuration file but wasn’t used by the miner in runtime. The attacker’s Monero wallet showed an annual expected profit of almost $4,500 USD per worker, much higher than the typical $200 USD per worker.”

The blog post contained a map of compromised Redis instances, the majority of which appear to be in the Asia Pacific region, the U.S. and Western Europe.

Aqua Security made multiple recommendations in its post, such as ensuring Redis instances have configurations aligned with security best practices and initiating incident response should there be evidence of server compromise.

Neither Redis nor Aqua Security have responded to TechTarget Editorial’s request for comment at press time.

Alexander Culafi is a writer, journalist and podcaster based in Boston.



Source link

Tags: CryptocurrencyHeadCrabMalwareRedistargets
ShareTweetPin

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result

Recent News

Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

XRP, Shiba Inu, and More: Here are Top 6 Altcoins Priced Below $1 to Watch for Next Bull Run – The Crypto Basic

October 31, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

Zodia Custody expands in Hong Kong, receives VASP in Ireland … – Tekedia

October 31, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

Why Altcoins and Crypto Stocks Were Flying High Today – The Motley Fool

October 30, 2023

Recent News

Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

XRP, Shiba Inu, and More: Here are Top 6 Altcoins Priced Below $1 to Watch for Next Bull Run – The Crypto Basic

October 31, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

Zodia Custody expands in Hong Kong, receives VASP in Ireland … – Tekedia

October 31, 2023
Altcoins Lead Post-Fed Crypto Rally as Risk Appetite Increases – Yahoo Finance

Why Altcoins and Crypto Stocks Were Flying High Today – The Motley Fool

October 30, 2023

Categories

  • ADA
  • Altcoins
  • Bitcoin
  • Blockchain
  • Cryptocurrency
  • Dogecoin
  • Ethereum
  • ICO
  • Litecoin
  • Market & Analysis
  • Ripple
  • Videos

Follow Us

Find Via Tags

Ada Altcoin altcoins analysis Analyst Analytics Big Binance Bitcoin Blockchain BNB BTC Buy Cardano Coin Cointelegraph Crypto cryptocurrencies Cryptocurrency Digital DOGE Dogecoin ETH Ethereum finance Heres Insight Inu investors Litecoin LTC market Network news Prediction price Ripple SEC Shiba Solana Today Token Top week XRP
  • privacy And Policy
  • About Us

© 2020 Egrow Online

No Result
View All Result
  • Home
  • Cryptocurrency
  • Bitcoin
  • Ethereum
  • Blockchain
  • Altcoins
  • ADA
  • Litecoin
  • Dogecoin
  • ICO
  • Ripple
  • Market & Analysis
  • Videos

© 2020 Egrow Online