Topic: cryptocurrency mining

  • AI Chatbot Prompts Lead Users to Cryptojacking Malware Sites

    AI Chatbot Prompts Lead Users to Cryptojacking Malware Sites

    Cybercriminals are using AI chatbot responses and poisoned search results to direct users to fake download sites for popular system utilities like CrystalDiskInfo and HWMonitor, as part of a cryptojacking campaign targeting high-performance GPUs. The attack chain involves DLL sideloading via mali...

    Read More »
  • Anthropic signs $9.1bn, 20-year cloud deal with bitcoin miner Riot

    Anthropic signs $9.1bn, 20-year cloud deal with bitcoin miner Riot

    Anthropic signed a $9.1 billion, 20-year cloud computing deal with bitcoin miner Riot Platforms to secure large-scale data center capacity in Texas, one of the biggest AI infrastructure commitments this year. The partnership diversifies Riot's revenue beyond crypto mining by hosting AI workloads,...

    Read More »
  • What Attackers Do After a Break-In

    What Attackers Do After a Break-In

    A Huntress investigation revealed a post-breach attack where the intruder gained entry via SQL injection, then methodically established persistence by enabling RDP, creating an admin account, and disabling Windows Defender. The attacker weaponized the compromised server by installing BadIIS web m...

    Read More »
  • Dangerous VSCode Extensions Steal Crypto on OpenVSX

    Dangerous VSCode Extensions Steal Crypto on OpenVSX

    Malicious extensions in the VSCode ecosystem, such as C++ Playground and HTTP Format, have been downloaded thousands of times and are designed to steal cryptocurrency or create backdoors, with the threat actor TigerJack repeatedly uploading them under new names to evade detection. These extension...

    Read More »
  • Iran-Targeting Malware Infects Open Source Software

    Iran-Targeting Malware Infects Open Source Software

    A new hacking group, TeamPCP, is conducting a sophisticated campaign using a self-spreading worm and a data wiper, primarily targeting systems in Iran and exploiting cloud platforms for malicious activities like data theft and ransomware. The group escalated its operations by executing a supply-c...

    Read More »
  • Interpol Seizes $97M in Major African Cybercrime Bust

    Interpol Seizes $97M in Major African Cybercrime Bust

    A major international law enforcement effort has resulted in the seizure of nearly $100 million and the arrest of more than 1,200 suspects across Africa in one of the largest cybercrime crackdowns in recent history. The operation, known as Operation Serengeti 2.0, united authorities from ...

    Read More »
  • Koske Linux malware hides in panda images to evade detection

    Koske Linux malware hides in panda images to evade detection

    A sophisticated Linux malware called Koske uses deceptive panda images to deliver malicious payloads, evading traditional detection and potentially leveraging AI for development. The malware employs polyglot files that function as both harmless images and executable scripts, exploiting misconfigu...

    Read More »
  • Fake Windows BSOD Screens Deliver ClickFix Malware

    Fake Windows BSOD Screens Deliver ClickFix Malware

    A sophisticated phishing campaign targets the European hospitality industry by impersonating Booking.com, using a fake website and a fabricated Windows Blue Screen of Death error to trick users into manually installing malware. The attack deploys the DCRAT remote access trojan, which gains persis...

    Read More »
  • RondoDox Botnet Breaches Next.js Servers via React2Shell Flaw

    RondoDox Botnet Breaches Next.js Servers via React2Shell Flaw

    The RondoDox botnet is actively exploiting the critical React2Shell vulnerability (CVE-2025-55182) to compromise Next.js servers, deploying malware and cryptocurrency miners. This campaign is part of the botnet's evolving, aggressive strategy, which also includes large-scale exploitation of vulne...

    Read More »
  • React2Shell flaw fuels ransomware attacks

    React2Shell flaw fuels ransomware attacks

    The **React2Shell** vulnerability (CVE-2025-55182) is being actively exploited, allowing attackers to gain unauthorized server access and deploy ransomware in under a minute without authentication. Attackers used this flaw to deploy the **Weaxor ransomware**, a less sophisticated rebrand of older...

    Read More »
  • US Law Enforcement Warns of Anti-Tech Extremism Amid Rising AI Hatred

    US Law Enforcement Warns of Anti-Tech Extremism Amid Rising AI Hatred

    Federal intelligence agencies and U.S. law enforcement have identified "anti-technology extremists" as a new domestic threat, with surveillance priorities shifting to monitor individuals and activities categorized under this broad and vague classification. The new focus aligns with President Trum...

    Read More »
  • Runpod Hits $120M ARR, Sparked by a Reddit Post

    Runpod Hits $120M ARR, Sparked by a Reddit Post

    Runpod, an AI application hosting platform, reached a $120 million annual revenue run rate by solving a frustrating software experience for developers working with GPUs, starting from a simple Reddit post and bootstrapping. The founders, former corporate developers, pivoted their cryptocurrency m...

    Read More »