{"id":24043,"date":"2014-06-17T18:42:51","date_gmt":"2014-06-17T22:42:51","guid":{"rendered":"http:\/\/www.opensource.im\/?p=24043"},"modified":"2014-06-17T18:42:51","modified_gmt":"2014-06-17T22:42:51","slug":"hacker-mines-620k-in-cryptocurrency-under-victims-noses","status":"publish","type":"post","link":"https:\/\/euvolution.com\/open-source-convergence\/cryptocurrency\/hacker-mines-620k-in-cryptocurrency-under-victims-noses.php","title":{"rendered":"Hacker mines $620K in cryptocurrency under victims&#8217; noses"},"content":{"rendered":"<p><p>    Computerworld - A German hacker    generated more than $620,000 in cryptocurrency after hijacking    an unknown number of network storage devices and turning them    into digital slaves to mine Dogecoin, researchers said today.  <\/p>\n<p>    \"This wasn't unique, we've seen other malware install    [cryptocurrency] miners, but we haven't seen anything this big    before,\" said Pat Litke, a researcher at Dell SecureWorks'    Counter Threat Unit (CTU). \"That was mostly due to the    infection vector. He could just walk in the door.\"  <\/p>\n<p>    Litke and David Shear, a network security analyst also with    SecureWorks, were referring to vulnerabilities in    network-attached storage (NAS) systems manufactured by    Taiwan-based Synology that the hacker exploited before planting    a customized cryptocurrency miner on the devices.  <\/p>\n<p>    Synology had issued patches for the vulnerabilities shortly    after the flaws were made public last September; the hacked NAS    systems had not been updated with the fixes.  <\/p>\n<p>    Unpatched NAS devices were found and exploited, and then their    computing and graphical horsepower -- the boxes were computers    in all but name -- were set to work generating Dogecoins, an    alternative to the better known Bitcoin. Within months, the    hacker's network of compromised devices mined over 500 Million    Doge, or just over $620,000, Litke said.  <\/p>\n<p>    Hackers have long targeted cryptocurrency with specialized    malware, but almost all of their efforts have targeted existing    digital money, primarily Bitcoins, stored in virtual \"wallets.\"    In February, Litke and Joe Stewart, director of SecureWorks'    malware research, presented their findings on the     rapid increase in cryptocurrency-stealing malware at the    RSA Conference.  <\/p>\n<p>    Planting malware to actually create digital funds,    however, is a     relatively new development, said Litke, and the evidence    they collected on the Synology NAS-hijacking showed how    lucrative the practice can be. That bodes ill.  <\/p>\n<p>    \"It will become fairly commonplace, even as an afterthought,    for [cyber criminals] to add malware miners [to their    payloads],\" said Shear, who expects other cyber criminals to    quickly adopt the strategy. \"We're kind of already there. With    a big enough botnet, and we're talking big, they could    out-hash anyone.\"  <\/p>\n<p>    SecureWorks also dug up some other interesting elements of the    NAS hijack, including the native language of the hacker (or    hackers), and the fact that the mining of Dogecoins couldn't    have been exclusively from the compromised storage devices.  <\/p>\n<p>    The username the firm's researchers found in the malware's    configuration file led them to other digital bits, including a    Github account, while multiple hacker forums showed that the    hacker communicated exclusively in German.  <\/p>\n<p><!-- Auto Generated --><\/p>\n<p>Go here to see the original:<br \/>\n<a target=\"_blank\" href=\"http:\/\/www.computerworld.com\/s\/article\/9249169\/Hacker_mines_620K_in_cryptocurrency_under_victims_noses\/RK=0\/RS=EnjhHg4nngtsJ0O59VZ.wv1cBkY-\" title=\"Hacker mines $620K in cryptocurrency under victims' noses\">Hacker mines $620K in cryptocurrency under victims' noses<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p> Computerworld - A German hacker generated more than $620,000 in cryptocurrency after hijacking an unknown number of network storage devices and turning them into digital slaves to mine Dogecoin, researchers said today. \"This wasn't unique, we've seen other malware install [cryptocurrency] miners, but we haven't seen anything this big before,\" said Pat Litke, a researcher at Dell SecureWorks' Counter Threat Unit (CTU). \"That was mostly due to the infection vector<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[869],"tags":[],"class_list":["post-24043","post","type-post","status-publish","format-standard","hentry","category-cryptocurrency"],"_links":{"self":[{"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/posts\/24043"}],"collection":[{"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/comments?post=24043"}],"version-history":[{"count":0,"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/posts\/24043\/revisions"}],"wp:attachment":[{"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/media?parent=24043"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/categories?post=24043"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/euvolution.com\/open-source-convergence\/wp-json\/wp\/v2\/tags?post=24043"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}