create account

Cryptomining Malware Moves into Software Containers by mrosenquist

View this thread on: hive.blogpeakd.comecency.com
· @mrosenquist ·
$6.77
Cryptomining Malware Moves into Software Containers
<html>
<p><img src="https://i.postimg.cc/44V9xPz1/Cryptomining-Malware-Moves-into-Software-Containers.jpg" width="640" height="426"/></p>
<p>Security researchers at <a href="https://unit42.paloaltonetworks.com/graboid-first-ever-cryptojacking-worm-found-in-images-on-docker-hub/">Palo Alto Networks</a> have discovered the Graboid worm that spreads through Docker software containers and mines Monero cryptocurrency for the attackers. This is a new tactic and territory for crypto-mining worms. It is the first time such malware has been detected traversing software containers. &nbsp;&nbsp;</p>
<p>Once a core image repository is infected, anytime the image is pulled and used, the malware goes with it and is spawned to maliciously consume resources for crypto-mining. Traditional security software rarely looks inside containers, so these instances can be active for as long as the container is in use. &nbsp;</p>
<h2>&nbsp;<strong>Security recommendations:</strong>&nbsp;</h2>
<ol>
  <li>Make sure the docker engine is not exposed to the internet without proper authentication controls&nbsp;</li>
  <li>Use whitelisting where possible to identify and limit allowable incoming traffic sources&nbsp;</li>
  <li>Tenaciously protect the software repositories from tampering or infection&nbsp;</li>
  <li>Only pull images from trusted repositories&nbsp;</li>
  <li>Setup monitoring of images and repositories to detect if they have been modified or acting in unauthorized ways &nbsp;</li>
</ol>
</html>
👍  , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , ,
👎  
properties (23)
authormrosenquist
permlinkcryptomining-malware-moves-into-software-containers
categorysecurity
json_metadata{"tags":["security","news","technology","software","cybersecurity"],"image":["https://i.postimg.cc/44V9xPz1/Cryptomining-Malware-Moves-into-Software-Containers.jpg"],"links":["https://unit42.paloaltonetworks.com/graboid-first-ever-cryptojacking-worm-found-in-images-on-docker-hub/"],"app":"steemit/0.1","format":"html"}
created2019-10-17 23:57:30
last_update2019-10-17 23:57:30
depth0
children4
last_payout2019-10-24 23:57:30
cashout_time1969-12-31 23:59:59
total_payout_value3.681 HBD
curator_payout_value3.084 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length1,501
author_reputation177,646,612,823,517
root_title"Cryptomining Malware Moves into Software Containers"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id91,658,329
net_rshares24,462,148,698,682
author_curate_reward""
vote details (39)
@cupofcoco321 ·
$0.06
Great recommendations!
👍  ,
properties (23)
authorcupofcoco321
permlinkpzjurs
categorysecurity
json_metadata{"app":"steemit/0.1"}
created2019-10-18 02:55:03
last_update2019-10-18 02:55:03
depth1
children0
last_payout2019-10-25 02:55:03
cashout_time1969-12-31 23:59:59
total_payout_value0.032 HBD
curator_payout_value0.030 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length22
author_reputation754,448,114,604
root_title"Cryptomining Malware Moves into Software Containers"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id91,661,570
net_rshares362,478,658,010
author_curate_reward""
vote details (2)
@goblu96 ·
$0.06
It was only a matter of time. Always secure your environments!!!
👍  ,
properties (23)
authorgoblu96
permlinkpzjuca
categorysecurity
json_metadata{"app":"steemit/0.1"}
created2019-10-18 02:45:48
last_update2019-10-18 02:45:48
depth1
children0
last_payout2019-10-25 02:45:48
cashout_time1969-12-31 23:59:59
total_payout_value0.031 HBD
curator_payout_value0.031 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length64
author_reputation895,122,805,291
root_title"Cryptomining Malware Moves into Software Containers"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id91,661,419
net_rshares355,338,715,038
author_curate_reward""
vote details (2)
@tts ·
To listen to the audio version of this article click on the play image.
[![](https://s18.postimg.org/51o0kpijd/play200x46.png)](http://ec2-52-72-169-104.compute-1.amazonaws.com/mrosenquist__cryptomining-malware-moves-into-software-containers.mp3)
Brought to you by [@tts](https://steemit.com/tts/@tts/introduction). If you find it useful please consider upvoting this reply.
properties (22)
authortts
permlinkre-cryptomining-malware-moves-into-software-containers-20191018t004106
categorysecurity
json_metadata""
created2019-10-18 00:41:06
last_update2019-10-18 00:41:06
depth1
children0
last_payout2019-10-25 00:41:06
cashout_time1969-12-31 23:59:59
total_payout_value0.000 HBD
curator_payout_value0.000 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length374
author_reputation-4,535,154,553,995
root_title"Cryptomining Malware Moves into Software Containers"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id91,659,200
net_rshares0
@ultimus ·
$0.04
As software containers gained in popularity, it was just a matter of time before malware followed.
👍  , ,
properties (23)
authorultimus
permlinkpzjsqy
categorysecurity
json_metadata{"app":"steemit/0.1"}
created2019-10-18 02:11:24
last_update2019-10-18 02:11:24
depth1
children0
last_payout2019-10-25 02:11:24
cashout_time1969-12-31 23:59:59
total_payout_value0.033 HBD
curator_payout_value0.005 HBD
pending_payout_value0.000 HBD
promoted0.000 HBD
body_length98
author_reputation6,664,676,750,516
root_title"Cryptomining Malware Moves into Software Containers"
beneficiaries[]
max_accepted_payout1,000,000.000 HBD
percent_hbd10,000
post_id91,660,840
net_rshares374,397,434,216
author_curate_reward""
vote details (3)