BTC $77,445.92 -2.83%
ETH $2,435.50 -2.42%
BNB $687.92 -3.29%
XRP $1.39 -2.56%
SOL $103.78 -3.16%
TRX $0.3385 -0.38%
DOGE $0.0845 -3.88%
ADA $0.2006 -4.79%
BCH $245.74 -7.02%
LINK $11.35 -3.65%
HYPE $81.69 -2.08%
AAVE $122.26 -3.22%
SUI $0.7409 -2.95%
XLM $0.1775 -3.84%
ZEC $797.78 +0.71%
BTC $77,445.92 -2.83%
ETH $2,435.50 -2.42%
BNB $687.92 -3.29%
XRP $1.39 -2.56%
SOL $103.78 -3.16%
TRX $0.3385 -0.38%
DOGE $0.0845 -3.88%
ADA $0.2006 -4.79%
BCH $245.74 -7.02%
LINK $11.35 -3.65%
HYPE $81.69 -2.08%
AAVE $122.26 -3.22%
SUI $0.7409 -2.95%
XLM $0.1775 -3.84%
ZEC $797.78 +0.71%

Hackers exploit public DevOps tools for cryptocurrency mining attacks

2025-06-04 23:57:46

ChainCatcher message, security company Wiz has discovered that a hacker organization codenamed JINX-0132 is massively exploiting configuration vulnerabilities in DevOps tools for cryptocurrency mining attacks. The attack primarily targets tools such as HashiCorp Nomad/Consul, Docker API, and Gitea, with approximately 25% of cloud environments at risk. The attack methods include: deploying XMRig mining software using Nomad's default configuration, executing malicious scripts through Consul's unauthorized API, and controlling exposed Docker API to create mining containers.

app_icon
ChainCatcher Building the Web3 world with innovations.