BTC $78,907.59 +0.30%
ETH $2,494.29 +0.72%
BNB $751.61 -0.17%
XRP $1.43 +2.57%
SOL $104.05 +0.91%
TRX $0.3385 +0.53%
DOGE $0.0900 +0.33%
ADA $0.2186 +0.36%
BCH $258.95 -0.08%
LINK $12.50 -1.46%
HYPE $85.71 +1.81%
AAVE $129.07 -1.91%
SUI $0.8147 -0.81%
XLM $0.1890 -1.03%
ZEC $1,215.76 +7.52%
BTC $78,907.59 +0.30%
ETH $2,494.29 +0.72%
BNB $751.61 -0.17%
XRP $1.43 +2.57%
SOL $104.05 +0.91%
TRX $0.3385 +0.53%
DOGE $0.0900 +0.33%
ADA $0.2186 +0.36%
BCH $258.95 -0.08%
LINK $12.50 -1.46%
HYPE $85.71 +1.81%
AAVE $129.07 -1.91%
SUI $0.8147 -0.81%
XLM $0.1890 -1.03%
ZEC $1,215.76 +7.52%

Hackers exploit public DevOps tools for cryptocurrency mining attacks

2025-06-04 23:57:46

ChainCatcher message, security company Wiz has discovered that a hacker organization codenamed JINX-0132 is massively exploiting configuration vulnerabilities in DevOps tools for cryptocurrency mining attacks. The attack primarily targets tools such as HashiCorp Nomad/Consul, Docker API, and Gitea, with approximately 25% of cloud environments at risk. The attack methods include: deploying XMRig mining software using Nomad's default configuration, executing malicious scripts through Consul's unauthorized API, and controlling exposed Docker API to create mining containers.

app_icon
ChainCatcher Building the Web3 world with innovations.