Attackers Conducting Cryptojacking Operation Against U.S. Education OrganizationsPalo Alto Unit 42·Jun 6, 13:25 UTC · Jun 6, 2024Vulnerability42
TrapX DeceptionGrid 7.2 protects containers against cryptojacking and other malicious attacksHelp Net Security·Apr 17, 12:42 UTC · Apr 17, 2026Vulnerability55
Commando Cat Cryptojacking Attacks Target Misconfigured Docker InstancesThe Hacker News·Jun 7, 05:10 UTC · Jun 7, 2024VulnerabilityCVE-2018-20062CVE-2019-9082135
TeamTNT Actively Enumerating Cloud Environments to Infiltrate OrganizationsPalo Alto Unit 42·Jun 6, 12:35 UTC · Jun 6, 2024Vulnerability30
Cryptojacking Group TeamTNT Suspected of Using Decoy Miner to Conceal Data ExfiltrationThe Hacker News·Mar 18, 05:01 UTC · Mar 18, 2023Vulnerability30
New ScrubCrypt Crypter Used in Cryptojacking Attacks Targeting Oracle WebLogicThe Hacker News·Mar 10, 06:47 UTC · Mar 10, 2023Vulnerability30
CVE-2019-2725 Oracle WebLogic flaw exploited in cryptojacking campaignSecurity Affairs·Jun 11, 05:53 UTC · Jun 11, 2019Vulnerability in the wildCVE-2019-272560
Make-A-Wish website compromised to serve cryptojacking scriptHelp Net Security·Nov 17, 15:17 UTC · Nov 17, 2023VulnerabilityCVE-2018-7600CVE-2018-760260
8220 Gang used new ScrubCrypt crypter in cryptojacking attacksSecurity Affairs·Mar 9, 10:55 UTC · Mar 9, 2023Vulnerability30
Week in review: Meltdown, Spectre, online tracking, and cryptojackingHelp Net Security·Jan 7, 00:00 UTC · Jan 7, 2018Vulnerability55
TeamPCP Traced Back to 2020 Cryptojacking OperationInfosecurity Magazine·Aug 6, 14:15 UTC · Aug 6, 2026Vulnerability155
TOR-Based Cryptojacking Attack Expands Through Misconfigured Docker APIsThe Hacker News·Sep 10, 00:37 UTC · Sep 10, 2025Vulnerability130
Unpatched Microsoft Exchange Servers hit with cryptojackingCyberScoop·Apr 14, 15:47 UTC · Apr 14, 2021Vulnerability in the wild60
Highlights from the Unit 42 Cloud Threat Report, 1H 2021Palo Alto Unit 42·Jun 6, 13:26 UTC · Jun 6, 2024Vulnerability55
Researchers spot cryptojacking attack that disables endpoint protectionsArs Technica · Security·May 21, 19:14 UTC · May 21, 2024Vulnerability30
Looney Tunables bug exploited for cryptojackingHelp Net Security·Nov 7, 00:00 UTC · Nov 7, 2023VulnerabilityCVE-2023-4911CVE-2017-984160
Cryptojackers Disable Alibaba Cloud Security AgentInfosecurity Magazine·Nov 16, 09:13 UTC · Nov 16, 2021Vulnerability30
ShadowRay 2.0 Exploits Unpatched Ray Flaw to Build SelfThe Hacker News·Nov 21, 06:45 UTC · Nov 21, 2025VulnerabilityCVE-2023-48022160
Unit 42 Cloud Security Trends and TipsPalo Alto Unit 42·Jan 28, 20:53 UTC · Jan 28, 2022Vulnerability55
New Pro-Ocean crypto-miner targets Apache ActiveMQ, Oracle WebLogic, and Redis installsSecurity Affairs·Jan 31, 11:27 UTC · Jan 31, 2021VulnerabilityCVE-2017-10271CVE-2016-308860
Can advancing cybersecurity techniques keep pace with new attack vectors in 2019?Help Net Security·Aug 22, 12:04 UTC · Aug 22, 2019Vulnerability55
Mimo Hackers Exploit CVE-2025-32432 in Craft CMS to Deploy Cryptominer and ProxywareThe Hacker News·Jun 2, 10:07 UTC · Jun 2, 2025VulnerabilityCVE-2025-32432CVE-2021-44228CVE-2022-26134+1 CVEs47
Atlassian Confluence Vulnerability Exploited in Crypto Mining CampaignsThe Hacker News·Aug 31, 15:11 UTC · Aug 31, 2024Vulnerability in the wildCVE-2023-2252760
8220 Gang Exploiting Oracle WebLogic Server Vulnerability to Spread MalwareThe Hacker News·Dec 19, 06:58 UTC · Dec 19, 2023VulnerabilityCVE-2020-14883CVE-2020-14882CVE-2017-350647
The Wild West of drive-by cryptocurrency miningHelp Net Security·Nov 21, 07:41 UTC · Nov 21, 2023Vulnerability30
Fresh Wave of Malicious npm Packages Threaten Kubernetes Configs and SSH KeysThe Hacker News·Sep 21, 03:53 UTC · Sep 21, 2023Vulnerability142
New P2PInfect Worm Targets Redis Servers with Undocumented Breach MethodsThe Hacker News·Aug 1, 03:50 UTC · Aug 1, 2023VulnerabilityCVE-2022-054360
New P2PInfect Worm Targeting Redis Servers on Linux and Windows SystemsThe Hacker News·Jul 31, 13:28 UTC · Jul 31, 2023VulnerabilityCVE-2022-054360
Week in review: 5G IoT security, efficient password cracking for pentesters, supply chain examinationHelp Net Security·Dec 8, 00:00 UTC · Dec 8, 2019Vulnerability42
Hackers Favorite CoinHive Cryptocurrency Mining Service Shutting DownThe Hacker News·Feb 28, 10:59 UTC · Feb 28, 2019Vulnerability42
New tactics subvert traditional security measures and strike organizations of all sizesHelp Net Security·Sep 26, 00:00 UTC · Sep 26, 2018Vulnerability55
Even with cloud providers implementing defenses, glaring weaknesses remainHelp Net Security·Feb 21, 00:00 UTC · Feb 21, 2018Vulnerability55
Langflow RCE Exploited to Deploy Monero Miner on Exposed AI App EndpointsThe Hacker News·Jun 30, 15:47 UTC · Jun 30, 2026Vulnerability in the wildCVE-2026-33017CVE-2025-3248160
From Android TVs to routers: the xlabs_v1 MiraiSecurity Affairs·May 7, 10:15 UTC · May 7, 2026Vulnerability30
Warning: fake Magento patch 9789 contains virusSansec (Magento / e-commerce security)·Apr 14, 19:49 UTC · Apr 14, 2026Vulnerability55
13-Year-Old Redis Flaw Exposed: CVSS 10.0 Vulnerability Lets Attackers Run Code RemotelyThe Hacker News·Oct 7, 09:30 UTC · Oct 7, 2025Vulnerability in the wildCVE-2025-4984460
Cryptomining group Kinsing expands operations to Russia, researchers warnThe Record·Aug 18, 14:57 UTC · Aug 18, 2025VulnerabilityCVE-2017-984160
Over a Third of Grafana Instances Exposed to XSS FlawInfosecurity Magazine·Jun 16, 10:15 UTC · Jun 16, 2025VulnerabilityCVE-2025-412360
Atlassian reveals critical Confluence RCE flaw, urges "immediate action" (CVE-2023-22527)Help Net Security·May 22, 08:16 UTC · May 22, 2025Vulnerability in the wildCVE-2023-22527CVE-2023-2252260
Pentera Cyber Pulse identifies new threats and vulnerabilitiesHelp Net Security·Feb 26, 00:00 UTC · Feb 26, 2025Vulnerability in the wild57