cognitive cybersecurity intelligence

News and Analysis

Search

Docker API servers being hit to spread cryptomining malware

Cybersecurity researchers from Trend Micro have discovered hackers targeting Docker remote API servers to mine cryptocurrencies on the underlying hardware. The hackers use an unconventional approach involving the gRPC protocol over h2c. Initially, the attackers target public-facing Docker API hosts to upgrade the HTTP/2 protocol to h2c, enabling them to create a container to mine cryptocurrencies. The researchers suggested the hackers were likely mining Monero due to its privacy benefits. Docker server users are advised to implement stronger access controls and authentication mechanisms.

Source: www.techradar.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts