Threat actors are targeting vulnerable Docker services by deploying the XMRig cryptocurrency miner and the 9Hits Viewer software to make money from compromised hosts. The method used to spread the malware is unclear but is likely to involve scanning for prospects using search engines. The servers are breached to deploy two malicious containers via the Docker API, leaving the servers unable to perform as expected.

New CanisterWorm Targets Kubernetes Clusters, Deploys “Kamikaze” Wiper – Hackread
New CanisterWorm Targets Kubernetes Clusters, Deploys “Kamikaze” Wiper Hackread

