Close Menu
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
What's Hot

Story [IP] surges 27% as volume explodes 100%, but THIS raises risks

April 17, 2026

CleanSpark becomes most shorted Bitcoin reserve firm

April 17, 2026

BoE governor Bailey calls for globally-unified stablecoin regulations

April 17, 2026
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
Facebook X (Twitter) Instagram
CryptoPulseDaily.com
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
CryptoPulseDaily.com
Home»Security and Privacy»Millions of Email Servers at Risk from Cryptomining Worm
Millions of Email Servers at Risk from Cryptomining Worm
Security and Privacy

Millions of Email Servers at Risk from Cryptomining Worm

August 6, 2023No Comments2 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

Researchers have spotted a major new cyber-attack campaign targeting millions of Linux email servers around the world with a cryptomining malware payload.

Exim accounts for over half (57%) of the globe’s internet email servers. Over 3.5 million are at risk from a vulnerability discovered last week, CVE-2019-10149, according to security vendor Cybereason.

There appears to be two waves of attack: the first involved attackers initially pushing out exploits from a command and control (C2) server on the clear web. However, the second seems to be more sophisticated.

“This is a highly pervasive campaign that installs cron jobs for persistence and downloads several payloads for different stages of the attack. In one of those stages, one of the payloads is a port scanner written in python. It looks for additional vulnerable servers on the internet, connects to them, and infects them with the initial script,” wrote Cybereason.

“In the attack, the attackers add an RSA authentication key to the SSH server which allows them to connect to the server as root and own it completely.”

Researchers are still working to assess the breadth of the campaign, but with worm-like capabilities in play, system administrators are urged to patch their Exim servers now, as well as find and remove any cron jobs.

“It is clear that the attackers went to great lengths to try to hide the intentions of their newly-created worm. They used hidden services on the TOR network to host their payloads and created deceiving windows icon files in an attempt to throw off researchers and even system administrators who are looking at their logs,” concluded Cybereason. 

See also  Game-Related Cyber-Threats: Almost 100k Malicious Files Last Year

“The prevalence of vulnerable Exim servers allows attackers to compromise many servers in a relatively short period of time, as well as generate a nice stream of cryptocurrency revenue.”

Source link

Cryptomining Email Millions Risk Servers Worm
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Cookeville Hospital Discloses Rhysida Breach Hitting 337,917

April 16, 2026

Solana Policy Institute-backed PAC spends millions to jam Sherrod Brown’s Senate run

April 16, 2026

Crypto’s new $11 million PAC booked millions in ads with firm started by Tether US CEO

April 15, 2026

Ethereum Shorts Pile Up On Binance As Squeeze Risk Grows

April 15, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

President Biden Vetoes Bill That Would Have Eliminated Controversial SEC Crypto Policy

June 1, 2024

GIGABYTE Launches Its First Web 3.0 Community with Launch of AFWC NFT Collection

May 26, 2023

Tezos Founder Josh Jarrett and Spouse Launch New IRS Lawsuit Over Staked XTZ Tokens

October 12, 2024

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

Our mission is to develop a community of people who try to make financially sound decisions. The website strives to educate individuals in making wise choices about Crypto, ICOs, Web3, Blockchain and more.

We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

Story [IP] surges 27% as volume explodes 100%, but THIS raises risks

April 17, 2026

CleanSpark becomes most shorted Bitcoin reserve firm

April 17, 2026

BoE governor Bailey calls for globally-unified stablecoin regulations

April 17, 2026
Get Informed

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
© 2026 Crypto Pulse Daily - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.

Cleantalk Pixel
  • bitcoinBitcoin(BTC)$77,558.003.03%
  • ethereumEthereum(ETH)$2,434.263.33%
  • tetherTether(USDT)$1.000.02%
  • rippleXRP(XRP)$1.491.82%
  • binancecoinBNB(BNB)$642.221.00%
  • usd-coinUSDC(USDC)$1.000.01%
  • solanaSolana(SOL)$89.32-0.85%
  • tronTRON(TRX)$0.3272060.23%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.02-1.33%
  • dogecoinDogecoin(DOGE)$0.1001431.01%