Close Menu
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
What's Hot

ZetaChain GPT-5.5 Integration Transforms Decentralized AI with Unmatched Privacy and Performance

April 27, 2026

Why The 42% Crash From ATH Is Actually Good For Bitcoin And The Crypto Market

April 27, 2026

Crypto Week Ahead

April 27, 2026
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
Facebook X (Twitter) Instagram
CryptoPulseDaily.com
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
CryptoPulseDaily.com
Home»Security and Privacy»Chaos RAT Used to Enhance Linux Cryptomining Attacks
Chaos RAT Used to Enhance Linux Cryptomining Attacks
Security and Privacy

Chaos RAT Used to Enhance Linux Cryptomining Attacks

June 3, 2023No Comments2 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

The Chaos remote administrative tool (RAT) has been used to improve the efficiency of cryptocurrency mining attacks against Linux systems.

The findings from Trend Micro security researchers were detailed in an advisory published on Sunday.

“We’ve previously written about cryptojacking scenarios involving Linux machines and specific cloud computing instances being targeted by threat actors active in this space, such as TeamTNT,” the security experts wrote.

During their investigative efforts, Trend Micro said they found that the attacker tactics were similar, even if they involved different threat actors.

“The initial phase saw attackers trying to kill off competing malware, security products, and other cloud middleware. This was followed by routines for persistence and payload execution, which in most cases is a Monero (XMR) cryptocurrency miner,” reads the technical write-up.

For more sophisticated threats, Trend Micro said they have also observed capabilities that allowed infection on more devices.

“In November 2022, we intercepted a threat that had a slightly different routine and incorporated an advanced RAT named Chaos […] which is based on an open-source project.”

In the newly observed attacks, the main downloader script and further payloads were hosted in different locations to ensure that the campaign remained active and kept on spreading.

During this malicious campaign, the scripts spotted by Trend Micro showed that the main server, which was also used for downloading payloads, appeared to be located in Russia.

From a technical standpoint, the Chaos RAT is a Go-compiled binary with several functions, including executing reverse shells, downloading and uploading files, and taking screenshots, among others.

See also  Ankr and Brevis coChain partner to enhance web3 networks with ZK

“On the surface, the incorporation of a RAT into the infection routine of a cryptocurrency mining malware might seem relatively minor,” Trend Micro wrote.

“However, given the tool’s array of functions and the fact that this evolution shows that cloud-based threat actors are still evolving their campaigns, it is important that both organizations and individuals stay extra vigilant when it comes to security.”

The Trend Micro advisory comes roughly two months after decentralized finance (DeFi) platform Moola Market confirmed it suffered a security incident leading to a loss of up to $9m worth of cryptocurrency.

Source link

attacks Chaos Cryptomining Enhance Linux RAT
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

OpenAI’s new image model shows why crypto scams are about to get much worse

April 26, 2026

Conflux Network Forms Strategic Collaboration With Catto Verse To Enhance Cross-Chain Decentralized Application Using AI Capabilities

April 26, 2026

For 93 minutes, installing Bitwarden’s ‘official’ CLI turned laptops into launchpads for hijacking GitHub accounts

April 24, 2026

Npm Supply Chain Attack Uses Worm-Like Propagation

April 24, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

Data Leak Forces Password Reset at Crypto Exchange Poloniex

July 30, 2023

Elon Musk claims European Commission offered X ‘secret illegal deal’ amid DSA probe

July 12, 2024

ANSR Announces ANSR MedTech, a Global Capability Center for a High-Growth MedTech Company

April 7, 2026

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

Our mission is to develop a community of people who try to make financially sound decisions. The website strives to educate individuals in making wise choices about Crypto, ICOs, Web3, Blockchain and more.

We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

ZetaChain GPT-5.5 Integration Transforms Decentralized AI with Unmatched Privacy and Performance

April 27, 2026

Why The 42% Crash From ATH Is Actually Good For Bitcoin And The Crypto Market

April 27, 2026

Crypto Week Ahead

April 27, 2026
Get Informed

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
© 2026 Crypto Pulse Daily - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.

Cleantalk Pixel
  • bitcoinBitcoin(BTC)$77,722.00-0.15%
  • ethereumEthereum(ETH)$2,316.01-0.52%
  • tetherTether(USDT)$1.00-0.01%
  • rippleXRP(XRP)$1.41-1.14%
  • binancecoinBNB(BNB)$625.85-0.86%
  • usd-coinUSDC(USDC)$1.000.01%
  • solanaSolana(SOL)$85.05-1.33%
  • tronTRON(TRX)$0.3255730.64%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.020.00%
  • dogecoinDogecoin(DOGE)$0.098173-0.60%