Close Menu
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
What's Hot

CFTC orders Kalshi to continue offering prediction markets in New York after state lawsuit

August 13, 2026

DATA Foundation token lockups: 18-month extension

August 13, 2026

Vadzo Imaging Positions Falcon-3C10CRS: 3MP Color HDR USB Camera with Omnivision OX3C10 Sensor for Outdoot Robotics and HDR Applications

August 13, 2026
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
Facebook X (Twitter) Instagram
CryptoPulseDaily.com
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
CryptoPulseDaily.com
Home»Security and Privacy»Cryptojackers Disable Alibaba Cloud Security Agent
Cryptojackers Disable Alibaba Cloud Security Agent
Security and Privacy

Cryptojackers Disable Alibaba Cloud Security Agent

July 5, 2023No Comments2 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

Security experts have warned that threat actors are compromising Alibaba Cloud (Aliyun) infrastructure to deploy cryptocurrency mining malware.

The Chinese tech giant is a popular choice for infrastructure-as-a-service (IaaS) in South-East Asia. Yet, cybersecurity software company Trend Micro warned that its Elastic Computing Service (ECS) instances are also an increasingly common target for financially motivated hackers.

Several features of the platform are being targeted by these groups to enhance their chances of success, according to the report.

Although Alibaba ECS comes with a security agent, some actors can uninstall or disable it on compromise. Even if it is still running and detects a malicious script, it is then the customer’s responsibility to take action, said Trend Micro. Customers must take care to configure the product properly, as the default Alibaba ECS instance provides root access.

“In this situation, the threat actor has the highest possible privilege upon compromise, including vulnerability exploitation, any misconfiguration issue, weak credentials or data leakage. Thus, advanced payloads such as kernel module rootkits and achieving persistence via running system services can be deployed,” the researchers wrote.

“Given this feature, it comes as no surprise that multiple threat actors target Alibaba Cloud ECS simply by inserting a code snippet for removing software found only in Alibaba ECS.”

Alibaba ECS also has an auto-scaling feature that automatically adjusts computing resources based on the volume of user requests. However, this can run up additional charges for customers in the background if exploited by cryptomining malware.

Trend Micro noted that such is the popularity among threat actors of Alibaba Cloud and other regional players like Huawei Cloud that it has observed attackers removing rivals from inside compromised infrastructure.

See also  FBI: Mobile Beta-Testing Apps Are Major Security Risk

The security vendor urged customers to:

  • Enhance CSP protection with their own third-party malware-scanning and vulnerability detection tools.
  • Practice the principle of least privilege.
  • Customize the security features of cloud projects and workloads.

It claimed to have reached out to Alibaba to respond to its findings but had not heard a reply at the time of publishing.

Source link

Agent Alibaba Cloud Cryptojackers Disable Security
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Trezor Shipping Provider Exposes 13,689 Crypto Customers to Scams

August 13, 2026

Coinbase Says Bug Reports Could Triple as AI Adds Security Noise

August 13, 2026

Harmony’s ONE Plunges 30% After Attacker Mints 4 Billion Tokens

August 12, 2026

InHand Networks Introduces InCloud Agent, an AI Force Multiplier for Network Operations

August 12, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

A Guide to the Latest Tools and Features

June 24, 2023

Ripple Shares May Reach $140,000 After IPO, Predicts Wall Street Analyst

September 2, 2023

Binance reportedly pulls out of Austria, shifts focus to MiCA compliance in Europe

June 27, 2023

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

Our mission is to develop a community of people who try to make financially sound decisions. The website strives to educate individuals in making wise choices about Crypto, ICOs, Web3, Blockchain and more.

We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

CFTC orders Kalshi to continue offering prediction markets in New York after state lawsuit

August 13, 2026

DATA Foundation token lockups: 18-month extension

August 13, 2026

Vadzo Imaging Positions Falcon-3C10CRS: 3MP Color HDR USB Camera with Omnivision OX3C10 Sensor for Outdoot Robotics and HDR Applications

August 13, 2026
Get Informed

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
© 2026 Crypto Pulse Daily - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.

Cleantalk Pixel
  • bitcoinBitcoin(BTC)$63,383.000.00%
  • ethereumEthereum(ETH)$1,886.130.40%
  • tetherTether(USDT)$1.000.00%
  • binancecoinBNB(BNB)$610.610.10%
  • usd-coinUSDC(USDC)$1.000.00%
  • rippleXRP(XRP)$1.010.20%
  • solanaSolana(SOL)$76.110.60%
  • tronTRON(TRX)$0.333973-0.40%
  • Figure HelocFigure Heloc(FIGR_HELOC)$0.99-5.10%
  • HyperliquidHyperliquid(HYPE)$57.502.20%