Close Menu
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
What's Hot

Ripple’s ‘pro-privacy’ Larsen on surveillance mogul Thiel’s Dialog list

June 21, 2026

Has EDGE found a local bottom after its sharp correction? Assessing…

June 21, 2026

The Decentralized Infrastructure Layer for Scalable AI Inference

June 21, 2026
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
Facebook X (Twitter) Instagram
CryptoPulseDaily.com
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
CryptoPulseDaily.com
Home»Security and Privacy»Vietnamese State Hackers Deploy Coin Miners to Victims
Vietnamese State Hackers Deploy Coin Miners to Victims
Security and Privacy

Vietnamese State Hackers Deploy Coin Miners to Victims

July 19, 20231 Comment2 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

Vietnamese state-backed hackers have been observed deploying cryptocurrency mining malware to monetize the networks of victim organizations they’re also spying on, according to Microsoft.

APT32, (aka Ocean Lotus, BISMUTH), has in the past been associated with sophisticated cyber-espionage campaigns aimed at targets as diverse as carmakers and local Chinese government departments.

However, from July to August 2020, the group deployed Monero coin miners in attacks targeting private and public sector organizations in France and Vietnam. Doing so may be part of a plan to generate extra revenue alongside such attacks, or an attempt to stay hidden, Microsoft claimed.

“The coin miners also allowed BISMUTH to hide its more nefarious activities behind threats that may be perceived to be less alarming because they’re ‘commodity’ malware,” it said in a blog post.

“If we learned anything from ‘commodity’ banking trojans that bring in human-operated ransomware, we know that common malware infections can be indicators of more sophisticated cyberattacks and should be treated with urgency and investigated and resolved comprehensively.”

Other tactics designed to “blend in” include the targeting of only one individual in an organization with spear-phishing; in some cases, the attackers even corresponded with their victims to encourage them to open the malicious attachment.

Another is the use of DLL side-loading via outdated applications including Microsoft Defender Antivirus.

“Blending in was important for BISMUTH because the group spent long periods of time performing discovery on compromised networks until they could access and move laterally to high-value targets like servers, where they installed various tools to further propagate or perform more actions,” noted Microsoft.

See also  Five accused of illicit $76M cryptocurrency scam captured in Thailand

“At this point in the attack, the group relied heavily on evasive PowerShell scripts, making their activities even more covert.”

Organizations faced with this threat group should focus on reducing the attack surface via user education, disabling Macros, tweaking email filters and other techniques, improving credential hygiene through MFA and stopping attack sprawl with intrusion detection, firewalls and other tools.

Source link

Coin Deploy Hackers miners state Victims Vietnamese
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Texas Power Grid Reform Could Boost Bitcoin Miners Turned Data Center Operators

June 19, 2026

Crypto industry aghast at Illinois’ new tax on holding or transferring digital assets in state budget

June 19, 2026

Bitcoin miners need billions to fund AI ambitions, led by IREN’s $21B gap

June 18, 2026

Fake GitHub Stars and AI Videos Mask a Crypto Clipper

June 18, 2026
View 1 Comment

1 Comment

  1. Preston Neufeld on May 2, 2025 10:56 pm

    I have been absent for some time, but now I remember why I used to love this web site. Thank you, I will try and check back more often. How frequently you update your website?

    Reply
Leave A Reply Cancel Reply

Top Posts

Sui and Aptos brace for July unlock as crypto community awaits impact

June 24, 2023

Shavonne Wong On Art and Fostering Diversity in Web3

September 2, 2023

CLARITY Act markup could come next week after stablecoin deal breakthrough

May 4, 2026

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

Our mission is to develop a community of people who try to make financially sound decisions. The website strives to educate individuals in making wise choices about Crypto, ICOs, Web3, Blockchain and more.

We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

Ripple’s ‘pro-privacy’ Larsen on surveillance mogul Thiel’s Dialog list

June 21, 2026

Has EDGE found a local bottom after its sharp correction? Assessing…

June 21, 2026

The Decentralized Infrastructure Layer for Scalable AI Inference

June 21, 2026
Get Informed

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
© 2026 Crypto Pulse Daily - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.

Cleantalk Pixel
  • bitcoinBitcoin(BTC)$64,142.000.85%
  • ethereumEthereum(ETH)$1,732.650.51%
  • tetherTether(USDT)$1.00-0.03%
  • binancecoinBNB(BNB)$588.610.87%
  • usd-coinUSDC(USDC)$1.000.01%
  • rippleXRP(XRP)$1.14-0.34%
  • solanaSolana(SOL)$73.021.59%
  • tronTRON(TRX)$0.3258161.13%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.030.00%
  • HyperliquidHyperliquid(HYPE)$69.20-2.03%