Business Daily Media

The Times

.

Cloud Systems Are the New Battleground for Crypto Mining Threat Actors

Trend Micro report warns of growing attack surface for CPU-mining

HONG KONG SAR - Media OutReach - 30 March 2022 - Trend Micro Incorporated (TYO: 4704; TSE: 4704), a global cybersecurity leader, today announced a new report revealing a fierce, hour-by-hour battle for resources among malicious cryptocurrency mining groups.

To read the "A Floating Battleground Navigating the Landscape of Cloud-Based Cryptocurrency Mining" report: https://www.trendmicro.com/vinfo/hk/security/news/cybercrime-and-digital-threats/probing-the-activities-of-cloud-based-cryptocurrency-mining-groups

"Just a few hours of compromise could result in profits for the perpetrators. That's why we're seeing a continuous fight for cloud CPU resources. It's akin to a real-life capture-the-flag, with the victim's cloud infrastructure the battleground," said Stephen Hilt, Senior Threat Researcher at Trend Micro. "Threats like this need joined-up, platform-based security to ensure the bad guys have nowhere to hide. The right platform will help teams map their attack surface, assess risk, and apply for the right protection without adding excessive overheads."

Threat actors are increasingly scanning for and exploiting these exposed instances, as well as brute-forcing SecureShell (SSH) credentials, in order to compromise cloud assets for cryptocurrency mining, the report reveals. Targets are often characterized by having outdated cloud software in the cloud environment, poor cloud security hygiene, or inadequate knowledge on how to secure cloud services and thus easily exploited by threat actors to gain access to the systems.

Cloud computing investments have surged during the pandemic. But the ease with which new assets can be deployed has also left many cloud instances online for longer than needed—unpatched and misconfigured.

On one hand, this extra computing workload threatens to slow key user-facing services for victim organizations, as well as increasing operating costs by up to 600% for every infected system.

Crypto mining can also be a precursor to more serious compromise. Many mature threat actors deploy mining software to generate additional revenue before online buyers purchase access for ransomware, data theft, and more.

The Trend Micro report details the activity of multiple threat actor groups in this space, including:

Outlaw, which compromises IoT devices and Linux cloud servers by exploiting known vulnerabilities or performing brute-force SSH attacks.

TeamTNT, which exploits vulnerable software to compromise hosts before stealing credentials for other services to help it move around to new hosts and abuse any misconfigured services.

Kinsing, which sets up an XMRig kit for mining Monero and kicks any other miners off a victim system.

8220, which has been observed fighting Kinsing over the same resources. They frequently eject each other from a host and then install their own cryptocurrency miners.

Kek Security, which has been associated with IoT malware and running botnet services.

To mitigate the threat from cryptocurrency mining attacks in the cloud, Trend Micro recommends organizations to:

  • Ensure systems are up-to-date and running only the required services
  • Deploy firewall, IDS/IPS, and cloud endpoint security to limit and filter network traffic to and from known bad hosts
  • Eliminate configuration errors via Cloud Security Posture Management tools
  • Monitor traffic to and from cloud instances and filter out domains associated with known mining pools
  • Deploy rules that monitor open ports, changes to DNS routing, and utilization of CPU resources from a cost perspective

About Trend Micro

Trend Micro, a global cybersecurity leader, helps make the world safe for exchanging digital information. Fueled by decades of security expertise, global threat research, and continuous innovation, Trend Micro's cybersecurity platform protects hundreds of thousands of organizations and millions of individuals across clouds, networks, devices, and endpoints. As a leader in cloud and enterprise cybersecurity, the platform delivers a powerful range of advanced threat defense techniques optimized for environments like AWS, Microsoft, and Google, and central visibility for better, faster detection and response. With 7,000 employees across 65 countries, Trend Micro enables organizations to simplify and secure their connected world.

#TrendMicro

News from Asia

Industry expert Jason Gerlis has been appointed as the Chief Revenue Officer at GoGlobal

TOKYO, JAPAN - Media OutReach Newswire - 11 June 2026 - Industry expert Jason Gerlis has been appointed as the Chief Revenue Officer at GoGlobal – the global expansion business – bolstering the l...

Singapore company Hydrantula develops a modular way to build coastal protection faster and at a lower cost, solution to be launched during SIWW 2026.

The method assembles most of a structure on land before it is filled with concrete at sea and is designed to double as a habitat for marine life.SINGAPORE - Media OutReach Newswire - 11 June 2026 ...

DeRAMA, Singapore's First Korean Confinement Centre Managed by Sserenity, Reaches Full Capacity

The first Singapore outpost of the Korean postpartum brand has filled every suite, mirroring its Seoul flagship, which sold out six months ahead.SINGAPORE - Media OutReach Newswire - 11 June 2026 ...

Etiqa Insurance Singapore Brings Everyday Readiness to Public Spaces through "When Life Spins, Stay Ready" Campaign

Interactive out-of-home activation across Mind, Body and Money aims to generate more than 10,000 readiness responses from Singaporeans SINGAPORE - Media OutReach Newswire - 11 June 2026 - Etiqa I...

Agoda: Kuala Lumpur to Penang and Singapore among Asia’s most affordable summer flight routes

Kuala Lumpur also appears as a destination on affordable routes from Pekanbaru and Ho Chi Minh City KUALA LUMPUR, MALAYSIA - Media OutReach Newswire - 11 June 2026 - Digital travel platform Agod...

GWM TANK 700 Hi4-T Wins 11 of 13 Stages at 2026 Taklimakan Rally

URUMQI, CHINA - Media OutReach Newswire - 11 June 2026 - When the 2026 Taklimakan Rally ended on June 1, GWM had done more than just finish the 2026 Taklimakan Rally...

Volcano Engine and Bingo Group Launch In-depth AI+IP Partnership, AI Features Roll Out Across Multiple Chinese Platforms on June 10

HONG KONG SAR - Media OutReach Newswire - 11 June 2026 - Volcano Engine has officially entered into an in-depth strategic partnership around "AI+IP" with Bingo Group, a client of Data Hash...

DP World Launches First Global Seagrass Restoration Initiative In South Korea

Partnership with Korea Green Foundation and FIRA will help restore seagrass meadows off Geoje Island, supporting marine biodiversity, blue carbon habitats and local communitiesBUSAN, SOUTH KOREA - ...

DKSH entered a strategic distribution partnership with BridgeBio

DKSH entered a strategic distribution partnership with BridgeBio to support regulatory evaluation and potential patient access to a Transthyretin Stabilizer for ATTR-CM in Australia, Singapore, Sou...

HKPC’s first "E-commerce Innovation Expo 2026" Expanding Brand Horizons with Cross-border E-commerce, AI, and more

HONG KONG SAR - Media OutReach Newswire - 11 June 2026 - As e-commerce continues to surge, small and medium enterprises (SMEs) are seeking effective pathways for business development and transform...

Click Frenzy returns with a free EOFY sale event for retailers this month

New owners Gabby and Hezi Leibovich bring back Australia’s leading ecommerce sales event with Australia Post as Major Sponsor   Click Frenzy is ...

The 95 Per Cent Failure Rate Is Not An AI Problem

Most Australian SMEs I speak with are already having a go at AI. Some are running formal pilots, others have a team member quietly experimenting o...

New AR tech helping to solve field service skills crisis

AI-enabled augmented reality (AR) smart glasses are emerging as a new practical solution to fill a shortage of field service technicians maintaini...

For Midsize Companies, Global Payroll Systems Matter More to Business-Security Than You Think

When a midsize company expands across borders, its payroll operation becomes exponentially more complex. These organisations typically face a new ...

GEO and the AI search shift reshaping Australian and New Zealand business visibility

For years, one of the biggest digital marketing questions for businesses was ‘how do we get onto page one of Google?’ That question still matters, ...

Why self-service is reshaping fleet management for modern businesses

Fleet management today is constrained by fragmented systems and heavy administrative demands. A lot of the work still relies on booking vehicles and...