Hadooken Strikes: New Linux Malware Mines Crypto and Wreaks Havoc on Servers

Cybersecurity researchers have found new malware targeting Linux environments for illicit cryptocurrency mining. The malware, named Hadooken, exploits Oracle Weblogic server vulnerabilities to drop a crypto miner and DDoS botnet.

Pro Dashboard

Hot Take:

Linux users, brace yourselves! The Hadooken malware is here to mine your crypto and eat your bandwidth. It’s like that annoying roommate who never pays rent and eats all your snacks, but in server form.

Key Points:

  • Hadooken malware targets Linux environments, specifically Oracle Weblogic servers.
  • The malware campaign involves dropping Tsunami malware and deploying a cryptocurrency miner.
  • Attackers exploit known vulnerabilities and weak credentials to gain access.
  • Hadooken spreads laterally within networks using SSH data and persists via cron jobs.
  • Linked to bulletproof hosting providers in Russia, highlighting the cybercrime ecosystem.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?