New malware targets serverless AWS Lambda with cryptominers (bleepingcomputer.com)
“Security researchers have discovered the first malware specifically developed to target Amazon Web Services (AWS) Lambda cloud environments with cryptominers. AWS Lambda is a serverless computing platform for running code from hundreds of AWS services and software as a service (SaaS) apps without managing servers.” The malware is designed to deploy a custom XMRig cryptominer to mine for Monero cryptocurrency. So far, there has been no other malicious intent behind these attacks other than to mine for cryptocurrencies. These attacks seem to be related to be based on a previous attack that utilizes stolen or leaked AWS Access and Secret keys to deploy the cryptominer.
Kenneth Saltisky
Leave a Reply