Guardicore labs, a global research team of hackers, cybersecurity researchers, and industry experts, reported that a malware botnet called FritzFrog was spread out to tens of millions of IP addresses.
Offices of government officials, hospitals and health centers, telecom companies, financial institutions, educational institutions installing the XMRig were targeted. A brute force attack was used by this malware botnet to attack these addresses to gain access to their server, by trying several passwords hoping to have the right guess.
High education institutions and railway firms in the U.S and Europe are also among the 500SH servers that Fritz Frog has successfully hacked.
The malware botnet looks completely unique, as its put together and set up pay loads-in-memory. It was difficult also to track because the connections were not set up within a P2P network, says Guadicore labs.
The malware becomes aggressive in brute-force attempts but remains well ordered by distributing targets equally within the network.
Therefore, to prevent attacks from malware such as FritzFrogz Hapaz proposes a secure method using public-key authentication and picking a strong password.
The research team at Cado security discovered a stealth crypto mining malware that steals TeamTNT, Amazon web services credentials, which also install XMRig.
Source: Cointelegraph