← Back to BrewedIntel
othermediumCryptomining

Sep 06, 2023 • Wiz Security Research

I know what you mined last summer: summarizing Summer '23 cryptomining activity

Wiz Research identified multiple cryptomining campaigns targeting cloud workloads during the summer of 2023. Utilizing the Wiz Sensor, the team detected...

Source
Wiz Security Research
Category
other
Severity
medium

Executive Summary

Wiz Research identified multiple cryptomining campaigns targeting cloud workloads during the summer of 2023. Utilizing the Wiz Sensor, the team detected unauthorized mining activities designed to exploit cloud resources for financial gain. These campaigns represent a significant threat to cloud infrastructure integrity and cost management, as cryptominers consume substantial computational power. While specific threat actors or malware families were not explicitly named in this summary, the activity highlights the persistent risk of resource hijacking in cloud environments. Organizations are advised to implement robust detection mechanisms to identify similar threats. Preventive measures include monitoring workload behavior, restricting unnecessary permissions, and leveraging security sensors like Wiz to detect anomalies. Proactive defense is essential to mitigate the financial and operational impact of unauthorized cryptomining operations within cloud ecosystems during this period.

Summary

During the summer of 2023, using the Wiz Sensor, Wiz Research detected several different cryptomining campaigns targeting cloud workloads. Learn about these campaigns and their associated IoCs, and how to detect and prevent similar threats.

Published Analysis

Wiz Research identified multiple cryptomining campaigns targeting cloud workloads during the summer of 2023. Utilizing the Wiz Sensor, the team detected unauthorized mining activities designed to exploit cloud resources for financial gain. These campaigns represent a significant threat to cloud infrastructure integrity and cost management, as cryptominers consume substantial computational power. While specific threat actors or malware families were not explicitly named in this summary, the activity highlights the persistent risk of resource hijacking in cloud environments. Organizations are advised to implement robust detection mechanisms to identify similar threats. Preventive measures include monitoring workload behavior, restricting unnecessary permissions, and leveraging security sensors like Wiz to detect anomalies. Proactive defense is essential to mitigate the financial and operational impact of unauthorized cryptomining operations within cloud ecosystems during this period. During the summer of 2023, using the Wiz Sensor, Wiz Research detected several different cryptomining campaigns targeting cloud workloads. Learn about these campaigns and their associated IoCs, and how to detect and prevent similar threats. During the summer of 2023, using the Wiz Sensor, Wiz Research detected several different cryptomining campaigns targeting cloud workloads. Learn about these campaigns and their associated IoCs, and how to detect and prevent similar threats.