Skip to content

The State of Malicious Crypto Miners (Blog Post)

MalwareBytes Blog Post

  • Can trick user with AppleScript to get wallet password
  • Can write a rogue browser extension that mines cryptocurrency surreptitiously. Coinhive has an API to mine Monero in the browser
  • Can also write a cryptominer as a Word macro, as a standard executable, or as an APK (for Android)
  • Attackers are using the EternalBlue and DoublePulsar exploits to infect Windows servers with cryptominers