V3G4 Botnet Evolves: From DDoS to Covert Cryptomining

Cyble Research & Intelligence Labs (CRIL) uncovered an active Linux campaign delivering a Mirai-derived V3G4 botnet that performs raw-socket SSH scanning, C2 DNS resolution, and process masquerading before deploying a runtime-configured XMRig Monero miner. The campaign uses an architecture-aware downloader, tmpfs staging, UPX-packed binaries, and fileless miner configuration fetched from C2 to maximize stealth and evasion. #V3G4 #XMRig

Read More
Ransomware and Supply Chain Attacks Increasingly Converge: Cyble

Ransomware and supply chain attacks reached record levels in November, with ransomware groups increasingly leveraging supply chain vulnerabilities. The U.S. experienced the highest number of attacks, targeting critical sectors and exfiltrating sensitive data, emphasizing the need for enhanced cybersecurity measures. #Qilin #ACIRA #CL0P #SupplyChainVulnerabilities…

Read More