Coindesk Logo

Hackers Using Monero Mining Malware as Decoy, Warns Microsoft

Hackers Using Monero Mining Malware as Decoy, Warns Microsoft

Hackers Using Monero Mining Malware as Decoy, Warns Microsoft

Crypto-jacking is giving nation-state hackers a decoy for their more malicious attacks, Microsoft cautioned in a report.

Crypto-jacking is giving nation-state hackers a decoy for their more malicious attacks, Microsoft cautioned in a report.

Crypto-jacking is giving nation-state hackers a decoy for their more malicious attacks, Microsoft cautioned in a report.

AccessTimeIconDec 1, 2020, 6:15 PM
Updated Aug 19, 2021, 5:55 AM

Presented By Icon

Election 2024 coverage presented by

Stand with crypto

Crypto-jacking is giving nation-state hackers a decoy for their more malicious attacks, warned Microsoft in a Monday report.

The company's intelligence team said a group called BISMUTH hit government targets in France and Vietnam with relatively conspicuous monero mining trojans this summer. Mining the crypto generated side cash for the group, but it also distracted victims from BISMUTH's true campaign: credential theft.

Crypto-jacking "allowed BISMUTH to hide its more nefarious activities behind threats that may be perceived to be less alarming because they’re 'commodity' malware," Microsoft concluded. It said the conspicuousness of monero mining fits BISMUTH's "hide in plain sight" MO.

Microsoft recommended organizations stay vigilant against crypto-jacking as a possible decoy tactic.

Disclosure

Please note that our privacy policy, terms of use, cookies, and do not sell my personal information have been updated.

CoinDesk is an award-winning media outlet that covers the cryptocurrency industry. Its journalists abide by a strict set of editorial policies. CoinDesk has adopted a set of principles aimed at ensuring the integrity, editorial independence and freedom from bias of its publications. CoinDesk is part of the Bullish group, which owns and invests in digital asset businesses and digital assets. CoinDesk employees, including journalists, may receive Bullish group equity-based compensation. Bullish was incubated by technology investor Block.one.


Learn more about Consensus 2024, CoinDesk's longest-running and most influential event that brings together all sides of crypto, blockchain and Web3. Head to consensus.coindesk.com to register and buy your pass now.