Thousands of Enterprise Systems Infected by New Blue Mockingbird Malware Gang (zdnet.com) 44
Thousands of enterprise systems are believed to have been infected with a cryptocurrency-mining malware operated by a group tracked under the codename of Blue Mockingbird. From a report: Discovered earlier this month by malware analysts from cloud security firm Red Canary, the Blue Mockingbird group is believed to have been active since December 2019. Researchers say Blue Mockingbird attacks public-facing servers running ASP.NET apps that use the Telerik framework for their user interface (UI) component. Hackers exploit the CVE-2019-18935 vulnerability to plant a web shell on the attacked server. They then use a version of the Juicy Potato technique to gain admin-level access and modify server settings to obtain (re)boot persistence. Once they gain full access to a system, they download and install a version of XMRRig, a popular cryptocurrency mining app for the Monero (XMR) cryptocurrency.
That's a good thing (Score:3, Informative)
If you're dumb enough to be running windows, the should be some cost involved.
Re: (Score:2)
Re: (Score:2)
That's why we use Macs where I work. We have access to commercial software and it's a UNIX 03-compliant operating system certified by The Open Group.
Re: That's a good thing (Score:1)
Re: (Score:2)
Re: (Score:1)
Re:That's a good thing (Score:5, Insightful)
Translation: Windows facilitates idiots managing enterprise systems, so way cheaper! Flip side, you have idiots managing enterprise systems, making malware infections more likely.
Re: (Score:2)
Can't wait until AI is managing Windows enterprise systems for an even cheaper experience.
Re:That's a good thing (Score:5, Funny)
My house has seven windows, am I at risk?!
Re: That's a good thing (Score:2)
Re: (Score:1)
More so than in a house having 6 windows.
Re: (Score:2)
I'm not sure if it's relevant, but in installed my windows in the years 1995, 1998, 1998SE, 2000, XP, 8 and 10.
Re: (Score:2)
Re: (Score:2)
Not if you delete them!
Re: (Score:2)
Re: (Score:2)
And as an extension - those that are behind Monero and other digital currencies - might also be held responsible for the "untraceability" of the transactions.
Define Enterprise (Score:3)
What operating systems are affected? (Score:2)
:-)=)
Re: (Score:2)
Call Starfleet for reinforcements (Score:3)
... Maybe the Excalibur could help.
Upsss
Sorry, wrong franchise.
Monero? (Score:1)
Re: (Score:2)
Yeah, I don't get why they're mining Monero. They'll be lucky to mine a coin per day. On the other hand, if they mined Dogecoins, they'd probably mine hundreds per day!
Re: Monero? (Score:1)
Re: (Score:2)
Because Monero is a privacy based coin. So you can’t track the transaction.
Telerik (Score:5, Insightful)
YMMV.
Re: Telerik (Score:2)
Sorry, it's been a day. Originally i thought you worked with (or for) telerek, but later got the impression you were working with their control product.
The latter interested me more, we work with Infragistics' Ultra controls, and I couldn't agree with you more.
Except that I find them unnessecarily heavy, and almost over polished looking. The software doesnt even remotely resemble anything else on the system, I guess sort of how like a qt app stands out near a bunch of gtk apps.
Re:Telerik (Score:5, Insightful)
Re:Telerik (Score:5, Insightful)
One of the reasons nobody wants to hire old IT people is because the org can't handle real experience with a critical eye. They want co-conspirators in bullshit and eye-candy. After you've seen several rounds of bullshit, you know what it smells like.
I got the middle part (Score:3)
I actually got the middle part of the technical explanation: juicy potato.
Re: (Score:2)
Re: (Score:2)
The middle - you mean the space between the two words? Yeah, I get that too.
No, I do get the juicy potato. I have no fucking idea what the rest tastes like.
Re: (Score:2)
the dilemma is do you put these up and risk everyone's machine or lock it away until the fix is applied or give notice to the company and give them 14 days to fix it
Title (Score:4, Funny)
Thousands of Enterprise Systems Infected by New Blue Mockingbird Malware Gang
Man, Kirk is gonna be pissed.
Re: (Score:1)
Re: (Score:2)
A starship is a very complex machine that has lots of onboard systems, maybe even thousands on a single ship...
Re: (Score:1)
and in none of them do I get a date with that green babe.