Please create an account to participate in the Slashdot moderation system

 



Forgot your password?
typodupeerror
×
IT Technology

Google Cloud Adds New Cryptomining Threat Detection Capability (therecord.media) 6

Google has launched today a new security feature for Google Cloud tenants that is meant to detect and block cryptomining operations that may be taking place behind the owners' backs. From a report: Named Virtual Machine Threat Detection (VMTD), Google said this new feature is an agentless system that continually scans the memory of virtual machines deployed in Google Cloud environments for tell-tale signs of increased CPU or GPU usage -- specific to cryptomining operations. To avoid false-positive detections, the feature has been left disabled by default; however, any customer can enable it for their GCP VMs. They can do this by going to the Settings page of their Security Command Center and looking under the Manage Settings section. Google said the feature will only work with non-sensitive memory, and VMTD will not process memory from nodes marked as "Confidential." VMTD has begun rolling out today for public preview, so tenants are recommended to enable it for smaller portions of their nodes and keep a close eye on its impact on performance.
This discussion has been archived. No new comments can be posted.

Google Cloud Adds New Cryptomining Threat Detection Capability

Comments Filter:
  • by leonbev ( 111395 ) on Monday February 07, 2022 @01:40PM (#62246577) Journal

    They originally invented this feature for themselves, to catch people signing up for Google Cloud trial accounts and setting up CPU crypto miners with the free service credits. GPU mining has probably never really been a big problem for them, because they also restrict GPU usage for trial accounts.

    It's probably saved them a lot of money, and it will probably save them even more once they can use this tool to find hackers hiding crypto mining workloads within legitimate instances stood up for another purpose.

    • by stikves ( 127823 )

      This would benefit everyone.

      On a shared multi-user machine, RAM bandwidth is a valuable resource.

      When RAM is 10x slower than CPU cache, and one instance wants to hog it all, everybody loses.

    • Google "eats their own dog food", if you take my meaning. I don't know this for a fact, but I get the impression that a significant fraction of what Google puts out for public consumption started out as internal projects.
    • Behold! My newest cryptocurrency algorithm invention! Proof of Web Page Served. Try to detect this as abnormal traffic, Google! Ahahahaha.

  • Also, the scan results will be used for ad-targeting.

"It is better for civilization to be going down the drain than to be coming up it." -- Henry Allen

Working...