RSSAmplifier

Projects on Arch Cloud Labs · Oct 23, 2022

Cryptojacking Campaign Adopts Platypus for C2

0
Sign in to vote or save

This page cannot be shown here. You can still read it on the original site — the toolbar below keeps your place in the directory.

About The Project Last week I looked at a Cryptojacking campaign that leveraged a curl trick in the bash dropper to resolve IPv4 addresses from large integers values. Revisiting the bash dropper, I discovered the threat actor has updated the script to download and execute a command-and-control payload called “Termite” from the Platypus Github project. This blog walks through the…

Read on /projects/cryptojacking-adopts-termite-c2-utility/

Comments

Nothing yet. Say the first thing.

    Sign in to join the conversation.