‘Panda’ Crypto Malware Group Has Nabbed $100K in Monero Since 2018

Talos said in a report on Tuesday that Panda’s employs remote access tools (RATs) and crypto-mining malwareto exploit vulnerable web applications, and manages to access networks of companies internationally. Its use of RATs puts organizations at risk of the hacking group using their networks for crypto mining purposes or theft of information, according to Talos.

A cybersecurity firm has identified a group behind a spate of cryptocurrency-mining malware attacks that have been targeting enterprises across the globe.

Said to have already scooped up almost $100,000 (at current prices) in the monero cryptocurrency via its malicious software packages, the group has been dubbed “Panda”, by the team that identified it last summer – the Cisco Talos Intelligence Group.

“This is far from the most sophisticated actor we’ve ever seen, but it still has been one of the most active attackers we’ve seen in Cisco Talos threat trap data”, the team said.

The group has proven adept at updating its tools as they are discovered, in something of an arms race with security researchers.

Talos indicates that Panda harnesses exploits previously employed by Shadow Brokers – a group notorious for publishing hacking tools stolen from the U.S. National Security Agency – and Mimikatz, open-source software that is able to steal passwords from computer memory.

Talos said it has identified “successful” and “widespread” malware campaigns associated with Panda after identifying the group in 2018. Since then Panda has upgraded its infrastructure, exploits and payloads.

The researchers said:

“We believe Panda is a legitimate threat capable of spreading cryptocurrency miners that can use up valuable computing resources and slow down networks and systems. Talos confirmed that organizations in the banking, healthcare, transportation, telecommunications, IT services industries were affected in these campaigns.”

While the group may not be the most sophisticated, alos warned that “system administrators and researchers should never underestimate the damage an actor can do with widely available tools such as Mimikatz.”

It calculated that Panda has mined around 1,215 monero (XMR) – worth $91,000 at press time – since it started operations.

Spread the love
FacebookTwitterLinkedinRedditMixWhatsappWordPressTelegramVkontakte
Share
Tags: Crypto-Mining Hacking Malware Monero Security

Recent Posts

Ethereum’s One Month Correlation with BTC Drops to 68% as $3k Beckons
  • Ethereum News 2

Ethereum’s One Month Correlation with BTC Drops to 68% as $3k Beckons

$3k Possible for Ethereum in the Month of May. Ethereum’s ongoing…

Ethereum 2.0 Deposit Contract Now Holds 4M ETH Worth $10.8B
  • Ethereum News 2

Ethereum 2.0 Deposit Contract Now Holds 4M ETH Worth $10.8B

Ethereum Aims for new ATHs as Options and Futures Expire…

Tesla sold 10 percent of its bitcoins. Cause of concern for cryptocurrency investors?
  • News coin 2

Tesla sold 10 percent of its bitcoins. Cause of concern for cryptocurrency investors?

Tesla released its first quarter 2021 earnings earlier this week.…

Gemini Exchange to Issue Its Own Credit Card for Cryptocurrency Cashbacks
  • News coin 2

Gemini Exchange to Issue Its Own Credit Card for Cryptocurrency Cashbacks

Users of the large cryptocurrency exchange Gemini will soon get…

Iranian government will use mined cryptocurrency to fight economic sanctions
  • News coin 2

Iranian government will use mined cryptocurrency to fight economic sanctions

Iran continues to explore the potential use of cryptocurrencies as…

Ethereum’s Recent High Fees Pushed More USDT to Tron
  • Ethereum 2019 News

Ethereum’s Recent High Fees Pushed More USDT to Tron

Tether’s Market Cap Hits $50 Billion. Mr. Ardoino’s comments were in…