#kinsing — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #kinsing, aggregated by home.social.
-
Нежданные гости: F6 проанализировала первые масштабные атаки группы Kinsing на российские компании
Установить злоумышленников удалось в результате исследования, которое провели аналитики F6 . Весной 2025 года один из клиентов компании зафиксировал попытку кибератаки на свои внешние сервера. Со списком IP-адресов, с которых велась атака, он обратился в департамент киберразведки (Threat Intelligence) компании F6 за атрибуцией.
https://habr.com/ru/companies/F6/articles/935988/
#kinsing #криптоджекинг #майнер #уязвимости #cve #киберразведка #threat_intelligence
-
Нежданные гости: F6 проанализировала первые масштабные атаки группы Kinsing на российские компании
Установить злоумышленников удалось в результате исследования, которое провели аналитики F6 . Весной 2025 года один из клиентов компании зафиксировал попытку кибератаки на свои внешние сервера. Со списком IP-адресов, с которых велась атака, он обратился в департамент киберразведки (Threat Intelligence) компании F6 за атрибуцией.
https://habr.com/ru/companies/F6/articles/935988/
#kinsing #криптоджекинг #майнер #уязвимости #cve #киберразведка #threat_intelligence
-
Нежданные гости: F6 проанализировала первые масштабные атаки группы Kinsing на российские компании
Установить злоумышленников удалось в результате исследования, которое провели аналитики F6 . Весной 2025 года один из клиентов компании зафиксировал попытку кибератаки на свои внешние сервера. Со списком IP-адресов, с которых велась атака, он обратился в департамент киберразведки (Threat Intelligence) компании F6 за атрибуцией.
https://habr.com/ru/companies/F6/articles/935988/
#kinsing #криптоджекинг #майнер #уязвимости #cve #киберразведка #threat_intelligence
-
Good day everyone!
One of my colleagues, Scott Poley, brought this article to my attention during Cyborg Security's "Out of the Woods Podcast" this week and I wanted to share it here as well. This is an article from Aqua Security that covers in-depth the APT group known as #Kinsing. Now, the report is very long and detailed, but what I wanted to highlight was the level of details and the large amount of actionable intel that this report contained. I said it on the podcast and I will repeat it here, this is one of the most complete attacks that I have seen that focuses on the #Linux operating system. I highly recommend reading this when you get the time! Enjoy and Happy Hunting!
Kinsing Demystified: A Comprehensive Technical Guide
https://info.aquasec.com/kinsing-report#CyberSecurity #ITSecurity #InfoSec #BlueTeam #ThreatIntel #ThreatHunting #ThreatDetection #HappyHunting #readoftheday Intel 471 #Intel471
-
Good day everyone!
One of my colleagues, Scott Poley, brought this article to my attention during Cyborg Security's "Out of the Woods Podcast" this week and I wanted to share it here as well. This is an article from Aqua Security that covers in-depth the APT group known as #Kinsing. Now, the report is very long and detailed, but what I wanted to highlight was the level of details and the large amount of actionable intel that this report contained. I said it on the podcast and I will repeat it here, this is one of the most complete attacks that I have seen that focuses on the #Linux operating system. I highly recommend reading this when you get the time! Enjoy and Happy Hunting!
Kinsing Demystified: A Comprehensive Technical Guide
https://info.aquasec.com/kinsing-report#CyberSecurity #ITSecurity #InfoSec #BlueTeam #ThreatIntel #ThreatHunting #ThreatDetection #HappyHunting #readoftheday Intel 471 #Intel471
-
Good day everyone!
One of my colleagues, Scott Poley, brought this article to my attention during Cyborg Security's "Out of the Woods Podcast" this week and I wanted to share it here as well. This is an article from Aqua Security that covers in-depth the APT group known as #Kinsing. Now, the report is very long and detailed, but what I wanted to highlight was the level of details and the large amount of actionable intel that this report contained. I said it on the podcast and I will repeat it here, this is one of the most complete attacks that I have seen that focuses on the #Linux operating system. I highly recommend reading this when you get the time! Enjoy and Happy Hunting!
Kinsing Demystified: A Comprehensive Technical Guide
https://info.aquasec.com/kinsing-report#CyberSecurity #ITSecurity #InfoSec #BlueTeam #ThreatIntel #ThreatHunting #ThreatDetection #HappyHunting #readoftheday Intel 471 #Intel471
-
Good day everyone!
One of my colleagues, Scott Poley, brought this article to my attention during Cyborg Security's "Out of the Woods Podcast" this week and I wanted to share it here as well. This is an article from Aqua Security that covers in-depth the APT group known as #Kinsing. Now, the report is very long and detailed, but what I wanted to highlight was the level of details and the large amount of actionable intel that this report contained. I said it on the podcast and I will repeat it here, this is one of the most complete attacks that I have seen that focuses on the #Linux operating system. I highly recommend reading this when you get the time! Enjoy and Happy Hunting!
Kinsing Demystified: A Comprehensive Technical Guide
https://info.aquasec.com/kinsing-report#CyberSecurity #ITSecurity #InfoSec #BlueTeam #ThreatIntel #ThreatHunting #ThreatDetection #HappyHunting #readoftheday Intel 471 #Intel471
-
Good day everyone!
One of my colleagues, Scott Poley, brought this article to my attention during Cyborg Security's "Out of the Woods Podcast" this week and I wanted to share it here as well. This is an article from Aqua Security that covers in-depth the APT group known as #Kinsing. Now, the report is very long and detailed, but what I wanted to highlight was the level of details and the large amount of actionable intel that this report contained. I said it on the podcast and I will repeat it here, this is one of the most complete attacks that I have seen that focuses on the #Linux operating system. I highly recommend reading this when you get the time! Enjoy and Happy Hunting!
Kinsing Demystified: A Comprehensive Technical Guide
https://info.aquasec.com/kinsing-report#CyberSecurity #ITSecurity #InfoSec #BlueTeam #ThreatIntel #ThreatHunting #ThreatDetection #HappyHunting #readoftheday Intel 471 #Intel471
-
Kinsing Hacker Group Exploits More Flaws to Expand Botnet for Cryptojacking – Source:thehackernews.com https://ciso2ciso.com/kinsing-hacker-group-exploits-more-flaws-to-expand-botnet-for-cryptojacking-sourcethehackernews-com/ #rssfeedpostgeneratorecho #CyberSecurityNews #TheHackerNews #Kinsing #hacker
-
Kinsing Hacker Group Exploits More Flaws to Expand Botnet for Cryptojacking – Source:thehackernews.com https://ciso2ciso.com/kinsing-hacker-group-exploits-more-flaws-to-expand-botnet-for-cryptojacking-sourcethehackernews-com/ #rssfeedpostgeneratorecho #CyberSecurityNews #TheHackerNews #Kinsing #hacker
-
Kinsing Hacker Group Exploits More Flaws to Expand Botnet for Cryptojacking – Source:thehackernews.com https://ciso2ciso.com/kinsing-hacker-group-exploits-more-flaws-to-expand-botnet-for-cryptojacking-sourcethehackernews-com/ #rssfeedpostgeneratorecho #CyberSecurityNews #TheHackerNews #Kinsing #hacker
-
Kinsing Hacker Group Exploits More Flaws to Expand Botnet for Cryptojacking – Source:thehackernews.com https://ciso2ciso.com/kinsing-hacker-group-exploits-more-flaws-to-expand-botnet-for-cryptojacking-sourcethehackernews-com/ #rssfeedpostgeneratorecho #CyberSecurityNews #TheHackerNews #Kinsing #hacker
-
От падений базы данных до кибератак: история о том, как мы обнаружили взлом
Статья про расследование простого но интересного киберпреступления. От первых незначительных инцидентов до открытия взлома сервера, мы покажем, как расследовали взлом, копаясь в тысячах строк логов.
-
От падений базы данных до кибератак: история о том, как мы обнаружили взлом
Статья про расследование простого но интересного киберпреступления. От первых незначительных инцидентов до открытия взлома сервера, мы покажем, как расследовали взлом, копаясь в тысячах строк логов.
-
Apache ActiveMQ Vulnerability Exploited by Kinsing
Pulse ID: 657a5ad368a2741d41d801f3
Pulse Link: https://otx.alienvault.com/pulse/657a5ad368a2741d41d801f3
Pulse Author: cryptocti
Created: 2023-12-14 01:30:59Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#OTX #OpenThreatExchange #InfoSec #bot #CyberSecurity #Apache #Vulnerability #ActiveMQ #Kinsing #cryptocti
-
The follow-up of #Kinsing reveals a rather broad infrastructure, composed as follows:
-
The follow-up of #Kinsing reveals a rather broad infrastructure, composed as follows:
-
-
-
Our honeypots were deployed on 9 November 2023. The first #Kinsing IS was recorded two days later, on 11 November. We noticed that all these attacks systematically originate from two IP addresses: 109.237.96[.]124 and 78.153.140[.]30.
-
Our honeypots were deployed on 9 November 2023. The first #Kinsing IS was recorded two days later, on 11 November. We noticed that all these attacks systematically originate from two IP addresses: 109.237.96[.]124 and 78.153.140[.]30.
-
While the vulnerability has also been exploited to deploy some reverse shell, #Kinsing remains the only significant intrusion set (IS) based on our observation.
-
While the vulnerability has also been exploited to deploy some reverse shell, #Kinsing remains the only significant intrusion set (IS) based on our observation.
-
🚨 Our new report presents a technical analysis of the #ActiveMQ CVE-2023-46604 vulnerability exploited by #Kinsing and an in-depth analysis of this intrusion set, including its infrastructure and #cryptocurrency assets.
https://blog.sekoia.io/activemq-cve-2023-46604-exploited-by-kinsing-and-overview-of-this-threat/
-
🚨 Our new report presents a technical analysis of the #ActiveMQ CVE-2023-46604 vulnerability exploited by #Kinsing and an in-depth analysis of this intrusion set, including its infrastructure and #cryptocurrency assets.
https://blog.sekoia.io/activemq-cve-2023-46604-exploited-by-kinsing-and-overview-of-this-threat/
-
Kinsing Crypto Malware Targets Linux Systems via Apache ActiveMQ Flaw https://www.hackread.com/kinsing-crypto-malware-linux-apache-activemq-flaw/ #Vulnerability #Cryptomining #CyberAttack #Security #ActiveMQ #Malware #Kinsing #Apache #Linux
-
Kinsing Crypto Malware Targets Linux Systems via Apache ActiveMQ Flaw https://www.hackread.com/kinsing-crypto-malware-linux-apache-activemq-flaw/ #Vulnerability #Cryptomining #CyberAttack #Security #ActiveMQ #Malware #Kinsing #Apache #Linux
-
CVE-2023-46604 (Apache ActiveMQ) Vulnerability Exploited to Infect Systems With Cryptominers and Rootkits
Trend Vision uncovered the active exploitation of the Apache ActiveMQ vulnerability CVE-2023-46604 to download and infect Linux systems with the Kinsing malware (also known as h2miner) and cryptocurrency miner.
Pulse ID: 655e10007c3ef461cd299611
Pulse Link: https://otx.alienvault.com/pulse/655e10007c3ef461cd299611
Pulse Author: AlienVault
Created: 2023-11-22 14:28:15Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#OTX #OpenThreatExchange #InfoSec #bot #CyberSecurity #Malware #CryptoMiner #Linux #Apache #Vulnerability #cryptocurrency #ActiveMQ #Kinsing #AlienVault
-
Kinsing, a Linux malware, has a history of focusing on misconfigured containerized environments for cryptocurrency mining, using compromised server resources.
#Cybersecurity #Linux #Malware #Kinsing #Vulnerability #Rootkit
-
Kinsing, a Linux malware, has a history of focusing on misconfigured containerized environments for cryptocurrency mining, using compromised server resources.
#Cybersecurity #Linux #Malware #Kinsing #Vulnerability #Rootkit
-
Kinsing, a Linux malware, has a history of focusing on misconfigured containerized environments for cryptocurrency mining, using compromised server resources.
#Cybersecurity #Linux #Malware #Kinsing #Vulnerability #Rootkit
-
Kinsing, a Linux malware, has a history of focusing on misconfigured containerized environments for cryptocurrency mining, using compromised server resources.
#Cybersecurity #Linux #Malware #Kinsing #Vulnerability #Rootkit
-
Kinsing, a Linux malware, has a history of focusing on misconfigured containerized environments for cryptocurrency mining, using compromised server resources.
#Cybersecurity #Linux #Malware #Kinsing #Vulnerability #Rootkit
-
Kinsing Cyberattackers Target Apache ActiveMQ Flaw to Mine Crypto – Source: www.darkreading.com https://ciso2ciso.com/kinsing-cyberattackers-target-apache-activemq-flaw-to-mine-crypto-source-www-darkreading-com/ #rssfeedpostgeneratorecho #DarkReadingSecurity #CyberSecurityNews #Cyberattackers #DARKReading #Kinsing
-
Kinsing Cyberattackers Target Apache ActiveMQ Flaw to Mine Crypto – Source: www.darkreading.com https://ciso2ciso.com/kinsing-cyberattackers-target-apache-activemq-flaw-to-mine-crypto-source-www-darkreading-com/ #rssfeedpostgeneratorecho #DarkReadingSecurity #CyberSecurityNews #Cyberattackers #DARKReading #Kinsing
-
Kinsing Hackers Exploit Apache ActiveMQ Vulnerability to Deploy Linux Rootkits – Source:thehackernews.com https://ciso2ciso.com/kinsing-hackers-exploit-apache-activemq-vulnerability-to-deploy-linux-rootkits-sourcethehackernews-com/ #rssfeedpostgeneratorecho #CyberSecurityNews #TheHackerNews #hackers #Kinsing
-
Kinsing Hackers Exploit Apache ActiveMQ Vulnerability to Deploy Linux Rootkits – Source:thehackernews.com https://ciso2ciso.com/kinsing-hackers-exploit-apache-activemq-vulnerability-to-deploy-linux-rootkits-sourcethehackernews-com/ #rssfeedpostgeneratorecho #CyberSecurityNews #TheHackerNews #hackers #Kinsing
-
Kinsing Cyberattackers Debut ‘Looney Tunables’ Cloud Exploits – Source: www.darkreading.com https://ciso2ciso.com/kinsing-cyberattackers-debut-looney-tunables-cloud-exploits-source-www-darkreading-com/ #rssfeedpostgeneratorecho #DarkReadingSecurity #CyberSecurityNews #Cyberattackers #DARKReading #Kinsing
-
Kinsing Cyberattackers Debut ‘Looney Tunables’ Cloud Exploits – Source: www.darkreading.com https://ciso2ciso.com/kinsing-cyberattackers-debut-looney-tunables-cloud-exploits-source-www-darkreading-com/ #rssfeedpostgeneratorecho #DarkReadingSecurity #CyberSecurityNews #Cyberattackers #DARKReading #Kinsing
-
Kinsing threat actors probed the Looney Tunables flaws in recent attacks – Source: securityaffairs.com https://ciso2ciso.com/kinsing-threat-actors-probed-the-looney-tunables-flaws-in-recent-attacks-source-securityaffairs-com/ #rssfeedpostgeneratorecho #informationsecuritynews #ITInformationSecurity #SecurityAffairscom #CyberSecurityNews #PierluigiPaganini #SecurityAffairs #SecurityAffairs #LooneyTunables #BreakingNews #cryptomining #CyberCrime #Cybercrime #hacking #Kinsing #LINUX
-
Kinsing threat actors probed the Looney Tunables flaws in recent attacks – Source: securityaffairs.com https://ciso2ciso.com/kinsing-threat-actors-probed-the-looney-tunables-flaws-in-recent-attacks-source-securityaffairs-com/ #rssfeedpostgeneratorecho #informationsecuritynews #ITInformationSecurity #SecurityAffairscom #CyberSecurityNews #PierluigiPaganini #SecurityAffairs #SecurityAffairs #LooneyTunables #BreakingNews #cryptomining #CyberCrime #Cybercrime #hacking #Kinsing #LINUX
-
Kinsing threat actors probed the Looney Tunables flaws in recent attacks – Source: securityaffairs.com https://ciso2ciso.com/kinsing-threat-actors-probed-the-looney-tunables-flaws-in-recent-attacks-source-securityaffairs-com/ #rssfeedpostgeneratorecho #informationsecuritynews #ITInformationSecurity #SecurityAffairscom #CyberSecurityNews #PierluigiPaganini #SecurityAffairs #SecurityAffairs #LooneyTunables #BreakingNews #cryptomining #CyberCrime #Cybercrime #hacking #Kinsing #LINUX
-
Kinsing threat actors probed the Looney Tunables flaws in recent attacks – Source: securityaffairs.com https://ciso2ciso.com/kinsing-threat-actors-probed-the-looney-tunables-flaws-in-recent-attacks-source-securityaffairs-com/ #rssfeedpostgeneratorecho #informationsecuritynews #ITInformationSecurity #SecurityAffairscom #CyberSecurityNews #PierluigiPaganini #SecurityAffairs #SecurityAffairs #LooneyTunables #BreakingNews #cryptomining #CyberCrime #Cybercrime #hacking #Kinsing #LINUX
-
Kinsing threat actors are known for their ability to quickly adapt and capitalize on newly revealed security vulnerabilities.
-
Kinsing threat actors are known for their ability to quickly adapt and capitalize on newly revealed security vulnerabilities.
-
Kinsing threat actors are known for their ability to quickly adapt and capitalize on newly revealed security vulnerabilities.
-
Kinsing threat actors are known for their ability to quickly adapt and capitalize on newly revealed security vulnerabilities.
-
Kinsing threat actors are known for their ability to quickly adapt and capitalize on newly revealed security vulnerabilities.