A new wave of GoBruteforcer botnet virus attacks is targeting databases of cryptocurrencies and blockchain projects on exposed servers believed to be configured using AI-generated examples.
GoBrut is another name for GoBrutforcer. Usually, exposed FTP, MySQL, PostgreSQL, and phpMyAdmin services are targeted by this Golang-based botnet. In order to perform brute-force login attacks and scan random public IPs, the virus frequently uses compromised Linux servers.
More than 50,000 servers that front the internet are thought to be susceptible to GoBrut assaults, according to Check Point experts. They claim that because the configuration frequently includes a weak default password unless the administrator walks through the security configuration, the initial penetration is frequently obtained through the FTP servers on servers running XAMPP.
Other methods, such as a misconfigured MySQL server or phpMyAdmin interface could be used by the attacker to upload the web shell read more New GoBruteforcer attack wave targets crypto blockchain projects.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
