Indonesian Cybercriminals Exploit AWS for Profitable Crypto Mining Operations
An Indonesian threat actor with financial motivations has been seen using Elastic Compute Cloud (EC2) instances from Amazon Web Services (AWS) to conduct unauthorized crypto mining operations.
The gang was initially identified by cloud security firm Permiso P0 Labs in November 2021, and it was given the name GUI-vil (pronounceable as Goo-ee-vil).
The company stated in a report published with The Hacker News that "the group displays a preference for Graphical User Interface (GUI) tools, specifically S3 Browser (version 9.5.5) for their initial operations." "Once they have access to the AWS Console, they perform all of their operations directly through the web browser read more Indonesian Cybercriminals Exploit AWS for Profitable Crypto Mining Operations.
With ReconBee.com Stay ahe...