CRYSTALRAY Hackers Infect Over 1,500 Victims Using Network Mapping Tool
An earlier observation of a threat actor utilizing an open-source network mapping tool revealed that they had significantly increased their operations to infect more than 1,500 individuals.
The operations have increased tenfold, according to Sysdig, which is monitoring the cluster under the moniker CRYSTALRAY. It further states that these activities include "mass scanning, exploiting multiple vulnerabilities, and placing backdoors using multiple [open-source software] security tools."
The assaults' main goals are to install cryptocurrency miners, collect and sell credentials, and stay persistent in target systems. The United States, China, Singapore, Russia, France, Japan, and India are among the countries where the bulk of illnesses are concentrated.
SSH-Snake, an open-source ap...

