Wormable XMRig Campaign Uses BYOVD Exploit and Time-Based Logic Bomb
A new cryptojacking effort that utilizes pirated software bundles as baits to install a customized XMRig miner program on vulnerable hosts has been revealed by cybersecurity experts.
In a technical study released last week, Trellix researcher Aswath A stated that an examination of the recovered dropper, persistence triggers, and mining payload revealed a complex, multi-stage infection that prioritizes the maximum bitcoin mining hashrate, frequently disrupting the victim system.
Additionally, even in air-gapped systems, the virus can travel laterally due to its worm-like features, which allow it to propagate across external storage devices.
The attack's entry point is the use of social engineering decoys to fool unsuspecting users into downloading executables that contain malware ...

