• Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining
Sunday, September 21, 2025
  • Login
  • Register
Coin24h.com
  • Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining
No Result
View All Result
  • Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining
No Result
View All Result
Coin24h.com
No Result
View All Result
Ledger Nano X - The secure hardware wallet
ADVERTISEMENT

Ongoing Cyberattack Targets Exposed Selenium Grid Services for Crypto Mining

26 July 2024
in Mining
Reading Time: 3 mins read
A A
0
Ongoing Cyberattack Targets Exposed Selenium Grid Services for Crypto Mining
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter
cryptotrader
ADVERTISEMENT

Related articles

No, Russia did not just lift its ban on domestic crypto use

No, Russia did not just lift its ban on domestic crypto use

30 July 2024
New US Bitcoin Mining Hardware Creates B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

New US Bitcoin Mining Hardware Creates $20B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

30 July 2024

Jul 26, 2024Newsroom

Cybersecurity researchers are sounding the alarm over an ongoing campaign that’s leveraging internet-exposed Selenium Grid services for illicit cryptocurrency mining.

Cloud security firm Wiz is tracking the activity under the name SeleniumGreed. The campaign, which is targeting older versions of Selenium (3.141.59 and prior), is believed to be underway since at least April 2023.

“Unbeknownst to most users, Selenium WebDriver API enables full interaction with the machine itself, including reading and downloading files, and running remote commands,” Wiz researchers Avigayil Mechtinger, Gili Tikochinski, and Dor Laska said.

Cybersecurity

“By default, authentication is not enabled for this service. This means that many publicly accessible instances are misconfigured and can be accessed by anyone and abused for malicious purposes.”

Selenium Grid, part of the Selenium automated testing framework, enables parallel execution of tests across multiple workloads, different browsers, and various browser versions.

Selenium Grid Services

“Selenium Grid must be protected from external access using appropriate firewall permissions,” the project maintainers warn in a support documentation, stating that failing to do so could allow third-parties to run arbitrary binaries and access internal web applications and files.

Exactly who is behind the attack campaign is currently not known. However, it involves the threat actor targeting publicly exposed instances of Selenium Grid and making use of the WebDriver API to run Python code responsible for downloading and running an XMRig miner.

It starts with the adversary sending a request to the vulnerable Selenium Grid hub with an aim to execute a Python program containing a Base64-encoded payload that spawns a reverse shell to an attacker-controlled server (“164.90.149[.]104”) in order to fetch the final payload, a modified version of the open-source XMRig miner.

“Instead of hardcoding the pool IP in the miner configuration, they dynamically generate it at runtime,” the researchers explained. “They also set XMRig’s TLS-fingerprint feature within the added code (and within the configuration), ensuring the miner will only communicate with servers controlled by the threat actor.”

The IP address in question is said to belong to a legitimate service that has been compromised by the threat actor, as it has also been found to host a publicly exposed Selenium Grid instance.

Wiz said it’s possible to execute remote commands on newer versions of Selenium and that it identified more than 30,000 instances exposed to remote command execution, making it imperative that users take steps to close the misconfiguration.

“Selenium Grid is not designed to be exposed to the internet and its default configuration has no authentication enabled, so any user that has network access to the hub can interact with the nodes via API,” the researchers said.

“This poses a significant security risk if the service is deployed on a machine with a public IP that has inadequate firewall policy.”

Found this article interesting? Follow us on Twitter  and LinkedIn to read more exclusive content we post.



Source link

Cryptohopper
ADVERTISEMENT
[crypto-donation-box]
Tags: cryptoCyberattackExposedGridMiningOngoingSeleniumservicesTargets
Share76Tweet47
Ledger Nano X - The secure hardware wallet
Previous Post

India Has Seen 92 Drug Trafficking Cases in Four Years Involving Dark Net and Crypto

Next Post

Maggie Joins The Walking Dead: Empires as Newest NFT Hero

Related Posts

No, Russia did not just lift its ban on domestic crypto use

No, Russia did not just lift its ban on domestic crypto use

30 July 2024
0

A fake news story circulated today about Russia’s supposed embrace of bitcoin mining and crypto payments. According to excited social...

New US Bitcoin Mining Hardware Creates B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

New US Bitcoin Mining Hardware Creates $20B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

30 July 2024
0

A new report estimates a $20 billion revenue opportunity in Bitcoin BTC/USD mining chips and hardware over the next five...

Russia Races to Legalize Crypto as Sanctions Weigh On Firms – BNN Bloomberg

Russia Races to Legalize Crypto as Sanctions Weigh On Firms – BNN Bloomberg

30 July 2024
0

(Bloomberg) -- Russia is moving to regulate the use of cryptocurrencies, as companies wrestle with increasing difficulties in foreign payments...

Russia Advances Crypto and Mining Regulations as US Sanctions Impact Economy

Russia Advances Crypto and Mining Regulations as US Sanctions Impact Economy

30 July 2024
0

The Russian central bank plans to initiate international payments in cryptocurrencies by the end of the year to overcome delays...

Wall Street Bitcoin Miner Taps Institutional Investor for £6.5 Million Capital Boost

Wall Street Bitcoin Miner Taps Institutional Investor for £6.5 Million Capital Boost

30 July 2024
0

Listed both on Wall Street and the London Stock Exchange (LSE) Bitcoin miner Argo Blockchain, has announced a £6.5 million...

Load More
Next Post
Maggie Joins The Walking Dead: Empires as Newest NFT Hero

Maggie Joins The Walking Dead: Empires as Newest NFT Hero

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Plugin Install : Widget Tab Post needs JNews - View Counter to be installed
  • Trending
  • Comments
  • Latest
XRP Price on the Cusp of Breakout as Bulls Target

XRP Price on the Cusp of Breakout as Bulls Target $10

21 September 2025
Managing Crypto Payroll for BNB: Navigating Risks and Strategies – OneSafe

Managing Crypto Payroll for BNB: Navigating Risks and Strategies – OneSafe

20 September 2025
Is A New Bullish Phase About To Commence?

Is A New Bullish Phase About To Commence?

20 September 2025
Investing in Crypto: 2025’s Leading Coins Compared; BlockDAG, NEAR, BNB & TRX – livebitcoinnews.com

Investing in Crypto: 2025’s Leading Coins Compared; BlockDAG, NEAR, BNB & TRX – livebitcoinnews.com

20 September 2025

About Us

We publish a comprehensive news feed covering all news relevant to the crypto user, covering main industry news, politics and regulation as well as consumer-level “news you can use” (practical stuff), including handy DIY tips, links to useful tools, unbiased reviews and opinions revolving around cryptocurrency. Simple logic and real-world examples are preferred before technical jargon and personal rants.

Categories

  • Altcoin
  • ApeCoin
  • Bitcoin
  • Blockchain
  • BNB
  • Cardano
  • Cryptocurrency
  • DOGE
  • DOT
  • Ethereum
  • HBAR
  • Litecoin
  • Market
  • Meta News
  • Mining
  • NFT
  • QNT
  • Regulation
  • SHIBA
  • Solano
  • Tether
  • Uncategorized
  • XDC
  • XLM
  • XRP

What’s New Here!

  • XRP Price on the Cusp of Breakout as Bulls Target $10
  • Managing Crypto Payroll for BNB: Navigating Risks and Strategies – OneSafe
  • Is A New Bullish Phase About To Commence?
  • Investing in Crypto: 2025’s Leading Coins Compared; BlockDAG, NEAR, BNB & TRX – livebitcoinnews.com
  • Solana price prediction, Cardano news & which is the best crypto to buy now – Latest news from Azerbaijan

Subscribe Now

Our Partner

Round Main Logo
  • About Us
  • Privacy Policy
  • Contact Us

© 2022-2025 coin24h.com

No Result
View All Result
  • Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining

© 2020 coin24h.com

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
  • bitcoinBitcoin (BTC) $ 115,719.00
  • ethereumEthereum (ETH) $ 4,475.71
  • xrpXRP (XRP) $ 3.00
  • tetherTether (USDT) $ 1.00
  • bnbBNB (BNB) $ 1,074.23
  • solanaSolana (SOL) $ 239.55
  • usd-coinUSDC (USDC) $ 0.999706
  • dogecoinDogecoin (DOGE) $ 0.267335
  • staked-etherLido Staked Ether (STETH) $ 4,471.06
  • cardanoCardano (ADA) $ 0.898029
  • tronTRON (TRX) $ 0.345152
  • wrapped-stethWrapped stETH (WSTETH) $ 5,429.06
  • chainlinkChainlink (LINK) $ 23.34
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 4,826.16
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 115,446.00
  • hyperliquidHyperliquid (HYPE) $ 53.58
  • ethena-usdeEthena USDe (USDE) $ 0.999808
  • avalanche-2Avalanche (AVAX) $ 32.90
  • suiSui (SUI) $ 3.65
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.00
  • stellarStellar (XLM) $ 0.388921
  • bitcoin-cashBitcoin Cash (BCH) $ 597.45
  • wrapped-eethWrapped eETH (WEETH) $ 4,815.81
  • wethWETH (WETH) $ 4,476.36
  • hedera-hashgraphHedera (HBAR) $ 0.240209
  • litecoinLitecoin (LTC) $ 115.33
  • leo-tokenLEO Token (LEO) $ 9.51
  • usdsUSDS (USDS) $ 1.00
  • crypto-com-chainCronos (CRO) $ 0.227743
  • the-open-networkToncoin (TON) $ 3.08
  • shiba-inuShiba Inu (SHIB) $ 0.000013
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 115,727.00
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
  • polkadotPolkadot (DOT) $ 4.36
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.233997
  • whitebitWhiteBIT Coin (WBT) $ 43.31
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.20
  • moneroMonero (XMR) $ 300.36
  • uniswapUniswap (UNI) $ 9.16
  • mantleMantle (MNT) $ 1.64
  • daiDai (DAI) $ 0.999607
  • ethenaEthena (ENA) $ 0.663999
  • aaveAave (AAVE) $ 297.71
  • pepePepe (PEPE) $ 0.000011
  • memecoreMemeCore (M) $ 2.50
  • okbOKB (OKB) $ 199.68
  • nearNEAR Protocol (NEAR) $ 3.14
  • story-2Story (IP) $ 12.27
  • bitget-tokenBitget Token (BGB) $ 5.26
  • jito-staked-solJito Staked SOL (JITOSOL) $ 295.09