• Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining
Wednesday, July 16, 2025
  • Login
  • Register
Coin24h.com
  • Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining
No Result
View All Result
  • Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining
No Result
View All Result
Coin24h.com
No Result
View All Result
Ledger Nano X - The secure hardware wallet
ADVERTISEMENT

Threat Actors Exploiting Selenium Grid Services For Cryptomining

27 July 2024
in Mining
Reading Time: 3 mins read
A A
0
Threat Actors Exploiting Selenium Grid Services For Cryptomining
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter
cryptotrader
ADVERTISEMENT

Threat actors often exploit the cloud services for cryptomining, as doing so allows them to abuse the huge computational resources available. 

This enables them to significantly maximize their mining efficiency without bearing any cost.

Related articles

No, Russia did not just lift its ban on domestic crypto use

No, Russia did not just lift its ban on domestic crypto use

30 July 2024
New US Bitcoin Mining Hardware Creates B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

New US Bitcoin Mining Hardware Creates $20B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

30 July 2024

Cybersecurity analysts at Wiz recently identified that threat actors had been actively exploiting the Selenium Grid services for cryptomining.

[crypto-donation-box]

Selenium Grid Services For Cryptomining

The Selenium Grid services are exploited in the “SeleniumGreed” campaign to inject cryptominers.

Cryptohopper
ADVERTISEMENT

Grid is part of Selenium, a popular web application testing suite that allows complete interaction with host machines without default security controls.

Join our free webinar to learn about combating slow DDoS attacks, a major threat today.

Several thousand exposed Selenium Grid instances were discovered online, often misconfigured and easily exploitable.

Selenium Grid architecture (Source – Wiz Research)

For C2 hosting and as the attackers use mining pool proxies, compromised nodes through Selenium WebDriver API inserting Python reverse shells deploying modified XMRig miners.

It shows the dangers inherent in exposing internal tools for testing on the web and stresses that using Selenium Grid requires proper security measures. 

The attackers leverage the ChromeOptions category, especially misusing the settings of the Chrome binary path and add_argument method to execute malicious Python scripts on compromised systems.

This vector of attack enables for the creation of reverse shells in addition to deploying cryptominers. Here below we have listed out all the techniques used:-

  • Timestomping for modification of file creation dates.
  • Employment of nohup to maintain execution that is persistent.
  • Custom UPX packing with a “CATS” header to avoid detection.
  • Modification of the sudoers file to limit access for other attackers.

While this campaign makes use of hijacked legitimate services for hosting payloads and miners that act as mining pool proxies.

Miners are set up with changing pool IP generation and individualized TLS fingerprinting, which ensures communication only with servers controlled by the attacker.

Exploit process tree (Source – Wiz Research)

This campaign, running for more than a year, reveals significant vulnerabilities in exposed Selenium Grid installations, underpinning the need for robust security measures during web application testing activities.

The ongoing nature of such threats highlights the importance of ensuring proper configuration and network separation between these test tools.

None of the Selenium Grid versions without proper authentication and network security are safe from remote command execution.

The “SeleniumGreed” campaign was primarily aimed at Selenium v3.141.59, though this threat could evolve to target its later versions. Wiz researchers said some other attackers might direct their attack toward newer versions, too.

This vulnerability reminds us that all Selenium Grid deployments must be secure enough to withstand any attack, regardless of what version they use.

Recommendations

Here below we have mentioned all the recommendations:-

  • Implement external network and vulnerability scanners.
  • Use runtime detection.
  • Apply network security controls with a firewall.
  • Allow only trusted IP ranges.
  • Allow traffic only to required endpoints.
  • Enable basic authentication for Selenium Grid instances.

Protect Your Business Emails From Spoofing, Phishing & BEC with AI-Powered Security | Free Demo

Source link

Tags: actorsCryptoMiningExploitingGridSeleniumservicesthreat
Share76Tweet47
Ledger Nano X - The secure hardware wallet
Previous Post

XRP’s Meteoric Rise To $20? Analyst Predicts Massive XRP Breakout

Next Post

This New Viral Crypto Rockets Over 50% As Binance Coin (BNB) and Arweave (AR) Plunge Over 3% – Times Tabloid

Related Posts

No, Russia did not just lift its ban on domestic crypto use

No, Russia did not just lift its ban on domestic crypto use

30 July 2024
0

A fake news story circulated today about Russia’s supposed embrace of bitcoin mining and crypto payments. According to excited social...

New US Bitcoin Mining Hardware Creates B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

New US Bitcoin Mining Hardware Creates $20B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

30 July 2024
0

A new report estimates a $20 billion revenue opportunity in Bitcoin BTC/USD mining chips and hardware over the next five...

Russia Races to Legalize Crypto as Sanctions Weigh On Firms – BNN Bloomberg

Russia Races to Legalize Crypto as Sanctions Weigh On Firms – BNN Bloomberg

30 July 2024
0

(Bloomberg) -- Russia is moving to regulate the use of cryptocurrencies, as companies wrestle with increasing difficulties in foreign payments...

Russia Advances Crypto and Mining Regulations as US Sanctions Impact Economy

Russia Advances Crypto and Mining Regulations as US Sanctions Impact Economy

30 July 2024
0

The Russian central bank plans to initiate international payments in cryptocurrencies by the end of the year to overcome delays...

Wall Street Bitcoin Miner Taps Institutional Investor for £6.5 Million Capital Boost

Wall Street Bitcoin Miner Taps Institutional Investor for £6.5 Million Capital Boost

30 July 2024
0

Listed both on Wall Street and the London Stock Exchange (LSE) Bitcoin miner Argo Blockchain, has announced a £6.5 million...

Load More
Next Post
This New Viral Crypto Rockets Over 50% As Binance Coin (BNB) and Arweave (AR) Plunge Over 3% – Times Tabloid

This New Viral Crypto Rockets Over 50% As Binance Coin (BNB) and Arweave (AR) Plunge Over 3% - Times Tabloid

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Plugin Install : Widget Tab Post needs JNews - View Counter to be installed
  • Trending
  • Comments
  • Latest
Bitcoin’s True Value May Be As Global Settlement Layer, Not Just Currency: Ripple CTO

Bitcoin’s True Value May Be As Global Settlement Layer, Not Just Currency: Ripple CTO

16 July 2025
Bitcoin Naysayer Vanguard Makes Bold Bet On MSTR Stock–Details

Bitcoin Naysayer Vanguard Makes Bold Bet On MSTR Stock–Details

16 July 2025
BNB Surges 10,000% Since Inception, Hits 680 USDT – AInvest

BNB Surges 10,000% Since Inception, Hits 680 USDT – AInvest

15 July 2025
Congress Fumbles GENIUS Act and CBDC Bills; What Went Wrong?

Congress Fumbles GENIUS Act and CBDC Bills; What Went Wrong?

15 July 2025

About Us

We publish a comprehensive news feed covering all news relevant to the crypto user, covering main industry news, politics and regulation as well as consumer-level “news you can use” (practical stuff), including handy DIY tips, links to useful tools, unbiased reviews and opinions revolving around cryptocurrency. Simple logic and real-world examples are preferred before technical jargon and personal rants.

Categories

  • Altcoin
  • ApeCoin
  • Bitcoin
  • Blockchain
  • BNB
  • Cardano
  • Cryptocurrency
  • DOGE
  • DOT
  • Ethereum
  • HBAR
  • Litecoin
  • Market
  • Meta News
  • Mining
  • NFT
  • QNT
  • Regulation
  • SHIBA
  • Solano
  • Tether
  • Uncategorized
  • XDC
  • XLM
  • XRP

What’s New Here!

  • Bitcoin’s True Value May Be As Global Settlement Layer, Not Just Currency: Ripple CTO
  • Bitcoin Naysayer Vanguard Makes Bold Bet On MSTR Stock–Details
  • BNB Surges 10,000% Since Inception, Hits 680 USDT – AInvest
  • Congress Fumbles GENIUS Act and CBDC Bills; What Went Wrong?
  • Ethereum Adoption Intensifies: BTCS Inc. Buys Additional 14,522 ETH In Strategic Push

Subscribe Now

Our Partner

Round Main Logo
  • About Us
  • Privacy Policy
  • Contact Us

© 2022-2025 coin24h.com

No Result
View All Result
  • Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining

© 2020 coin24h.com

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
  • bitcoinBitcoin (BTC) $ 117,458.00
  • ethereumEthereum (ETH) $ 3,114.47
  • xrpXRP (XRP) $ 2.90
  • tetherTether (USDT) $ 0.999939
  • bnbBNB (BNB) $ 688.25
  • solanaSolana (SOL) $ 162.61
  • usd-coinUSDC (USDC) $ 0.999904
  • dogecoinDogecoin (DOGE) $ 0.196871
  • tronTRON (TRX) $ 0.301325
  • staked-etherLido Staked Ether (STETH) $ 3,112.40
  • cardanoCardano (ADA) $ 0.738158
  • hyperliquidHyperliquid (HYPE) $ 47.26
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 117,184.00
  • stellarStellar (XLM) $ 0.457238
  • suiSui (SUI) $ 4.01
  • wrapped-stethWrapped stETH (WSTETH) $ 3,772.35
  • chainlinkChainlink (LINK) $ 15.93
  • hedera-hashgraphHedera (HBAR) $ 0.233608
  • bitcoin-cashBitcoin Cash (BCH) $ 496.66
  • avalanche-2Avalanche (AVAX) $ 21.78
  • wrapped-eethWrapped eETH (WEETH) $ 3,332.96
  • leo-tokenLEO Token (LEO) $ 8.85
  • shiba-inuShiba Inu (SHIB) $ 0.000014
  • the-open-networkToncoin (TON) $ 3.08
  • wethWETH (WETH) $ 3,117.01
  • litecoinLitecoin (LTC) $ 95.57
  • usdsUSDS (USDS) $ 0.999855
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
  • whitebitWhiteBIT Coin (WBT) $ 44.13
  • polkadotPolkadot (DOT) $ 4.04
  • moneroMonero (XMR) $ 332.21
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 117,582.00
  • uniswapUniswap (UNI) $ 9.16
  • pepePepe (PEPE) $ 0.000013
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • bitget-tokenBitget Token (BGB) $ 4.53
  • aaveAave (AAVE) $ 323.47
  • bittensorBittensor (TAO) $ 434.01
  • daiDai (DAI) $ 1.00
  • pi-networkPi Network (PI) $ 0.444391
  • crypto-com-chainCronos (CRO) $ 0.107522
  • aptosAptos (APT) $ 5.09
  • nearNEAR Protocol (NEAR) $ 2.63
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.18
  • internet-computerInternet Computer (ICP) $ 5.51
  • ondo-financeOndo (ONDO) $ 0.935504
  • ethereum-classicEthereum Classic (ETC) $ 19.17
  • okbOKB (OKB) $ 47.40
  • jito-staked-solJito Staked SOL (JITOSOL) $ 197.76
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00