Categories: Ad Guardian PlusNews

Cryptocurrency miner delivered by exploiting the BlueKeep vulnerability

The BlueKeep (Windows Remote Desktop Services) vulnerability was exploited by attackers to deliver cryptocurrency mining malware.

Researchers say that BlueKeep, which was addressed in May, allows unauthenticated attackers to execute arbitrary code, by sending crafted Remote Desktop Protocol (RDP) requests. The company warned that the vulnerability could allow malware to spread just the same the EternalBlue exploit was used back in 2017, by the WannaCry ransomware.

Microsoft warned the users to install the patch, which is available also for unsupported versions of Windows, including XP. Still, over 700,000 systems are vulnerable to attacks.

The first mass exploitation attempts were noticed during the weekend. Kevin Beaumont, the researcher who named the vulnerability, has been running a honeypot network – BluePot, trying to catch exploitation attempts. Thus, he discovered that the attacks began on October 23, when the honeypots crashed and rebooted, but understood that it was due to BlueKeep only on November 2.

The two experts discovered that the attackers have been exploiting BlueKeep to deliver a Monero miner, a malware detected at this time by 31 antivirus engines on VirusTotal.

Beaumont wrote in a blog post that “People now understand how to execute attacks on random targets, and they are starting to do it. This activity doesn’t cause me to worry, but it does cause my spider sense to say ‘this will get worse, later.” Then, he reported on Twitter that all BlueKeep activity has stopped.

Laurentiu Titei

View Comments

Recent Posts

Camera Driver Download, Update, and Install on Windows 11, 10

If you wish to download and update the camera driver for Windows 11/10 to run…

1 day ago

Fixed: Something Went Wrong 1001 Error on Windows 11 and 10

If you are also getting the Microsoft Something Went Wrong 1001 or Error Code 1001…

4 days ago

How to Fix Mouse Cursor Disappears on Windows 10/11

If you also feel that the touchpad cursor disappears/the mouse cursor disappears on a Windows…

5 days ago

How to Add or Remove Programs on Windows 10 and 11

If you want to know how to add or remove programs to and from Windows…

6 days ago

How to Download ViGEm Bus Driver Safely for Windows 11,10

If you want to download and update the ViGEm bus driver safe then you can…

7 days ago

How to Fix bootrec /fixboot Access is denied Error in Windows 11

If you are getting the bootrec /fixboot access is denied error on the Windows 11/10…

1 week ago