Cyberbit discovers international airport riddled with Bitcoin-mining malware
By MYBRANDBOOK
Cyberbit provides a unique portfolio of products for cybersecurity training, simulation, detection, and response for the converged IT and OT attack surface. Cyberbit’s product portfolio is based on battle-proven technologies deployed in government and military organizations, made available to the commercial market since 2015, and includes: Cyberbit Range, the world-leading simulated training platform for cybersecurity practitioners; SCADAShield and SCADAShield Mobile for protecting critical infrastructure networks; SOC 3D, a Security Orchestration, Automation and Response (SOAR) platform proven to triple SOC capacity; and Endpoint Detection and Response (EDR) for sensitive organizations and air-gapped networks. Cyberbit says its computer security software helped uncover a large infection of cryptocurrency mining software at an unnamed "international airport in Europe" where the majority of workstations were infected with active malware.
The company won't name its client but in a blog post, its researchers said that standard types of anti-virus software would have failed to catch the crypto-miners, including the system the airport had deployed on its network. Cyberbit's Endpoint Detection and Response (EDR) technology analyzes system performance and user activities and looks for abnormal data. It was the high processing requirements of crypto-mining software that providing the clues that unauthorized processes were running.
Cyberbit researchers said that the intruders had created a variant of a known crypto-miner that allowed it to slip by computer security defenses heavily reliant on anti-virus software which rely on previously discovered signatures and models of attack.Cyberbit's approach is to look for abnormal behaviors in IT systems in real-time and identify attacks that carry no easily identifiable signature or method.
The discovery of the infected international airport creates the question: how many more international airports have unknown malware?
A crypto-miner stealing compute cycles from an airport IT system has potential widespread repercussions in a large region and beyond. Airport information systems could slowdown and maybe fail, creating chaos among departing and arriving passengers, and many other problems. Crypto-miners are relatively easy to detect because of their high processing requirements but most malware is small and designed to be discreet and therefore far harder to detect.
If airports have hidden crypto miners already running who knows what else has penetrated into these vital IT systems
BHIM to join e-commerce, competing with PhonePe and Google Pay
The government-supported payment software BHIM is getting ready to join t...
The latest version of X helps prevent deepfakes on social medi
To combat deepfakes and shallowfakes, Elon Musk revealed a new update t...
India and Namibia collaborate on a payment system similar to U
Once operational, the platform will enable digital transactions in Namibia,...
Sebi issues show-cause notices to six Adani group firms
Sebi issued show-cause notices to six Adani Group firms, including Adani ...
TATA CONSULTANCY SERVICES
AGGRESSIVE ELECTRONICS MANUFACTURING SERVICES PVT. LTD.
HP INDIA SALES PVT. LTD.
MATRIX COMSEC PVT. LTD.
Technology Icons Of India 2023: Amitabh Kant
Amitabh Kant is presently the G20 Sherpa of India during its Presidenc...
Technology Icons Of India 2023: Amit Chadha
. An influential leader in the engineering services industry for over ...
Technology Icons Of India 2023: Shailender Kumar
Shailender Kumar is senior vice president and regional managing direct...
NPCI leading India towards Digital payments
The National Payments Corporation of India (NPCI) is an initiative tak...
PGCIL transforming India with its wide power transmission network
Engaged in power transmission, POWERGRID or PGCIL is a stated owned In...
GSTN aims to integrate indirect tax ecosystem on a shared IT infrastructure
Goods and Services Tax Network (GSTN) has built Indirect Taxation plat...
INFLOW TECHNOLOGIES PVT. LTD.
Inflow Technologies is a niche player in the IT Infrastructure Distrib...
B D SOFTWARE
BD Software is the distributor of IT security solutions in India. The ...
M. TECH SOLUTIONS (I) PVT. LTD.
M.Tech is a leading cyber security and network performance solutions ...