{"id":54568,"date":"2021-12-13T12:52:08","date_gmt":"2021-12-13T10:52:08","guid":{"rendered":"https:\/\/forklog.com\/en\/?p=54568"},"modified":"2025-09-03T21:05:38","modified_gmt":"2025-09-03T18:05:38","slug":"flaw-in-java-library-exploited-to-install-covert-miners","status":"publish","type":"post","link":"https:\/\/u1f987.com\/en\/flaw-in-java-library-exploited-to-install-covert-miners\/","title":{"rendered":"Flaw in Java library exploited to install covert miners"},"content":{"rendered":"<p>Hackers exploited a critical vulnerability in the Java-based Apache Log4j logging library to install covert miners and other malware. This was <a href=\"https:\/\/blog.netlab.360.com\/threat-alert-log4j-vulnerability-has-been-adopted-by-two-linux-botnets\/\">reported<\/a> by Netlab 360 researchers.<\/p>\n<p>The exploit, named Log4Shell, allowed attackers to drop Mirai and Muhstik malware onto devices. Subsequently, they were used to deploy crypto miners such as Kinsing, to mount large-scale DDoS attacks, or to install Cobalt Strike beacons for locating vulnerable servers.<\/p>\n<p>The attacks identified by experts targeted devices running Linux.<\/p>\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p>&#8220;There are currently no recorded cases of the vulnerability being exploited by ransomware or <span data-descr=\"targeted attacks\" class=\"old_tooltip\">APT<\/span>-groups; however, the deployment of Cobalt Strike beacons indicates forthcoming malicious campaigns,&#8221; the experts noted.<\/p>\n<\/blockquote>\n<p>Netlab 360 recommended that users update to the latest version of Log4j.<\/p>\n<p>Cybereason researchers have developed a &#8216;vaccine&#8217; that disables the trustURLCodebase parameter on the remote Log4j server, thereby removing the critical vulnerability.<\/p>\n<p>Earlier in December, Neodyme researchers discovered a flaw in the Solana protocol library that potentially allowed funds from DeFi projects to be stolen at a rate of about <a href=\"https:\/\/u1f987.com\/en\/news\/solana-library-bug-could-allow-theft-of-up-to-27-million-per-hour\">$27 million per hour<\/a>.<\/p>\n<p>Read ForkLog&#8217;s bitcoin news on our <a href=\"https:\/\/telegram.me\/forklog\" target=\"_blank\" rel=\"nofollow noopener\">Telegram<\/a> \u2014 cryptocurrency news, prices and analytics.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Hackers exploited a critical vulnerability in the Java-based Apache Log4j logging library to install covert miners and other malware.<\/p>\n","protected":false},"author":1,"featured_media":54569,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"select":"1","news_style_id":"1","cryptorium_level":"","_short_excerpt_text":"","creation_source":"","_metatest_mainpost_news_update":false,"footnotes":""},"categories":[3],"tags":[1301,1154],"class_list":["post-54568","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-and-analysis","tag-blockchain-vulnerabilities","tag-crimes"],"aioseo_notices":[],"amp_enabled":true,"views":"19","promo_type":"1","layout_type":"1","short_excerpt":"","is_update":"","_links":{"self":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts\/54568","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/comments?post=54568"}],"version-history":[{"count":1,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts\/54568\/revisions"}],"predecessor-version":[{"id":54570,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts\/54568\/revisions\/54570"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/media\/54569"}],"wp:attachment":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/media?parent=54568"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/categories?post=54568"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/tags?post=54568"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}