skip to Main Content
bitcoin
Bitcoin (BTC) $ 93,113.95 2.55%
ethereum
Ethereum (ETH) $ 3,333.51 1.57%
tether
Tether (USDT) $ 0.99876 0.07%
xrp
XRP (XRP) $ 2.18 1.53%
bnb
BNB (BNB) $ 682.75 4.97%
solana
Solana (SOL) $ 188.00 4.78%
dogecoin
Dogecoin (DOGE) $ 0.315344 0.63%
usd-coin
USDC (USDC) $ 0.999462 0.05%
staked-ether
Lido Staked Ether (STETH) $ 3,326.55 1.80%
cardano
Cardano (ADA) $ 0.889936 0.61%

Microsoft Azure Machine Learning Clusters Cryptojacked to Mine Monero

Hackers have attacked badly configured machine learning clusters on Microsoft’s Azure cloud computing network, and hijacked them to mine Monero.

1354 Total views

28 Total shares

Microsoft Azure Machine Learning Clusters Cryptojacked to Mine Monero

Microsoft announced on June 10 that it had discovered a number of cryptojacking attacks on powerful machine-learning clusters on its Azure cloud computing network.

In a blog-post, the company said that some customers had misconfigured nodes, allowing attackers to hijack them to mine the privacy-focused cryptocurrency Monero (XMR).

Default settings overridden

Microsoft said that it had discovered tens of clusters affected by the attack, which targets a machine learning toolkit, Kubeflow, for the open-source Kubernetes platform.

By default the dashboard to control Kubeflow is only accessible internally from the node, so users need to use port-forwarding to tunnel in via the Kubernetes API. However, some users had modified this, potentially for convenience, directly exposing the dashboard to the internet.

With access to the dashboard, attackers had a number of available vectors through which to compromise the system.

Once the shield is down, attack

One possibility is to set up or modify a Jupyter notebook server in the cluster with a malicious image.

The Azure Security Center team discovered a suspect image from a public repository on a number of machine learning clusters.

Through investigating the layers of the image, the team realized that it ran an XMRig miner, to surreptitiously use the node to mine Monero.

Machine learning clusters are relatively powerful and sometimes contain GPUs, making them an ideal target for cryptojackers.

As Cointelegraph reported, cybersecurity firm Sophos recently revealed that attackers had breached vulnerable Microsoft SQL Server databases to install the same XMRig software which mines Monero.

Loading data ...
Comparison
View chart compare
View table compare
Back To Top