29-Year-Old Ukrainian Cryptojacking Kingpin Arrested for Exploiting Cloud Services

Share:

A 29-year-old Ukrainian national has been arrested in connection with running a “sophisticated cryptojacking scheme,” netting them over $2 million (€1.8 million) in illicit profits.

The person, described as the “mastermind” behind the operation, was apprehended in Mykolaiv, Ukraine, on January 9 by the National Police of Ukraine with support from Europol and an unnamed cloud service provider following “months of intensive collaboration.”

“A cloud provider approached Europol back in January 2023 with information regarding compromised cloud user accounts of theirs,” Europol said, adding it shared the intelligence with the Ukrainian authorities.

The Cyber Police of Ukraine, in a separate announcement, said the suspect “infected the servers of a well-known American company with a miner virus” at least since 2021, using custom brute-force tools to infiltrate 1,500 accounts of the firm.

“Using the compromised accounts, the hacker gained access to the management of the service,” the agency said. “To ensure the operation of the malware, the hacker created more than one million virtual computers.”

As part of the probe, three properties were searched to unearth evidence against the suspect.

Cryptojacking refers to a type of cyber crime that entails the unauthorized use of a person’s or organization’s computing resources to mine cryptocurrencies.

On the cloud, such attacks are typically carried out by infiltrating the infrastructure via compromised credentials obtained through other means and installing miners that use the infected host’s processing power to mine crypto without their knowledge or consent.

“If the credentials do not have the threat actors’ desired permissions, privilege escalation techniques are used to obtain additional permissions,” Microsoft noted in July 2023. “In some cases, threat actors hijack existing subscriptions to further obfuscate their operations.”

The core idea is to avoid paying for the necessary infrastructure required to mine cryptocurrencies, either by taking advantage of free trials or compromising legitimate tenants to conduct cryptojacking attacks.

In October 2023, Palo Alto Networks Unit 42 detailed a cryptojacking campaign in which threat actors were found stealing Amazon Web Services (AWS) credentials from GitHub repositories within five minutes of their public disclosure to mine Monero.

Ravie Lakshmanan

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
9:18 am, Jan 27, 2025
weather icon 8°C
L: 7° | H: 9°
scattered clouds
Humidity: 83 %
Pressure: 983 mb
Wind: 15 mph SSW
Wind Gust: 0 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 40%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 7:45 am
Sunset: 4:40 pm
DailyHourly
Daily ForecastHourly Forecast
Today 9:00 pm
weather icon
7° | 9°°C 1 mm 100% 18 mph 77 % 983 mb 0 mm/h
Tomorrow 9:00 pm
weather icon
7° | 9°°C 1 mm 100% 20 mph 87 % 995 mb 0 mm/h
Wed Jan 29 9:00 pm
weather icon
5° | 7°°C 1 mm 100% 13 mph 88 % 1010 mb 0 mm/h
Thu Jan 30 9:00 pm
weather icon
4° | 7°°C 0.9 mm 90% 8 mph 87 % 1033 mb 0 mm/h
Fri Jan 31 9:00 pm
weather icon
2° | 8°°C 0 mm 0% 7 mph 82 % 1039 mb 0 mm/h
Today 12:00 pm
weather icon
8° | 8°°C 0.2 mm 20% 18 mph 77 % 983 mb 0 mm/h
Today 3:00 pm
weather icon
8° | 8°°C 1 mm 100% 16 mph 75 % 983 mb 0 mm/h
Today 6:00 pm
weather icon
7° | 7°°C 1 mm 100% 18 mph 74 % 983 mb 0 mm/h
Today 9:00 pm
weather icon
7° | 7°°C 0.79 mm 79% 18 mph 72 % 983 mb 0 mm/h
Tomorrow 12:00 am
weather icon
7° | 7°°C 0.98 mm 98% 20 mph 83 % 981 mb 0 mm/h
Tomorrow 3:00 am
weather icon
8° | 8°°C 1 mm 100% 20 mph 86 % 979 mb 0 mm/h
Tomorrow 6:00 am
weather icon
9° | 9°°C 1 mm 100% 16 mph 81 % 978 mb 0 mm/h
Tomorrow 9:00 am
weather icon
8° | 8°°C 1 mm 100% 10 mph 87 % 978 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€94,778.76
-5.33%
Ethereum(ETH)
€2,941.36
-7.31%
XRP(XRP)
€2.69
-9.95%
Tether(USDT)
€0.95
-0.03%
Solana(SOL)
€216.55
-11.25%
USDC(USDC)
€0.95
0.01%
Dogecoin(DOGE)
€0.301612
-10.44%
Shiba Inu(SHIB)
€0.000017
-10.01%
Pepe(PEPE)
€0.000012
-15.83%
Peanut the Squirrel(PNUT)
€0.342367
3.03%
Scroll to Top