Researchers ‘Accidentally’ Crash KmsdBot Cryptocurrency Mining Botnet Network

Share:

An ongoing analysis into an up-and-coming cryptocurrency mining botnet known as KmsdBot has led to it being accidentally taken down.

KmsdBot, as christened by the Akamai Security Intelligence Response Team (SIRT), came to light mid-November 2022 for its ability to brute-force systems with weak SSH credentials.

The botnet strikes both Windows and Linux devices spanning a wide range of microarchitectures with the primary goal of deploying mining software and corralling the compromised hosts into a DDoS bot.

 

Some of the major targets included gaming firms, technology companies, and luxury car manufacturers.

Akamai researcher Larry W. Cashdollar, in a new update, explained how commands sent to the bot to understand its functionality in a controlled environment inadvertently neutralized the malware.

Bild56

“Interestingly, after one single improperly formatted command, the bot stopped sending commands,” Cashdollar said. “It’s not every day you come across a botnet that the threat actors themselves crash their own handiwork.”

This, in turn, was made possible due to the lack of an error-checking mechanism built into the source code to validate the received commands.

Specifically, an instruction issued without a space between the target website and the port caused the entire Go binary running on the infected machine to crash and stop interacting with its command-and-control server, effectively killing the botnet.

The fact that KmsdBot doesn’t have a persistence mechanism also means that the malware operator will have to re-infect the machines again and re-build the infrastructure from scratch.

“This botnet has been going after some very large luxury brands and gaming companies, and yet, with one failed command it cannot continue,” Cashdollar concluded. “This is a strong example of the fickle nature of technology and how even the exploiter can be exploited by it.”

https://thehackernews.com/2022/12/researchers-accidentally-crashed.html

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
3:22 am, Jul 3, 2025
weather icon 13°C
L: 11° | H: 14°
clear sky
Humidity: 65 %
Pressure: 1025 mb
Wind: 3 mph NW
Wind Gust: 4 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 0%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 4:49 am
Sunset: 9:20 pm
DailyHourly
Daily ForecastHourly Forecast
Today 10:00 pm
weather icon
11° | 14°°C 0 mm 0% 12 mph 65 % 1028 mb 0 mm/h
Tomorrow 10:00 pm
weather icon
15° | 26°°C 0 mm 0% 12 mph 59 % 1028 mb 0 mm/h
Sat Jul 05 10:00 pm
weather icon
14° | 19°°C 1 mm 100% 11 mph 93 % 1021 mb 0 mm/h
Sun Jul 06 10:00 pm
weather icon
15° | 18°°C 1 mm 100% 11 mph 88 % 1009 mb 0 mm/h
Mon Jul 07 10:00 pm
weather icon
13° | 16°°C 1 mm 100% 11 mph 87 % 1012 mb 0 mm/h
Today 4:00 am
weather icon
12° | 13°°C 0 mm 0% 4 mph 65 % 1026 mb 0 mm/h
Today 7:00 am
weather icon
13° | 14°°C 0 mm 0% 4 mph 62 % 1026 mb 0 mm/h
Today 10:00 am
weather icon
17° | 19°°C 0 mm 0% 4 mph 47 % 1027 mb 0 mm/h
Today 1:00 pm
weather icon
24° | 24°°C 0 mm 0% 5 mph 28 % 1028 mb 0 mm/h
Today 4:00 pm
weather icon
25° | 25°°C 0 mm 0% 6 mph 22 % 1026 mb 0 mm/h
Today 7:00 pm
weather icon
21° | 21°°C 0 mm 0% 12 mph 25 % 1025 mb 0 mm/h
Today 10:00 pm
weather icon
20° | 20°°C 0 mm 0% 10 mph 37 % 1027 mb 0 mm/h
Tomorrow 1:00 am
weather icon
17° | 17°°C 0 mm 0% 7 mph 46 % 1028 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€92,232.05
3.04%
Ethereum(ETH)
€2,180.87
6.79%
Tether(USDT)
€0.85
0.02%
XRP(XRP)
€1.90
2.94%
Solana(SOL)
€129.53
3.57%
USDC(USDC)
€0.85
0.00%
Dogecoin(DOGE)
€0.143332
6.73%
Shiba Inu(SHIB)
€0.000010
5.66%
Pepe(PEPE)
€0.000008
9.86%
Scroll to Top