Researchers ‘Accidentally’ Crash KmsdBot Cryptocurrency Mining Botnet Network

Share:

An ongoing analysis into an up-and-coming cryptocurrency mining botnet known as KmsdBot has led to it being accidentally taken down.

KmsdBot, as christened by the Akamai Security Intelligence Response Team (SIRT), came to light mid-November 2022 for its ability to brute-force systems with weak SSH credentials.

The botnet strikes both Windows and Linux devices spanning a wide range of microarchitectures with the primary goal of deploying mining software and corralling the compromised hosts into a DDoS bot.

 

Some of the major targets included gaming firms, technology companies, and luxury car manufacturers.

Akamai researcher Larry W. Cashdollar, in a new update, explained how commands sent to the bot to understand its functionality in a controlled environment inadvertently neutralized the malware.

Bild56

“Interestingly, after one single improperly formatted command, the bot stopped sending commands,” Cashdollar said. “It’s not every day you come across a botnet that the threat actors themselves crash their own handiwork.”

This, in turn, was made possible due to the lack of an error-checking mechanism built into the source code to validate the received commands.

Specifically, an instruction issued without a space between the target website and the port caused the entire Go binary running on the infected machine to crash and stop interacting with its command-and-control server, effectively killing the botnet.

The fact that KmsdBot doesn’t have a persistence mechanism also means that the malware operator will have to re-infect the machines again and re-build the infrastructure from scratch.

“This botnet has been going after some very large luxury brands and gaming companies, and yet, with one failed command it cannot continue,” Cashdollar concluded. “This is a strong example of the fickle nature of technology and how even the exploiter can be exploited by it.”

https://thehackernews.com/2022/12/researchers-accidentally-crashed.html

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
3:07 pm, May 18, 2025
weather icon 16°C
L: 14° | H: 18°
few clouds
Humidity: 57 %
Pressure: 1019 mb
Wind: 3 mph ENE
Wind Gust: 6 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 13%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 5:04 am
Sunset: 8:49 pm
DailyHourly
Daily ForecastHourly Forecast
Today 10:00 pm
weather icon
14° | 18°°C 0 mm 0% 7 mph 63 % 1020 mb 0 mm/h
Tomorrow 10:00 pm
weather icon
11° | 18°°C 0 mm 0% 11 mph 82 % 1022 mb 0 mm/h
Tue May 20 10:00 pm
weather icon
9° | 20°°C 0 mm 0% 8 mph 79 % 1022 mb 0 mm/h
Wed May 21 10:00 pm
weather icon
12° | 18°°C 1 mm 100% 9 mph 93 % 1019 mb 0 mm/h
Thu May 22 10:00 pm
weather icon
9° | 17°°C 0 mm 0% 10 mph 63 % 1023 mb 0 mm/h
Today 4:00 pm
weather icon
16° | 17°°C 0 mm 0% 7 mph 57 % 1019 mb 0 mm/h
Today 7:00 pm
weather icon
16° | 17°°C 0 mm 0% 6 mph 55 % 1019 mb 0 mm/h
Today 10:00 pm
weather icon
13° | 14°°C 0 mm 0% 6 mph 63 % 1020 mb 0 mm/h
Tomorrow 1:00 am
weather icon
12° | 12°°C 0 mm 0% 7 mph 69 % 1020 mb 0 mm/h
Tomorrow 4:00 am
weather icon
11° | 11°°C 0 mm 0% 6 mph 82 % 1020 mb 0 mm/h
Tomorrow 7:00 am
weather icon
12° | 12°°C 0 mm 0% 7 mph 73 % 1021 mb 0 mm/h
Tomorrow 10:00 am
weather icon
16° | 16°°C 0 mm 0% 8 mph 51 % 1021 mb 0 mm/h
Tomorrow 1:00 pm
weather icon
18° | 18°°C 0 mm 0% 10 mph 45 % 1021 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€93,527.44
1.56%
Ethereum(ETH)
€2,256.30
2.43%
Tether(USDT)
€0.90
-0.01%
XRP(XRP)
€2.15
3.13%
Solana(SOL)
€154.28
3.44%
USDC(USDC)
€0.90
0.00%
Dogecoin(DOGE)
€0.201695
5.59%
Shiba Inu(SHIB)
€0.000013
5.58%
Pepe(PEPE)
€0.000012
9.41%
Peanut the Squirrel(PNUT)
€0.311783
17.48%
Scroll to Top