New Chaos Variant Targets Misconfigured Cloud Deployments, Adds SOCKS Proxy
ID: 70ca8055-7b74-59e3-9a87-72d2b66ed086
STIX ID: report--70ca8055-7b74-59e3-9a87-72d2b66ed086
Feed Name: The Hacker News
Threat Score
Researchers observed a new Chaos malware variant targeting misconfigured cloud environments (notably a misconfigured Hadoop instance), delivering a 64-bit ELF agent that supports cryptomining, DDoS, and a newly added SOCKS proxy feature to anonymize malicious traffic; the attack retrieved a binary from pan.tenire.com (previously linked to Silver Fox campaigns), suggesting active exploitation and a shift toward monetization beyond mining and DDoS.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
