Google Cloud Accounts Compromised to Mine Crypto
Key Points:
Of 50 recently compromised GCP instances, 86% of the compromised Cloud instances were used to peorm cryptocurrency mining, a Cloud resource-intensive, for-prot activity. Additionally, 10% of compromised Cloud instances were used to conduct scans of other publicly available resources on the Internet to identify vulnerable systems, and 8% of instances were used to aack other targets.
The compromised cloud accounts had their available computing power/services being used towards crypto mining softwares
These vulnerabilities were likely due to poor user security measures
Google recommends staying safe by conducting regular audits, engaging in email best practices, and employing 2-step verification and the advanced protection program
View the entire Threat Horizons Executive Snapshot November 2021, Issue 1