Skip to main content

Security. Hackers

Hackers Infect 50,000 MS-SQL and PHPMyAdmin Servers with Rootkit Malware

posted onMay 30, 2019
by l33tdawg
Credit: The Hacker News

Cyber Security researchers at Guardicore Labs today published a detailed report on a widespread cryptojacking campaign attacking Windows MS-SQL and PHPMyAdmin servers worldwide.

Dubbed Nansh0u, the malicious campaign is reportedly being carried out by an APT-style Chinese hacking group who has already infected nearly 50,000 servers and are installing a sophisticated kernel-mode rootkit on compromised systems to prevent the malware from being terminated.