Ray clusters hijacked and turned into crypto miners by shadowy new botnet



  • Ray clusters remain vulnerable to remote code execution via unauthenticated Jobs API
  • Threat group “IronErn440” exploits flaw with AI-generated payloads, deploying XMRig cryptojacker
  • Over 230,000 Ray servers are exposed online, up from a few thousand in 2023

Ray clusters, still vulnerable to a critical severity flaw discovered years ago, are being used for cryptocurrency mining, data exfiltration, and even Distributed Denial of Service (DDoS) attacks, experts have warned.

Cybersecurity researchers Oligo claim this is the second major campaign to leverage this same flaw.





Source link

The post Ray clusters hijacked and turned into crypto miners by shadowy new botnet first appeared on TechToday.

This post originally appeared on TechToday.

Leave a Reply

Your email address will not be published. Required fields are marked *