
A new malware campaign, named Spinning YARN, has been identified by Cado Security Labs, targeting misconfigured servers running Apache Hadoop YARN, Docker, Atlassian Confluence, and Redis. This campaign utilizes novel Golang payloads to exploit vulnerabilities in these systems for cryptocurrency mining and enabling remote access. The malware specifically targets Docker, Apache Hadoop, Redis, and Confluence hosts, exploiting misconfigurations for malicious purposes. Security analysts have provided a full analysis of the campaign, highlighting the use of cloud technologies for security breaches. The campaign is notable for its focus on #cloudsecurity, #cloudforensics, #cloudIR, #threatintel, and #spinningYARN, raising significant concerns in the #cybersecurity and #hacking communities.
Linux Malware Campaign Targets Misconfigured Cloud Servers #cybersecurity https://t.co/6mseB5jPGr
Anatomy of a BlackCat Attack Through the Eyes of Incident Response #cybersecurity https://t.co/qNgecBaazT
Attack targets Docker, Hadoop, Confluence, and Redis with new payloads https://t.co/aHsy5f38oV


