{"id":2241,"date":"2018-07-01T14:08:33","date_gmt":"2018-07-01T18:08:33","guid":{"rendered":"https:\/\/solutionsreview.com\/cloud-platforms\/?p=2241"},"modified":"2018-07-16T15:09:04","modified_gmt":"2018-07-16T19:09:04","slug":"cloud-crypto-attacks","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/","title":{"rendered":"How to Keep Your Cloud Safe From Cypto Attacks"},"content":{"rendered":"<p style=\"text-align: justify\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-2242\" src=\"https:\/\/solutionsreview.com\/cloud-platforms\/files\/2018\/07\/bitcoin-1813503_960_720.jpg\" alt=\"Cloud Cypto Attacks\" width=\"800\" height=\"400\" srcset=\"https:\/\/solutionsreview.com\/cloud-platforms\/files\/2018\/07\/bitcoin-1813503_960_720.jpg 800w, https:\/\/solutionsreview.com\/cloud-platforms\/files\/2018\/07\/bitcoin-1813503_960_720-300x150.jpg 300w, https:\/\/solutionsreview.com\/cloud-platforms\/files\/2018\/07\/bitcoin-1813503_960_720-768x384.jpg 768w, https:\/\/solutionsreview.com\/cloud-platforms\/files\/2018\/07\/bitcoin-1813503_960_720-540x270.jpg 540w, https:\/\/solutionsreview.com\/cloud-platforms\/files\/2018\/07\/bitcoin-1813503_960_720-162x81.jpg 162w, https:\/\/solutionsreview.com\/cloud-platforms\/files\/2018\/07\/bitcoin-1813503_960_720-360x180.jpg 360w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><br \/>\nTesla is one of the biggest names in the auto industry today. That didn\u2019t stop them from misusing their cloud platform, though. Tesla didn\u2019t believe having a password on their Kubernetes administration console was necessary, for some reason. Through this, crypto miners were able to infiltrate their AWS account to mine cryptocurrency using the cloud\u2019s computing power. These cloud crypto attacks are generally known as &#8220;cryptojacking.&#8221; Cloud security is essential to maintaining the safety of your enterprise&#8217;s information, and obviously, that starts with having a password. If cryptojacking is a notable concern, talk to your managed service provider or managed security provider to find out what they can do to help.<\/p>\n<p style=\"text-align: justify\">If this attack was so simple to execute on a multi-billion-dollar tech company, then it could be just as easy on a smaller enterprise. RedLock, a security company, <a href=\"https:\/\/blog.redlock.io\/cryptojacking-tesla\" target=\"_blank\" rel=\"noopener\">recently found<\/a> that hundreds of Kubernetes administration consoles were accessible over the internet without any password protection. These cryptojackers, as RedLock calls them, will go to any length to obtain cryptocurrency. So, what can you do to stay secure from this threat?<\/p>\n<p style=\"text-align: justify\"><div class=\"widget\"><div class=\"aside-card\">\t\t\t<div class=\"textwidget\"><p><a class=\"msp-speedbump\" title=\"Download link to Managed Service Providers Buyers Guide\" href=\"https:\/\/solutionsreview.com\/cloud-platforms\/managed-service-provider-buyers-guide\/\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-1682\" src=\"https:\/\/solutionsreview.com\/cloud-platforms\/files\/2018\/07\/Managed-Service-Providers-Speedbump-1.jpg\" alt=\"Download Link to Managed Service Providers Buyers Guide\" width=\"771\" height=\"170\" \/><\/a><\/p>\n<\/div>\n\t\t<\/div><\/div><\/p>\n<h5 style=\"text-align: justify\"><strong>Knowing the enemy<\/strong><\/h5>\n<p style=\"text-align: justify\">The benefits of using the cloud are seemingly endless. It&#8217;s more versatile, easier to manage, faster to use, teams can work anywhere, etc. Crypto miners recognize these same benefits. Utilizing the cloud to crypto mine is incredibly efficient. It\u2019s theoretically a lot easier than creating an <a href=\"https:\/\/motherboard.vice.com\/en_us\/article\/59zdjq\/an-idiots-guide-to-building-an-ethereum-mining-rig\" target=\"_blank\" rel=\"noopener\">intricate setup of expensive GPUs<\/a>, but investing in a cloud platform isn&#8217;t always viable.<\/p>\n<p style=\"text-align: justify\">There are dedicated cloud crypto mining services available online, but these often don\u2019t have enough power or are too expensive for a dedicated crypto miner. If you could create cryptocurrency by simply infiltrating a major corporation like Telsa\u2019s cloud, wouldn\u2019t you? Hackers will go to any extent to get what they need. Ignoring cloud security in favor of a faster release schedule is never worth it.<\/p>\n<h5 style=\"text-align: justify\"><strong>How the attack happened<\/strong><\/h5>\n<p style=\"text-align: justify\">The cryptojackers went to extreme lengths to hide their attacks. These hacking professionals know what to do and know how to go unnoticed, especially when the security measures are lacking. RedLock detailed how they performed their attack:<\/p>\n<ul style=\"text-align: justify\">\n<li>Unlike other crypto mining incidents, the hackers did not use a well-known public \u201cmining pool\u201d in this attack. Instead, they installed mining pool software and configured the malicious script to connect to an \u201cunlisted\u201d or semi-public endpoint. This makes it difficult for standard IP\/domain based threat intelligence feeds to detect the malicious activity.<\/li>\n<li>The hackers also hid the true IP address of the mining pool server behind CloudFlare, a free content delivery network (CDN) service. The hackers can use a new IP address on-demand by registering for free CDN services. This makes IP address based detection of crypto mining activity even more challenging.<\/li>\n<li>Moreover, the mining software was configured to listen on a non-standard port which makes it hard to detect the malicious activity based on port traffic.<\/li>\n<li>Lastly, the team also observed on Tesla\u2019s Kubernetes dashboard that CPU usage was not very high. The hackers had most likely configured the mining software to keep the usage low to evade detection.<\/li>\n<\/ul>\n<h5 style=\"text-align: justify\"><strong>Constant monitoring<\/strong><\/h5>\n<p style=\"text-align: justify\">These attacks can go on for\u00a0months at a time without anyone noticing. Enterprises are apparently overlooking the importance of monitoring. The biggest flaw in DevOps is the lack of built-in security. Faster development and release schedules are great, but not if you don\u2019t notice (or care about) major vulnerabilities (like having no password).<\/p>\n<p style=\"text-align: justify\">IT professionals must invest in DevSecOps going forward. DevOps needs security built in going forward. Cloud security needs to be a priority. These platforms don\u2019t necessarily take care of themselves. Network monitoring solutions can help you discover normal user behavior, and it can recognize when someone is using a large amount of computing power to crypto mine. Hackers are coming through the cloud, IoT devices, and any other vulnerability, monitoring is more important than ever.<\/p>\n<p style=\"text-align: justify\"><a href=\"https:\/\/solutionsreview.com\/network-monitoring\/get-a-free-network-monitoring-buyers-guide\/\" target=\"_blank\" rel=\"noopener\">Our free network monitoring buyer\u2019s guide can help you find the solution that will keep your company safe.<\/a><\/p>\n<h5 style=\"text-align: justify\"><strong>Container and cloud security<\/strong><\/h5>\n<p style=\"text-align: justify\">Having less security is never the right call. Sometimes development teams don\u2019t necessarily want security built in as their working, but they need it. Catching vulnerabilities in your build environment is essential to releasing the best product possible. My recent container security article goes into this in detail. Container and cloud security are often overlooked, as following popular IT trends can be overwhelming without the proper care.<\/p>\n<p style=\"text-align: justify\">Perhaps the simplest takeaway from my recent article was registry security. A lot of IT teams have irrational trust in their colleagues. Trust cannot overshadow core security practices. It\u2019s almost unbelievable that Tesla didn\u2019t have a password on their container administration console. Passwords already lack security, as we <a href=\"https:\/\/solutionsreview.com\/identity-management\/password-protection\/\" target=\"_blank\" rel=\"noopener\">recently saw<\/a> the Hawaii Emergency Management Agency leak a password that was written on a Post-It note. It&#8217;s better to have a vulnerable password, or a password written on a note, than having no password at all. Password technology may be changing with biometric authentication, but for now, please stick with a decent password.<\/p>\n<p style=\"text-align: justify\"><div class=\"hr hr\"><\/div><\/p>\n<p style=\"text-align: justify\"><div class=\"widget\"><div class=\"aside-card\">\t\t\t<div class=\"textwidget\"><p><a class=\"msp-speedbump\" title=\"Download link to Managed Service Providers Buyers Guide\" href=\"https:\/\/solutionsreview.com\/cloud-platforms\/managed-service-provider-buyers-guide\/\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-1682\" src=\"https:\/\/solutionsreview.com\/cloud-platforms\/files\/2018\/07\/Managed-Service-Providers-Speedbump-1.jpg\" alt=\"Download Link to Managed Service Providers Buyers Guide\" width=\"771\" height=\"170\" \/><\/a><\/p>\n<\/div>\n\t\t<\/div><\/div><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Tesla is one of the biggest names in the auto industry today. That didn\u2019t stop them from misusing their cloud platform, though. Tesla didn\u2019t believe having a password on their Kubernetes administration console was necessary, for some reason. Through this, crypto miners were able to infiltrate their AWS account to mine cryptocurrency using the cloud\u2019s [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":2242,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[2],"tags":[310,33,746,747,248,748],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>How to Keep Your Cloud Safe From Cypto Attacks<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Doug Atkinson\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/\",\"url\":\"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/\",\"name\":\"How to Keep Your Cloud Safe From Cypto Attacks\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/cloud-platforms\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/cloud-platforms\/files\/2018\/07\/bitcoin-1813503_960_720.jpg\",\"datePublished\":\"2018-07-01T18:08:33+00:00\",\"dateModified\":\"2018-07-16T19:09:04+00:00\",\"author\":{\"@id\":\"https:\/\/solutionsreview.com\/cloud-platforms\/#\/schema\/person\/5992f02d38e7b28251ad933cd131dcae\"},\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/cloud-platforms\/files\/2018\/07\/bitcoin-1813503_960_720.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/cloud-platforms\/files\/2018\/07\/bitcoin-1813503_960_720.jpg\",\"width\":800,\"height\":400,\"caption\":\"Cloud Cypto Attacks\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/cloud-platforms\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"How to Keep Your Cloud Safe From Cypto Attacks\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/cloud-platforms\/#website\",\"url\":\"https:\/\/solutionsreview.com\/cloud-platforms\/\",\"name\":\"Best Enterprise Cloud Strategy Tools, Vendors, Managed Service Providers, MSP and Solutions\",\"description\":\"Guides, Analysis and Best Practices\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/cloud-platforms\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/cloud-platforms\/#\/schema\/person\/5992f02d38e7b28251ad933cd131dcae\",\"name\":\"Doug Atkinson\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/cloud-platforms\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/092cfcbe5c7f2c185c21f152aada2d2f?s=96&d=blank&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/092cfcbe5c7f2c185c21f152aada2d2f?s=96&d=blank&r=g\",\"caption\":\"Doug Atkinson\"},\"description\":\"An entrepreneur and executive with a passion for enterprise technology, Doug founded Solutions Review in 2012. He has previously served as a newspaper boy, a McDonald's grill cook, a bartender, a political consultant, a web developer, the VP of Sales for e-Dialog - a digital marketing agency - and as Special Assistant to Governor William Weld of Massachusetts.\",\"sameAs\":[\"https:\/\/solutionsreview.com\"],\"url\":\"https:\/\/solutionsreview.com\/cloud-platforms\/author\/doug-atkinson-4\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"How to Keep Your Cloud Safe From Cypto Attacks","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/","twitter_misc":{"Written by":"Doug Atkinson","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/","url":"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/","name":"How to Keep Your Cloud Safe From Cypto Attacks","isPartOf":{"@id":"https:\/\/solutionsreview.com\/cloud-platforms\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/cloud-platforms\/files\/2018\/07\/bitcoin-1813503_960_720.jpg","datePublished":"2018-07-01T18:08:33+00:00","dateModified":"2018-07-16T19:09:04+00:00","author":{"@id":"https:\/\/solutionsreview.com\/cloud-platforms\/#\/schema\/person\/5992f02d38e7b28251ad933cd131dcae"},"breadcrumb":{"@id":"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/#primaryimage","url":"https:\/\/solutionsreview.com\/cloud-platforms\/files\/2018\/07\/bitcoin-1813503_960_720.jpg","contentUrl":"https:\/\/solutionsreview.com\/cloud-platforms\/files\/2018\/07\/bitcoin-1813503_960_720.jpg","width":800,"height":400,"caption":"Cloud Cypto Attacks"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/cloud-platforms\/cloud-crypto-attacks\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/cloud-platforms\/"},{"@type":"ListItem","position":2,"name":"How to Keep Your Cloud Safe From Cypto Attacks"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/cloud-platforms\/#website","url":"https:\/\/solutionsreview.com\/cloud-platforms\/","name":"Best Enterprise Cloud Strategy Tools, Vendors, Managed Service Providers, MSP and Solutions","description":"Guides, Analysis and Best Practices","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/cloud-platforms\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/cloud-platforms\/#\/schema\/person\/5992f02d38e7b28251ad933cd131dcae","name":"Doug Atkinson","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/cloud-platforms\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/092cfcbe5c7f2c185c21f152aada2d2f?s=96&d=blank&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/092cfcbe5c7f2c185c21f152aada2d2f?s=96&d=blank&r=g","caption":"Doug Atkinson"},"description":"An entrepreneur and executive with a passion for enterprise technology, Doug founded Solutions Review in 2012. He has previously served as a newspaper boy, a McDonald's grill cook, a bartender, a political consultant, a web developer, the VP of Sales for e-Dialog - a digital marketing agency - and as Special Assistant to Governor William Weld of Massachusetts.","sameAs":["https:\/\/solutionsreview.com"],"url":"https:\/\/solutionsreview.com\/cloud-platforms\/author\/doug-atkinson-4\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/cloud-platforms\/wp-json\/wp\/v2\/posts\/2241"}],"collection":[{"href":"https:\/\/solutionsreview.com\/cloud-platforms\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/cloud-platforms\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/cloud-platforms\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/cloud-platforms\/wp-json\/wp\/v2\/comments?post=2241"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/cloud-platforms\/wp-json\/wp\/v2\/posts\/2241\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/cloud-platforms\/wp-json\/wp\/v2\/media\/2242"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/cloud-platforms\/wp-json\/wp\/v2\/media?parent=2241"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/cloud-platforms\/wp-json\/wp\/v2\/categories?post=2241"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/cloud-platforms\/wp-json\/wp\/v2\/tags?post=2241"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}