Barracuda Unveils SOC Threat Radar — June 2026
LemonDuck malware infects endpoints for cryptomining
What’s happening?
LemonDuck is a type of malware that spreads across networks, hijacking systems and endpoints to mine cryptocurrency and enable further attacks. It targets vulnerable systems, exposed services and weak credentials, turning infected machines into part of a criminal botnet.
Barracuda researchers found LemonDuck affecting multiple endpoints and communicating with several malicious domains.
The malware was:
- Running hidden scripts using PowerShell to download further malicious code
- Connecting back to known command-and-control servers
- Setting up scheduled tasks or Windows Management Instrumentation (WMI) events (automated ‘trigger rules’) to re-run malware and maintain long-term persistence
Your organization may be at risk if you:
- Have unpatched devices on the network
- Allow weak or reused credentials that make it easier for attackers to move laterally
- Have exposed remote services such as Remote Desktop Protocol (RDP) that could provide an access point for attacks
- Lack visibility into all your...
Copyright of this story solely belongs to itvoice.in. To see the full text click HERE