Friday, Apr 24, 2026
English News
  • Hyderabad
  • Telangana
  • AP News
  • India
  • World
  • Entertainment
  • Sport
  • Science and Tech
  • Business
  • Rewind
  • ...
    • NRI
    • View Point
    • cartoon
    • My Space
    • Education Today
    • Reviews
    • Property
    • Lifestyle
E-Paper
  • NRI
  • View Point
  • cartoon
  • My Space
  • Reviews
  • Education Today
  • Property
  • Lifestyle
Home | Science & Tech | Microsoft Links Vietnamese Hackers To Cryptomining Malware

Microsoft links Vietnamese hackers to cryptomining malware

Tracked by the Microsoft 365 Defender Threat Intelligence Team as Bismuth, the Vietnamese group has been active since 2012 and is more widely known as APT32 and OceanLotus.

By IANS
Published Date - 1 December 2020, 01:40 PM
Microsoft links Vietnamese hackers to cryptomining malware
whatsapp facebook twitter telegram

New Delhi: Microsoft has revealed that Vietnamese government-backed hackers are deploying cryptocurrency-mining malware alongside their regular cyber-espionage toolkits.

The report highlights a growing trend in the cyber-security industry where an increasing number of state-backed hacking groups are also dipping their toes into regular cybercrime operations, making it harder to distinguish financially-motivated crime from intelligence gathering operations.


Tracked by the Microsoft 365 Defender Threat Intelligence Team as Bismuth, the Vietnamese group has been active since 2012 and is more widely known as APT32 and OceanLotus.

“BISMUTH has been running increasingly complex cyber-espionage attacks as early as 2012, using both custom and open-source tooling to target large multinational corporations, governments, financial services, educational institutions, and human and civil rights organisations,” Microsoft said in a blog post late on Monday.

In campaigns from July to August 2020, the group deployed Monero coin miners in attacks that targeted both the private sector and government institutions in France and Vietnam.

“The campaigns from the nation-state actor BISMUTH take advantage of the low-priority alerts coin miners cause to try and fly under the radar and establish persistence,” the Microsoft team announced.

Because BISMUTH’s attacks involved techniques that ranged from typical to more advanced, devices with common threat activities like phishing and coin mining should be elevated and inspected for advanced threats.

“More importantly, organisations should prioritise reducing attack surface and hardening networks against the full range of attacks”.

BISMUTH attempts to gain initial access by sending specially crafted malicious emails from a Gmail account that appears to have been made specifically for its campaign.

As the affected organisations worked to evict BISMUTH from their networks, Microsoft security researchers saw continued activity involving lateral movement to other devices, credential dumping, and planting of multiple persistence methods.

“This highlights the complexity of responding to a full-blown intrusion and the significance of taking quick action to resolve alerts that flag initial stages of an attack,” said the team.

  • Follow Us :
  • Tags
  • Bismuth
  • cryptomining malware
  • Cyber Security
  • cybercrime.

Related News

  • Hyderabad Runners Society honoured for top participation at Mumbai Marathon

    Hyderabad Runners Society honoured for top participation at Mumbai Marathon

  • Telangana’s high-volume ‘eye-camps’ missing the mark on quality, study

    Telangana’s high-volume ‘eye-camps’ missing the mark on quality, study

  • Congress governments in Telangana and Himachal face backlash over salary cut announcements

    Congress governments in Telangana and Himachal face backlash over salary cut announcements

  • Thousands of IT jobs set to disappear as Meta, Microsoft restructure workforce in AI era

    Thousands of IT jobs set to disappear as Meta, Microsoft restructure workforce in AI era

Latest News

  • SC orders all-women SIT in Ghaziabad child rape-murder case

    5 mins ago
  • Delayed inauguration of Banjara Hills swanky Foot over Bridge frustrates pedestrians

    7 mins ago
  • MANUU launches new B.Tech courses from 2026–27, admissions via entrance test

    11 mins ago
  • Tesla plans expansion of supercharging network across India

    14 mins ago
  • India, US agree to remain engaged on trade pact: Govt

    15 mins ago
  • The Nanny Diaries to return as Netflix series with Scarlett Johansson

    20 mins ago
  • Adani Green Energy Q4 profit rises 34 pc to Rs 514 crore

    25 mins ago
  • Every single person linked to RG Kar rape-murder conspiracy will be brought to justice: Modi

    32 mins ago

company

  • Home
  • About Us
  • Contact Us
  • Privacy Policy

business

  • Subscribe

telangana today

  • Telangana
  • Hyderabad
  • Latest News
  • Entertainment
  • World
  • Andhra Pradesh
  • Science & Tech
  • Sport

follow us

  • Telangana Today Telangana Today
Telangana Today Telangana Today

© Copyrights 2024 TELANGANA PUBLICATIONS PVT. LTD. All rights reserved. Powered by Veegam

.