Do you have SSH enabled on the machine that runs your bitcoin node? Know the risks.

https://arstechnica.com/security/2024/05/ssh-backdoor-has-infected-400000-linux-servers-over-15-years-and-keeps-on-spreading/

This malware:

- Profited off of compromised bitcoin nodes

- Also stole credit card numbers

- Was able to bypass egress firewalls

- Exploited weak passwords (among other things)

Reply to this note

Please Login to reply.

Discussion

I don't imagine Microsoft oS or apple would be better.

You completely missed the point.

This isn't a comparison between whish OS is hypothetically more secure, it's a concrete example of a 15 year campaign that lists specific tactics and techniques, allowing people to better understand actual capabilities of this attacker.

FWIW, the article mentions a Mac being compromised by this same payload, along with a small number OpenBSD & FreeBSD.

Have you noticed the growing number of "all things compromised" articles coming from arstechenica and other publications?

It's been pretty consistent lately.

I have a lot of reapect for Dan Goodwin. He interviewed me in 2012 when we destroyed reCaptcha with a 99% success rate, understood the research, and wrote an accurate article.

I've also seen bits and pieces in his articles over the years that reaffirm this perspective.

My comment isn't aimed at Dan. I agree, he has done fantastic work.

It was more of a global view of a trending issue or shifting perspective.