cfo-au logo
Story image

Five tips to defend against cryptojacking - Bitglass

28 Aug 2019

Article by Bitglass CTO Anurag Kahol

Cyber-criminals are using malware to steal computing power from various target devices in order to secretly mine cryptocurrency.

This escalating threat is known as cryptojacking.

Additionally, hackers may hijack enterprise IT resources in the cloud (such as AWS) for the same reasons - this is known, specifically, as cloud cryptojacking.

Although these forms of cryptojacking do not necessarily result in data loss, they do lead to stolen resources, a rise in power bills, and diminished productivity among employees whose infected devices have their performance impaired.

The incidence of cryptojacking has seen rapid growth and has emerged as a favourite strategy for hackers.

Notable victims have included Tesla and Drupal.

With cryptojacking becoming a go-to, low-risk way for cybercriminals to make money, it’s important for organisations to know how to spot it and, more importantly, how to stop it.

Here are five tips to do so:

1. Cybersecurity education

Cryptojacking tends to start with phishing emails.

When employees receive these dangerous messages and carelessly click the malicious links or attachments on offer, they unknowingly initiate a script on their devices, beginning the cryptojacking process.

Through IT security training, organisations can teach their employees to identify phishing attacks, reducing the likelihood of illegitimate links being clicked.

Training should also educate users on the consequences of successful phishing attacks, including cryptojacking, so they can understand the importance of remaining vigilant.

2. Ad-blocking and other tools

In addition to phishing, cryptojacking threats can be delivered through advertisements on the internet.

Fortunately, there are browser extensions that block popular cryptomining scripts.

Organisations should leverage extensions like AdBlock in order to reduce the likelihood of cryptocurrency mining that is initiated in this fashion.

3. Strong passwords and multi-factor authentication

As mentioned previously, cloud cryptojacking occurs when cybercriminals commandeer enterprise cloud resources and use them to mine for cryptocurrency.

Hackers constantly scour the internet for misconfigured cloud services, for example, those that do not require a password.

As such, organisations must ensure that they use sufficiently complex passwords as well as multi-factor authentication.

This will drastically reduce the likelihood of cybercriminals controlling cloud and IT assets – even if there is a credential leak.

4. Monitoring the cloud and the network

Cryptojacking burns through IT resources.

Accordingly, one of the simplest ways to identify this scourge is through consistent monitoring of all user and cloud activity.

IT teams should watch for significant changes in resource utilisation and check for unauthorised access to S3 buckets, a common attack vector in cloud cryptojacking schemes.

Similarly, IT teams should leverage network monitoring tools that can review web traffic and generate alerts when they encounter suspicious activities.

5. Adopt complete data security solutions

Cryptojacking is not solely a threat to desktops and laptops.

Mobile devices such as phones and tablets are also at risk. With more and more employees bringing their own devices to work (BYOD), extending security policies to mobile endpoints is critically important for enterprise security.

In light of this reality, agentless solutions have emerged as the tool of choice for BYOD security.

Agentless cloud access security brokers (CASBs) can govern access to data and monitor for threats like malware without requiring software to be installed on users’ personal devices.

This is immensely beneficial in the fight against cryptojacking.

Typically the cryptojacking threat does not cause obvious, catastrophic damage to the enterprise.

Like a parasite, it prefers that its host is kept alive.

However, cryptojacking is still a noteworthy consumer of enterprise resources.

As such, organisations must protect themselves through a mixture of security training, vigilance, and appropriate technology solutions.

In this way, they can significantly reduce the likelihood of cryptojacking impacting on their operations.

Story image
Apple and Xiaomi only vendors to see smartphone growth in 2020 — Gartner
Apple’s growth was largely due to the success of the iPhone 12, which helped the company surpass Samsung to regain the status of number one global smartphone vendor for Q4 2020.More
Story image
IBM partners with Portworx by Pure Storage to help enterprises manage hybrid cloud workloads
“With the pace of cloud adoption accelerating, companies are increasingly turning to hybrid cloud to allow them to innovate more efficiently, while maintaining high levels of security and control."More
Story image
Customer churn costing Australian businesses millions, report finds
52% of sales professionals in Australia believe that their CRM systems are unfit for purpose, while customer churn is costing mid-market companies an average of US$5.5 million per year each.More
Story image
Video: 10 Minute IT Jams - GBG exec on digital identity verification tech
GBG regional general manager for A/NZ Carol Chris discusses why digital identity verification technology is becoming more essential and the evolution of biometric tech.More
Story image
How e-invoicing works and why it’s essential for business survival
The reasons for implementing e-invoicing centre on unlocking many benefits for all stakeholders by automating previously manual processes, writes MessageXchange managing director John Delaney.More
Story image
IoT-managed services market to reach $166.71b by 2025
IoT-managed services providers are expected to leverage vertical expertise to expand globally, experiencing significant growth overall.More