Skip to content

[Intel]: https://www.crowdstrike.com/blog/lemonduck-botnet-targets-docker-for-cryptomining-operations/ #410

Open
@timb-machine

Description

Area

Malware reports

Parent threat

Initial Access, Persistence, Defense Evasion, Lateral Movement, Impact

Finding

https://www.crowdstrike.com/blog/lemonduck-botnet-targets-docker-for-cryptomining-operations/

Industry reference

No response

Malware reference

LemonDuck

Actor reference

No response

Component

Linux

Scenario

Cloud hosted services

Scenario variation

Device application sandboxing