We value your privacy
We use cookies to enhance your browsing experience, serve personalized ads or content, and analyze our traffic. By clicking "Accept All", you consent to our use of cookies. Cookie Policy
We use cookies to help you navigate efficiently and perform certain functions. You will find detailed information about all cookies under each consent category below.
The cookies that are categorized as "Necessary" are stored on your browser as they are essential for enabling the basic functionalities of the site. ...
Necessary cookies are required to enable the basic features of this site, such as providing secure log-in or adjusting your consent preferences. These cookies do not store any personally identifiable data.
No cookies to display.
Functional cookies help perform certain functionalities like sharing the content of the website on social media platforms, collecting feedback, and other third-party features.
No cookies to display.
Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics such as the number of visitors, bounce rate, traffic source, etc.
No cookies to display.
Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
No cookies to display.
Advertisement cookies are used to provide visitors with customized advertisements based on the pages you visited previously and to analyze the effectiveness of the ad campaigns.
No cookies to display.
Browser based Crypto-Mining malware has made a dramatic resurgence in 2018 hitting the headlines on several occasions over the past month. Most recently, two major campaigns affecting thousands were reported by The Register with those affected ranging from YouTube to the UK’s Information Commissioner’s Office (Ref 1 Ref 2).
Trend Micro reports an increase as high as 285% in the number of CoinHive miners observed during January (Ref 3 )
In brief, JavaScript Crypto-Miners such as CoinHive are designed to use the processing power of visiting web browsers to perform Crypto Currency mining as a method of monetising website traffic. The malware* is deployed via a JavaScript embedded within your web site that is automatically executed by each visiting user.
Whilst Crypto Mining software is presented as a legitimate enterprise, it’s also a common technique used by Cyber Criminals and other malicious third parties to profit from their attacks. In short, if Crypto Mining software is served up by your site, it is likely the result of a malicious compromise, either directly or against one of your trusted partners.
To help detect JavaScript Crypto Miners, AppCheck has released a detection module available to all customers. To enable it, select Plugins->Malware Scanning and enable “JavaScript Crypto Miner detection”.
The module detects Crypto Miners using two methods. Firstly, each page encountered during a scan is loaded into a browser engine and network connectivity is monitored. If the page attempts to connect to a Crypto Mining service, the page is flagged. Our second method inspects JavaScript objects loaded into each page for known Crypto Mining functions, this approach helps identify obfuscated payloads and payloads that selectively execute.
* We assume that the software in this case is unwanted malware and not intentionally hosted.
No software to download or install.
Contact us or call us 0113 887 8380
AppCheck is a software security vendor based in the UK, offering a leading security scanning platform that automates the discovery of security flaws within organisations websites, applications, network and cloud infrastructure. AppCheck are authorised by the Common Vulnerabilities and Exposures (CVE) Program as a CVE Numbering Authority (CNA)