• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

Exploited JDWP Interfaces Used by Hackers for Crypto Mining

user avatar

by Giorgi Kostiuk

4 hours ago


A recent report by Wiz revealed a new strategy employed by hackers using vulnerable Java Debug Wire Protocol (JDWP) interfaces for executing crypto mining on compromised systems.

How hackers use JDWP for attacks

Researchers at Wiz found that hackers are exploiting open JDWP interfaces, allowing them to execute arbitrary code on compromised systems. JDWP is a protocol used in Java for debugging that can be activated during development. The core issue is the lack of access control mechanisms, making exposed interfaces vulnerable to attacks.

Methods of implementing crypto mining

After gaining code execution capabilities, hackers deploy crypto miners on the affected systems. Using a modified version of XMRig with a hard-coded configuration, they avoid suspicious command-line arguments. This technique conceals the attacker’s crypto wallet and disguises their actions.

Overview of attack and its consequences

Hackers utilize the Java Virtual Machine (JVM), which listens for debugger connections on port 5005, to scan for open JDWP ports across the internet. Data shows that over 2,600 IP addresses were scanned in the last 24 hours, of which 1,500 were classified as malicious. The primary sources of these IP addresses include Hong Kong, Germany, the United States, Singapore, and China.

The attacks exploiting JDWP vulnerabilities highlight the critical importance of securing systems against insecure configurations, particularly in development environments.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

Other news

Cardano Reaches 111 Million Transactions: Impact on the Ecosystem?

chest

Cardano has crossed 111 million transactions, indicating user activity growth and infrastructure development.

user avatarGiorgi Kostiuk

BlockDAG Launches with Successful $331M Presale Amid TRON's Growth and Dogecoin Patterns

chest

BlockDAG positions itself in the crypto space with a remarkable $331M presale and a partnership with Seattle Seawolves, while TRON and Dogecoin exhibit intriguing price patterns.

user avatarGiorgi Kostiuk

Crypto Market: Hyperliquid Soars, BlockDAG Launches and Forms Partnerships

chest

Overview of recent events in the crypto market: Hyperliquid reaches a new peak, PI Coin remains stagnant, BlockDAG stands out with partnerships.

user avatarGiorgi Kostiuk

Strong ETF Inflows: Purchase of 7.1K BTC and 86.1K ETH This Week

chest

Investors poured $769.5M into BTC ETFs and $219.1M into ETH ETFs, highlighting growing interest in cryptocurrencies.

user avatarGiorgi Kostiuk

US Threatens 17% Tariff on European Agricultural Products

chest

The US is considering a 17% tariff on EU products, while the cryptocurrency market remains stable.

user avatarGiorgi Kostiuk

Major Bitcoin Holders Boost Their Accumulation on the Market

chest

Analysis shows major Bitcoin holders are increasing their assets, indicating potential price growth for the cryptocurrency.

user avatarGiorgi Kostiuk
dapp expert logo
© 2020-2025. DappExpert. All rights reserved.
© 2020-2025. DappExpert. All rights reserved.

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.