Reserved IP Address°C
03-10-2025
BSV
$32.75
Vol 37.95m
-2.81%
BTC
$80113
Vol 45667.94m
-4.34%
BCH
$354.89
Vol 318.07m
-4.22%
LTC
$92.51
Vol 889.85m
-7.59%
DOGE
$0.16
Vol 2386.04m
-7.84%
Getting your Trinity Audio player ready...

Cryptojackers have launched a series of attacks against machine learning toolkit Kubeflow, with the intention of installing digital currency block reward miners on exposed instances.

According to a post published by Microsoft, the attacks have been going on since April, with “tens of Kubernetes clusters” running Kubeflow having been targeted so far.

The nodes are ordinarily used to run tasks for machine learning, with significant capacity for processing digital currency in the wrong hands.

Yossi Weizman, Security Research Software Engineer at the Azure Security Center, said this is the first attack they have uncovered targeting Kubeflow specifically: “Azure Security Center has detected multiple campaigns against Kubernetes clusters in the past that have a similar access vector: an exposed service to the internet. However, this is the first time that we have identified an attack that targets Kubeflow environments specifically…When deploying a service like Kubeflow within a cluster it is crucial to be aware of security aspects…”

According to Weizman, the power required for machine learning tasks makes Kubernetes clusters an ideal target for cryptojacking.

“Nodes that are used for ML tasks are often relatively powerful, and in some cases include GPUs…This fact makes Kubernetes clusters that are used for ML tasks a perfect target for crypto mining campaigns, which was the aim of this attack,” Weizman said.

Cryptojacking occurs when resources are hijacked by a malicious party to power digital currency block reward miners. Scammers then collect the digital currency generated from the illicit activity.

Cryptojacking attacks have shown a stark rise in recent years, becoming an increasingly common strategy for scammers and cybercriminals.

The revelation of the attacks serve as a reminder to those deploying Kubeflow to be alert to potential security threats, and to take steps to protect their nodes from being exposed to cryptojacking.

Recommended for you

Building a solid ecosystem: Babbage to host BSV Hackathon in Texas
The US$55,000 prize money is up for grabs at the inaugural BSV Hackathon in Austin, Texas, which Babbage will host...
March 3, 2025
GPT-4.5 is not the AGI moment OpenAI teased
While he previously called for lower expectations over GPT-4.5, Sam Altman was lured into dubbing it the closest step to...
March 3, 2025
Advertisement
Advertisement
Advertisement