Close Menu
  • Latest News
    • Bitcoin
    • Ethereum
    • Altcoins
    • Meme Coins
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Gaming
  • Legal
    • Legal and Regulatory
    • Adoption
  • Analysis
  • Learn
    • Education
    • Wallets and Exchanges
  • Tools
    • Market Overview
    • Exchange Tool
  • INFO@FREE.CC
What's Hot

Mastercard joins the blockchain security push — why it matters now

April 24, 2026

Npm Supply Chain Attack Uses Worm-Like Propagation

April 24, 2026

Bitcoin Recovery May Not Arrive Until October, Scaramucci Says

April 24, 2026
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
  • Disclosure
Facebook X (Twitter) Instagram
Free.cc (Free Cryptocurrency)Free.cc (Free Cryptocurrency)
  • Latest News
    1. Bitcoin
    2. Ethereum
    3. Altcoins
    4. Meme Coins
    5. View All

    India pushes digital rupee through welfare pilots as BRICS CBDC plan takes shape

    April 24, 2026

    Bitcoin’s Quantum Problem Is Really A Governance Crisis In Disguise: UTXO

    April 24, 2026

    Eric Trump’s American Bitcoin adds 11,298 ASIC miners – ABTC stock surges 8%

    April 24, 2026

    US Military Tests Bitcoin Node for Cybersecurity Research

    April 24, 2026

    Ethereum Near Key Zone After 36% Gain

    April 24, 2026

    Bitmine Stakes 61,232 ETH Worth $142M

    April 22, 2026

    Ethereum Targets Lower Range As Resistance Zone Comes Into Play

    April 22, 2026

    Ethereum Price Rises, But On-Chain Data Signals Weak Demand —What’s Next for ETH?

    April 21, 2026

    Bitcoin Recovery May Not Arrive Until October, Scaramucci Says

    April 24, 2026

    Dogecoin Keeps Getting Capped At This Parallel Channel Level, Analyst Says

    April 24, 2026

    What’s Happening Between ETH And The Financial Systems?

    April 24, 2026

    Could Ripple XRP Power Cross-Border Payments? Russia’s Early Tests Suggest Potential

    April 23, 2026

    Meme Coin Market Faces Imbalance as Supply Rises, Demand Falls

    April 4, 2026

    Crypto Interest Rising Toward Meme Coin Sector

    January 9, 2026

    Memes Market Cap Adds $10B in Days: Fresh Capital or Dead-Cat-Bounce?

    January 5, 2026

    Meme Coin Market Surges Past $45B as Shiba Inu, PEPE, BONK Stage 54% Price Pump

    January 4, 2026

    Mastercard joins the blockchain security push — why it matters now

    April 24, 2026

    Npm Supply Chain Attack Uses Worm-Like Propagation

    April 24, 2026

    Bitcoin Recovery May Not Arrive Until October, Scaramucci Says

    April 24, 2026

    KuCoin Launches KuCard in Australia, Expanding Real-World Crypto Payments

    April 24, 2026
  • Tech
    1. Blockchain
    2. Security and Privacy
    3. View All

    Mastercard joins the blockchain security push — why it matters now

    April 24, 2026

    WalletConnect Integrates with TradFi-Focused Chain Canton Network

    April 24, 2026

    Base Tests Azul Upgrade With Multiproofs Ahead of Planned Mainnet Launch

    April 24, 2026

    Pyth Network to determine outcomes in Kalshi’s commodities expansion

    April 24, 2026

    Npm Supply Chain Attack Uses Worm-Like Propagation

    April 24, 2026

    How crypto futures markets are feeding ‘scam coin’ insider pump and dumps

    April 22, 2026

    North Korean Blamed for $290m KelpDAO Crypto Heist

    April 21, 2026

    Chainalysis Flags Critical Blind Spot in DeFi Security as $292M Exploit Bypasses Burn Verification

    April 21, 2026

    Mastercard joins the blockchain security push — why it matters now

    April 24, 2026

    Npm Supply Chain Attack Uses Worm-Like Propagation

    April 24, 2026

    Bitcoin Recovery May Not Arrive Until October, Scaramucci Says

    April 24, 2026

    KuCoin Launches KuCard in Australia, Expanding Real-World Crypto Payments

    April 24, 2026
  • Web 3
    1. Gaming
    2. View All

    KuCoin Launches KuCard in Australia, Expanding Real-World Crypto Payments

    April 24, 2026

    REAL and RWA Inc. Partner to Advance Tokenized Asset Infrastructure Amid Growing RWA Demand

    April 24, 2026

    Zach Lowe: Celtics’ offense struggles since Tatum’s return, Luka Doncic’s historic scoring season, and LeBron’s pivotal role in Lakers’ surprise playoff success

    April 24, 2026

    GameFi is effectively dead as 93% of projects collapse

    April 24, 2026

    Mastercard joins the blockchain security push — why it matters now

    April 24, 2026

    Npm Supply Chain Attack Uses Worm-Like Propagation

    April 24, 2026

    Bitcoin Recovery May Not Arrive Until October, Scaramucci Says

    April 24, 2026

    KuCoin Launches KuCard in Australia, Expanding Real-World Crypto Payments

    April 24, 2026
  • Legal
    1. Legal and Regulatory
    2. Adoption
    3. View All

    Justin Sun sues Trump-linked World Liberty over disputed token freeze and governance proposal

    April 24, 2026

    Donald Trump Announces Ceasefire with Iran Extended!

    April 24, 2026

    Tron’s Justin Sun sues Trump-linked World Liberty Financial over frozen assets

    April 24, 2026

    New York sues Coinbase, Gemini over prediction market offerings

    April 24, 2026

    Cardano development teams wants almost $50 million for Bitcoin DeFi and Vision 2030

    April 24, 2026

    Oil tanker attacked after falling for crypto scam granting fake Strait of Hormuz safe passage

    April 21, 2026

    Six years after “DeFi Summer” is the sun already setting on the decentralized finance revolution?

    April 20, 2026

    Bitcoin network activity just hit an 8-year low — has Wall Street replaced retail in the market?

    April 19, 2026

    Mastercard joins the blockchain security push — why it matters now

    April 24, 2026

    Npm Supply Chain Attack Uses Worm-Like Propagation

    April 24, 2026

    Bitcoin Recovery May Not Arrive Until October, Scaramucci Says

    April 24, 2026

    KuCoin Launches KuCard in Australia, Expanding Real-World Crypto Payments

    April 24, 2026
  • Analysis

    Is $2 the Next Target?

    April 24, 2026

    SPK Price Explodes After Breakout, But Overbought Signals Flash Warning

    April 23, 2026

    US Bankers association push for 60 day pause to stop stablecoin rules going live

    April 23, 2026

    STABLE Price Jumps 15% After CEO Spotlight, But Is This Rally Sustainable?

    April 23, 2026

    ZEC Price Prediction: Zcash Retests Key Level

    April 23, 2026
  • Learn
    1. Education
    2. Wallets and Exchanges
    3. View All

    What’s on the Ethereum Roadmap: Glamsterdam, Hegota and Beyond

    March 30, 2026

    What Is Bluesky? The Decentralized Social Media Rival to Elon Musk’s X

    March 27, 2026

    What Is Strategy (MSTR)? The Bitcoin Treasury Company

    February 21, 2026

    What Are Prediction Markets? How Polymarket, Kalshi and Myriad Work

    February 13, 2026

    Over 80% of Bitcoin ETF assets hit Coinbase custody choke point with $74B at risk

    April 13, 2026

    FTX begins $2.2B payout. Can Bitcoin absorb another liquidity test?

    March 31, 2026

    BlinkEx investment platform infrastructure – matching, risk controls, reliability

    March 21, 2026

    Over $2B in “lost” Bitcoin to hit markets this month creating sell pressure within fragile $67k–$74k range

    March 20, 2026

    Mastercard joins the blockchain security push — why it matters now

    April 24, 2026

    Npm Supply Chain Attack Uses Worm-Like Propagation

    April 24, 2026

    Bitcoin Recovery May Not Arrive Until October, Scaramucci Says

    April 24, 2026

    KuCoin Launches KuCard in Australia, Expanding Real-World Crypto Payments

    April 24, 2026
  • Tools
    • Market Overview
    • Exchange Tool
  • INFO@FREE.CC
Free.cc (Free Cryptocurrency)Free.cc (Free Cryptocurrency)
Home»Security and Privacy»Cryptojacking Campaign Targets DevOps Servers Including Nomad
Cryptojacking Campaign Targets DevOps Servers Including Nomad
Security and Privacy

Cryptojacking Campaign Targets DevOps Servers Including Nomad

September 10, 2025No Comments3 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

Researchers claim to have discovered the first case of threat actors using misconfigured HashiCorp Nomad deployments as an attack vector.

The popular DevOps platform, which enables firms to deploy and manage containers and non-containerized applications, is being targeted alongside other infrastructure, including Gitea, Consul and Docker API, according to cloud security provider Wiz.

The threat group in question, named by Wiz as JINX-0132, is exploiting misconfigurations and vulnerabilities in these DevOps tools for cryptojacking, the report claimed.

Based on Wiz data, a quarter (25%) of all cloud environments run at least one of the targeted technologies. Of the environments using these tools, 5% expose them directly to the internet, and among these deployments, 30% are apparently misconfigured.

Read more on cryptojacking: Malicious Microsoft VS Code Extensions Used in Cryptojacking Campaign

JINX-0132 attackers are taking advantage of Nomad’s job queue feature, which allows users to submit tasks for execution by nodes registered with the Nomad server.

“By default – and critically, if not reconfigured by administrators – any user with access to the Nomad server API can create and run these jobs. This default configuration effectively means that unrestricted access to the server API can be tantamount to remote code execution (RCE) capabilities on the server itself and all connected nodes,” Wiz said.

In this way, the threat actors create multiple new jobs on compromised hosts to download the XMRig miner directly from its public GitHub repository, unpack the archive, grant execution permissions and execute.

They are also abusing another HashiCorp tool, Consul, which is designed to help DevOps teams secure network connectivity between services and across on-premises and multi-cloud environments and runtimes.

See also  US Targets Crypto Firms Aiding Russia Sanctions Evasion

Specifically, they are hijacking the health check service to execute bash commands and download and run XMRig payloads.

“Unless ACLs [access control lists] have been configured or security features provided by HashiCorp have been enabled, any user with remote access to the server can register services and health checks and abuse this functionality for remote code execution,” Wiz warned.

JINX-0132 is also exploiting CVE-2020-14144 in older versions of open source GitHub alternative Gitea, as well as misconfigured versions of Docker Engine API. In the latter case, they have been able to create containers that launch crypto-miner images, according to the report.

Best Practices for DevOps

To avoid becoming another JINX-0132 victim, Wiz urged customers of the aforementioned DevOps tools to do the following:

  • Nomad: Implement the ACLs and other security features listed in the Security Model section of the official documentation
  • Gitea: Keep public Gitea instances up to date to prevent exploitation of RCE vulnerabilities, and don’t enable git hooks or leave the installation unlocked unless absolutely necessary
  • Consul: Switch on the security features listed in the Secure Consul section of the official documentation, including disabling script checks, and restricting the HTTP API to bind only to “localhost” where possible
  • Docker API: Do not bind the Docker API to 0.0.0.0, and don’t expose the API to the internet
Campaign Cryptojacking DevOps Including Nomad Servers Targets
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Npm Supply Chain Attack Uses Worm-Like Propagation

April 24, 2026

Crypto Veterans Flip Bullish on Bitcoin As BTC Trades at $78,000 – Here Are Their Price Targets

April 24, 2026

Kalshi flags more insider trading cases, including politician who appeared on FBoy Island

April 23, 2026

Ethereum Targets Lower Range As Resistance Zone Comes Into Play

April 22, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

Ripple Advocate Trashes Banks As They Strive to Ban Stablecoin Yields Through Legislation

February 23, 2026

ASTER Price Analysis – Is This the Dip Before the Next Breakout?

October 1, 2025

Stay ahead with the latest crypto news, market updates, blockchain insights, and trends. Your trusted source for everything happening in the digital asset world.


We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

Mastercard joins the blockchain security push — why it matters now

April 24, 2026

Npm Supply Chain Attack Uses Worm-Like Propagation

April 24, 2026

Bitcoin Recovery May Not Arrive Until October, Scaramucci Says

April 24, 2026
Get Informed

Subscribe to Updates

Get the latest creative news From Free.cc directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
  • Disclosure
© 2026 free.cc - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.