Page 1 of 1

MikroTik routers infected with Coinhive

Posted: Mon Oct 15, 2018 11:47 am
by gotitbro
Many MikroTik have been hacked and been installed with Coinhive (cryptocurrency [Monero] miner) code. The vulnerability was fixed with a patch this April but many have not installed it yet especially ISPs. If you have a MikroTik router you should definitely clean and patch it (cryptocurrency can ruin such a device's hardware completely).

You should also notify your ISP about this (many large ISPs use MikroTik). It is a very serious vulnerability.

https://www.theregister.co.uk/2018/08/03/mikrotik_routers_cryptocurrency/

I guess Brian Krebs story didn't deter the Coinhive/pr0gramm guys from continuing to make it available to anyone.
https://krebsonsecurity.com/2018/03/who-and-what-is-coinhive/