Hackers Make Whopping $226K Installing Monero Miners On Oracle WebLogic Servers

A group of hackers has made over a quarter-million dollars worth of Monero by breaking into Oracle WebLogic servers and installing a cryptocurrency miner.

The attacks have been going on since early December 2017, according to experts at the SANS Technology Institute and Morphus Labs.

Attackers used recently leaked proof-of-concept exploit code for the CVE-2017-10271 vulnerability in Oracle WebLogic servers, which Oracle patched two months before as part of the Oracle Critical Patch Update (CPU) – October 2017.

The vulnerability attackers chose wasn’t by accident, as it had a severity score of 9.8 out of 10, meaning it was both easy to exploit via the Internet and allowed attackers to execute malicious code on the server and take over the underlying machine.

