Jenkins Servers Infected With Miner.

Random Robbie
1 min readJan 3, 2019

--

As always i am scanning the internet for fun things I've come across a miner that pretends to be a Jenkins update job but is actually a XMR miner.

I have kicked off a scan with https://www.binaryedge.io so should be able to get numbers soon.

Updated: 173 on port 8080 servers according to my scans of systems that respond and have Jekins Update Job.

Below is the code that is being ran.

--

--