Aqua Nautilus team dive into the full extent of the campaign and provide a more comprehensive exploration of an extensive TeamTNT campaign: https://blog.aquasec.com/teamtnt-reemerged-with-new-aggressive-cloud-campaign

#teamtnt #JupyterLab #dockerapi #cloudsecurity #KubernetesSecurity #weavescope #aws #azure #gcp

TeamTNT Reemerged with New Aggressive Cloud Campaign

The botnet run by TeamTNT has set its sights on Docker and Kubernetes environments, Redis servers, Postgres databases, Hadoop clusters, Tomcat and others.

TeamTNT Gains Full Remote Takeover of Cloud Instances - Using a legitimate tool called Weave Scope, the cybercrime group is establishing fileless backdoor... https://threatpost.com/teamtnt-remote-takeover-cloud-instances/159075/ #vulnerabilities #cloudinstances #remotetakeover #cloudsecurity #cyberattacks #websecurity #dockerimage #kubernetes #weavescope #microsoft #backdoor #fileless #intezer #teamtnt #docker #hacks
TeamTNT Gains Full Remote Takeover of Cloud Instances

Using a legitimate tool called Weave Scope, the cybercrime group is establishing fileless backdoors on targeted Docker and Kubernetes clusters.

Threatpost - English - Global - threatpost.com