← Back to feed
general GBHackers

Linux XMRig Botnet Abuses PAM for Fileless Monero Mining and Persistent Access

GBHackers Linux

A covert Monero (XMR) cryptomining campaign uncovered in May 2026 is abusing Linux Pluggable Authentication Modules (PAM) to evade detection, maintain filele...

Read the full story GBHackers →

Related Coverage

general 12 Best MFA Solutions Compared (2026): Features & Pricing GBHackers · Sep 23 general Cisco Talos Launches CAIRN Tool to Hunt and Track AI-Integrated Malware GBHackers · Sep 23 general CVE-2026-87902: how close is your WordPress to remote code execution? Security Affairs · Sep 23