Skip to content
Wormable XMRig Cryptojacking Campaign Uses BYOVD Techniques

Wormable XMRig Cryptojacking Campaign Uses BYOVD Techniques

First seen 26 Feb 2026, 00:12 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 16:10 UTC

A wormable cryptojacking campaign has been identified, leveraging pirated software to deploy a custom XMRig miner. The attack utilizes BYOVD techniques and incorporates a time-based logic bomb to enhance stealth and evade detection. Affected systems include those running counterfeit software packages that facilitate the infection process.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 213d ago How this analysis works

Timeline

2026-02-23
Securityaffairs.Co reports on wormable XMRig campaign
2026-02-25
Broadcom reports on advanced cryptojacking operation

More articles in this cluster (2)

Following this threat?

Track XMRig in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed