Wormable XMRig Cryptojacking Campaign Uses BYOVD Techniques

Wormable XMRig Cryptojacking Campaign Uses BYOVD Techniques

First seen 26 Feb 2026, 00:12 UTC Securityaffairs.CoBroadcom 32.7

Article Content

Browse articles
ThreatCluster

A wormable cryptojacking campaign has been identified, leveraging pirated software to deploy a custom XMRig miner. The attack utilizes BYOVD techniques and incorporates a time-based logic bomb to enhance stealth and evade detection. Affected systems include those running counterfeit software packages that facilitate the infection process.

Timeline

2026-02-23
Securityaffairs.Co reports on wormable XMRig campaign
2026-02-25
Broadcom reports on advanced cryptojacking operation