Advanced Crypto Mining Malware Targets Air-Gapped Systems
VPN Central [Unofficial]
February 20, 2026
Sophisticated Monero mining malware spreads through external drives and infects air-gapped networks. Trellix researchers uncovered the multi-stage campaign in late 2025 that uses kernel exploits and self-healing processes. It propagates via USB devices with deceptive hidden folders and shortcuts. The infection starts with pirated office software bundles. Once running, it deploys controller and payload components. […]
The post Advanced Crypto Mining Malware Targets Air-Gapped Systems appeared first on VPN Central.
Discussion in the ATmosphere