Microsoft reported a large-scale cryptomining campaign targeting Kubernetes clusters running Kubeflow, where attackers gained access through dashboards exposed to the public internet. The activity affected tens of clusters and was frequently tied to deployments in which the Istio ingress gateway had been changed to a public load balancer, leaving Kubeflow management interfaces reachable without adequate protection.
After accessing the environment, the attackers abused Kubeflow features including custom Jupyter notebook images and notebook code execution with mounted service accounts to deploy malicious containers. Microsoft said the campaign used public container images such as ddsfdfsaadfs/dfsdf:99 and related images to run the XMRIG cryptocurrency miner, and noted the namespace name anonymous as a recurring indicator. The company urged defenders to check clusters for the malicious images and ensure the Kubeflow dashboard is not publicly exposed.

Map this exposure pattern across your cloud, code, and identities.
3 events from the most recent confirmed update back to the earliest known activity.
Microsoft published an analysis stating that misconfigured, internet-exposed Kubeflow dashboards were the access vector in a cryptocurrency-mining campaign. The report said this was the first attack Azure Security Center had identified that specifically targeted Kubeflow environments and highlighted the recurring "anonymous" namespace as an indicator.
Microsoft reported a large-scale cryptocurrency-mining attack against Kubernetes clusters. The campaign targeted clusters to run miners and was later assessed to involve Kubeflow environments.
Azure Security Center said it observed deployment of the public container image ddsfdfsaadfs/dfsdf:99 and related mining images across many Kubernetes clusters during April. The image ran the XMRIG cryptocurrency miner, and tens of clusters were affected.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See where this exposure pattern shows up across your cloud, code, supply chain, and non-human identities.
2 references tracked. Mallory keeps watching after this page renders.
microsoft.com
Open sourceazure.microsoft.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.