← Back to Blog
Malware Analysis2021

GAFGYT Malware Variant Exploits GPU Power and Cloud-Native Environments

By Assaf Morag

A new variant of the GAFGYT malware family has been discovered that specifically targets GPU resources in cloud-native environments. This variant demonstrates how threat actors are evolving their cryptomining malware to exploit high-performance computing resources.

The malware specifically targets GPU resources, which provide significantly more computing power for cryptocurrency mining operations compared to traditional CPU-based mining.

Attack Characteristics

  • GPU-focused cryptomining capabilities
  • Targeting cloud-native and containerized environments
  • Exploitation of container escape techniques to access host GPU resources
  • Advanced evasion techniques to avoid detection