#cve-2023-48022

[ follow ]
Information security
fromThe Hacker News
5 days ago

ShadowRay 2.0 Exploits Unpatched Ray Flaw to Build Self-Spreading GPU Cryptomining Botnet

A two-year-old Ray framework authentication flaw enables ShadowRay 2.0 to create a self-replicating NVIDIA GPU cryptocurrency-mining botnet.
fromTheregister
1 week ago

Self-replicating botnet attacks Ray clusters

Malefactors are actively attacking internet-facing Ray clusters and abusing the open source AI framework to spread a self-replicating botnet that mines for cryptocurrency, steals data, and launches distributed denial of service (DDoS) attacks. Oligo Security bug hunters say the ongoing campaign, which they've named ShadowRay 2.0, has been active since at least September 2024. The attacks exploit CVE-2023-48022, a critical - and unpatched - vulnerability in Ray, an open source distributed computing framework for AI workloads that's used by major tech companies, including Amazon, Apple, and OpenAI.
Information security
[ Load more ]