Xanthe
- Malware type
- cryptominer
- Family
- Malware family
- Profile updated
- 2026-07-07 14:21:26
Targeted industries: technology-and-telecommunications
Context
Xanthe malware is known for targeting Docker instances to deploy cryptocurrency miners. It predominantly focuses on exploiting misconfigured Docker cloud environments to leverage their computational resources for illicit mining operations.
Reports & references
- cadosecurity.com — Abcbot An Evolution Of Xanthe (report)
- ibm.com — Wmdzowk6 (report)
- malpedia.caad.fkie.fraunhofer.de — Elf.Xanthe (report)
- Cisco Talos — Xanthe Docker Aware Miner (report)