Xanthe

Malware type
cryptominer
Family
Malware family
Profile updated
2026-07-07 14:21:26

Targeted industries: technology-and-telecommunications

Context

Xanthe malware is known for targeting Docker instances to deploy cryptocurrency miners. It predominantly focuses on exploiting misconfigured Docker cloud environments to leverage their computational resources for illicit mining operations.

Reports & references

  • cadosecurity.com — Abcbot An Evolution Of Xanthe (report)
  • ibm.com — Wmdzowk6 (report)
  • malpedia.caad.fkie.fraunhofer.de — Elf.Xanthe (report)
  • Cisco Talos — Xanthe Docker Aware Miner (report)

External references