Microsoft Details LemonDuck and LemonCat Monero-Mining Malware

The Microsoft 365 Defender Threat Intelligence Team on Thursday published a detailed look at the LemonDuck and LemonCat malware used to mine the Monero cryptocurrency, among other things, after gaining access to vulnerable devices.

Microsoft said devices in “the United States, Russia, China, Germany, the United Kingdom, India, Korea, Canada, France, and Vietnam” are most frequently affected by LemonDuck. The malware exploits vulnerabilities in both Windows and Linux, too, which helps it cast as wide a net as possible in its search for potential victims.