We have detected that you are using Internet Explorer to visit this website. Internet Explorer is now being phased out by Microsoft. As a result, NHS Digital no longer supports any version of Internet Explorer for our web-based products, as it involves considerable extra effort and expense, which cannot be justified from public funds. Some features on this site will not work. You should use a modern browser such as Edge, Chrome, Firefox, or Safari. If you have difficulty installing or accessing a different browser, contact your IT support team.
Report a cyber attack: call 0300 303 5222
or email carecert@nhsdigital.nhs.uk
Summary
First observed in early 2019, Hidden Bee is a complex Lua-based cryptocurrency miner.
Affected platforms
The following platforms are known to be affected:- Microsoft Windows Microsoft Windows - All versions
Threat details
Hidden Bee has currently only been observed being delivered by the Underminer exploit kit (mistakenly attributed as Hidden Bee itself) in spam campaigns or drive-by-download attacks.
Once installed, Hidden Bee uses an included bootkit to escalate its privileges and disguise itself, before deploying a mining module.
For further information:
Remediation steps
Type | Step |
---|---|
To prevent and detect aninfection, ensure that:
|
CVE Vulnerabilities
-
Status:
Last edited: 14 February 2020 2:47 pm