RT @mmaunder@twitter.com: "Terminates other miners". Reminds me of BabaYaga that we uncovered in June.
https://www.wordfence.com/blog/2018/06/babayaga-wordpress-malware/
It's using DirtyCow to privesc. Recently did incident response on a WP breach where chain was WP to DirtyCow to lateral movement.
Stay on top of those patches and updates! https://twitter.com/campuscodi/status/1066048929312190464