← Back to Feed

Case Study: Targeted Attack Case on an MS-SQL Server Involving the Installation of GotoHTTP and SoftEther VPN

July 24, 2026 · AhnLab ASEC · Severity: MEDIUM

While monitoring attack cases targeting MS-SQL servers, the AhnLab SEcurity intelligence Center (ASEC) identified an instance in which the Larva-26009 threat actor installed the XMRig CoinMiner.

Key Takeaways

  • While monitoring attack cases targeting MS-SQL servers, the AhnLab SEcurity intelligence Center (ASEC) identified an.
  • While the installation of CoinMiner is common in attack cases targeting MS-SQL servers, in this particular attack.
☕ Buy a Coffee