An active, ongoing campaign exploiting a widespread vulnerability in Linux email servers. Attack leverages a week-old vulnerability to gain remote command execution on the target machine, search the Internet for other machines to infect. Attack culminates in the downloading of a coin miner payload, which as we have seen previously with WannaMine can have a negative impact on any organization. Currently, more than 3.5 million servers are at risk worldwide. The recovery process from this type of attack is costly and time consuming.”]