{"id":33182,"date":"2020-02-06T13:45:14","date_gmt":"2020-02-06T13:45:14","guid":{"rendered":"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/"},"modified":"2020-02-06T13:45:14","modified_gmt":"2020-02-06T13:45:14","slug":"researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/","title":{"rendered":"Researchers reckon 500k PCs infested with malware after dodgy downloads install even more nasties from Bitbucket"},"content":{"rendered":"<p>We don&#8217;t know who needs to hear this, but don&#8217;t download cracked commercial software. Researchers claim more than 500,000 PCs have been left wriggling with malware after a cracked app went on to retrieve further nasties from Bitbucket repos.<\/p>\n<p>Security company Cybereason has <a target=\"_blank\" href=\"https:\/\/www.cybereason.com\/blog\/the-hole-in-the-bucket-attackers-abuse-bitbucket-to-deliver-an-arsenal-of-malware\" rel=\"noopener noreferrer\">studied<\/a> a campaign to deliver &#8220;an arsenal of malware&#8221; including credential stealers, cryptocurrency miners, ransomware and crypto-coin pinchers.<\/p>\n<p>&#8220;It is also able to take pictures using the camera [and] take screenshots,&#8221; wrote researchers Lior Rochberger and Assaf Dahan.<\/p>\n<p>How this stuff was managed and coordinated without bringing the user&#8217;s machine to a standstill is not specifically mentioned, but the duo added that &#8220;the combination of so many different types of malware exfiltrating so many different types of data can leave organisations unworkable&#8221;.<\/p>\n<p>Users generally start their journey to hell, according to the paper, by &#8220;downloading a cracked version of commercial software like Adobe Photoshop, Microsoft Office, and others&#8221;. There is an insatiable appetite for free versions of expensive software, it seems, and search engines are happy to help. We searched Bing for &#8220;Download Adobe&#8221; and right at the top of the page were videos with guides to illegal downloads; no, we did not test these for malware but it would not be surprising if they came with some unwanted extras.<\/p>\n<div class=\"CaptionedImage Center Border\" readability=\"7\"><a href=\"https:\/\/regmedia.co.uk\/2020\/02\/06\/malwarediagram.jpg\" target=\"_blank\" rel=\"noopener noreferrer\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/regmedia.co.uk\/2020\/02\/06\/malwarediagram.jpg?x=442&amp;y=240&amp;infer_y=1\" alt=\"How malware proliferates by downloading from Bitbucket repositories\" title=\"How malware proliferates by downloading from Bitbucket repositories\" height=\"240\" width=\"442\"><\/a><\/p>\n<p class=\"text_center\">How malware proliferates by downloading from Bitbucket repositories (click to enlarge)<\/p>\n<\/div>\n<p>Rochberger and Dahan reckon that some such downloads create a connection to Bitbucket repositories to install &#8220;additional payloads&#8221;. Bitbucket is a code-management platform from Atlassian. There is no suggestion that Bitbucket itself has any specific vulnerabilities, but the claim is that serving malware from legitimate sites such as this \u2013 or others like Github, Dropbox and Google Drive \u2013 makes it harder for security software to detect. In addition, the researchers said the repositories are &#8220;updated almost constantly by the threat actor&#8221; in order to evade antivirus signature lists.<\/p>\n<p>As is common, there is a marketing element to the report, with the researchers recommending an &#8220;iterative security process&#8221; to defend against this kind of attack.<\/p>\n<p>Despite the researchers&#8217; &#8220;Hole in the bucket&#8221; headline, the real story here is the risks inherent in users trying to get commercial software for free. Atlassian was quick to remove the malicious repositories reported to them, but the scale of services like this is such that preventing further occurrences is likely to be unrealistic. \u00ae<\/p>\n<p class=\"wptl btm\"><span>Sponsored:<\/span> <a href=\"https:\/\/go.theregister.co.uk\/tl\/1889\/-8120\/detecting-cyber-attacks-as-a-small-to-medium-business?td=wptl1889\">Detecting cyber attacks as a small to medium business<\/a><\/p>\n<p>READ MORE <a href=\"https:\/\/go.theregister.co.uk\/feed\/www.theregister.co.uk\/2020\/02\/06\/500k_pcs_infected_with_malware_delivered_via_cracked_commercial_software_and_bitbucket_repositories\/\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>That &#8216;free&#8217; Adobe or Microsoft software isn&#8217;t all it&#8217;s cracked up to be, eh? We don&#8217;t know who needs to hear this, but don&#8217;t download cracked commercial software. Researchers claim more than 500,000 PCs have been left wriggling with malware after a cracked app went on to retrieve further nasties from Bitbucket repos.\u2026  READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":33183,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[63],"tags":[],"class_list":["post-33182","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-the-register"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.9 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Researchers reckon 500k PCs infested with malware after dodgy downloads install even more nasties from Bitbucket 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Researchers reckon 500k PCs infested with malware after dodgy downloads install even more nasties from Bitbucket 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2020-02-06T13:45:14+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/02\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"442\" \/>\n\t<meta property=\"og:image:height\" content=\"240\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Researchers reckon 500k PCs infested with malware after dodgy downloads install even more nasties from Bitbucket\",\"datePublished\":\"2020-02-06T13:45:14+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\\\/\"},\"wordCount\":422,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/02\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket.jpg\",\"articleSection\":[\"The Register\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\\\/\",\"name\":\"Researchers reckon 500k PCs infested with malware after dodgy downloads install even more nasties from Bitbucket 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/02\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket.jpg\",\"datePublished\":\"2020-02-06T13:45:14+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/02\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/02\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket.jpg\",\"width\":442,\"height\":240},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Researchers reckon 500k PCs infested with malware after dodgy downloads install even more nasties from Bitbucket\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Researchers reckon 500k PCs infested with malware after dodgy downloads install even more nasties from Bitbucket 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/","og_locale":"en_US","og_type":"article","og_title":"Researchers reckon 500k PCs infested with malware after dodgy downloads install even more nasties from Bitbucket 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2020-02-06T13:45:14+00:00","og_image":[{"width":442,"height":240,"url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/02\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket.jpg","type":"image\/jpeg"}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Researchers reckon 500k PCs infested with malware after dodgy downloads install even more nasties from Bitbucket","datePublished":"2020-02-06T13:45:14+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/"},"wordCount":422,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/02\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket.jpg","articleSection":["The Register"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/","url":"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/","name":"Researchers reckon 500k PCs infested with malware after dodgy downloads install even more nasties from Bitbucket 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/02\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket.jpg","datePublished":"2020-02-06T13:45:14+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/02\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/02\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket.jpg","width":442,"height":240},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/researchers-reckon-500k-pcs-infested-with-malware-after-dodgy-downloads-install-even-more-nasties-from-bitbucket\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Researchers reckon 500k PCs infested with malware after dodgy downloads install even more nasties from Bitbucket"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/33182","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=33182"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/33182\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/33183"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=33182"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=33182"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=33182"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}