A cryptojacking campaign has affected over 200,000 routers made by MikroTik, the Latvian networking company. In April 2018, the company patched a remote access vulnerability which allowed attackers to remotely gain unauthenticated administrative access to the MikroTik routers. Hackers took advantage of the patch and used the recovered vulnerability to access Mikrotik devices. They then injected Coinhive’s Javascript into web pages accessed by users on compromised routers, making the users mine Monero ($XMR) for the hackers.