Fun

News Feed - 2023-10-16 02:10:00

Martin Young3 hours agoEtherHiding: Hackers create novel way to hide malicious code in blockchainsThreat actors have worked out a way to hide malicious payloads in Binance smart contracts to lure victims into updating their browsers from fake prompts, according to cybersecurity researchers.2068 Total views19 Total sharesListen to article 0:00NewsJoin us on social networksCybercriminals have discovered a new way to spread malware to unsuspecting users, this time by manipulating BNB Smart Chain (BSC) smart contracts to hide malware and disseminate malicious code.


A breakdown of the technique known as “EtherHiding” was shared by security researchers at Guardio Labs in an Oct. 15 report, explaining that the attack involves compromising WordPress websites by injecting code that retrieves partial payloads from the blockchain contracts.


The attackers hide the payloads in BSC smart contracts, essentially serving as anonymous free hosting platforms for them.Guardio Labs exposes "EtherHiding" - a new threat hiding in Binance"s Smart Chain, a technique that evades detection, targeting compromised WordPress sites. Read about this game-changing method! @BNBCHAIN #BNBChain #CyberSecurity https://t.co/alNI5KqKUO— Guardio (@GuardioSecurity) October 15, 2023


The hackers can update the code and change the attack methods at will. The most recent attacks have come in the form of fake browser updates, where victims are prompted to update their browsers using a fake landing page and link.


The payload contains JavaScript that fetches additional code from the attacker’s domains. This eventually leads to full site defacement with fake browser update notices that distribute malware.


This approach allows the threat actors to modify the attack chain by simply swapping out malicious code with each new blockchain transaction. This makes it challenging to mitigate, according to Nati Tal, head of cybersecurity at Guardio Labs, and fellow security researcher Oleg Zaytsev.


Once the infected smart contracts are deployed, they operate autonomously. All Binance can do is rely on its developer community to flag malicious code in contracts upon discovery.Contract address flagged for scam activity. Source: Guard.io


Guardio stated that website owners using WordPress, which runs roughly 43% of all websites, need to be extra vigilant with their own security practices before adding:“WordPress sites are so vulnerable and frequently compromised, as they serve as primary gateways for these threats to reach a vast pool of victims.”


Related:Crypto investors under attack by new malware, reveals Cisco Talos


The firm concluded that Web3 and blockchain bring new possibilities for malicious campaigns to operate unchecked. “Adaptive defenses are needed to counter these emerging threats,” it said.


Collect this article as an NFTto preserve this moment in history and show your support for independent journalism in the crypto space.


Magazine:Blockchain detectives — Mt. Gox collapse saw birth of Chainalysis# Blockchain# Smart Contracts# Malware# Hackers# Scams# BSCAdd reactionAdd reactionRead moreHow to earn passive income with peer-to-peer lendingMeet the guerilla artist who staged a crypto ‘rug pull’ in front of the SECHow to build a DApp on Ethereum

News Feed

South Korea Reportedly Freezes Do Kwon’s Crypto Worth $40M — Luna Founder Says the Funds Are Not His
South Korea Reportedly Freezes Do Kwon"s Crypto Worth $40M — Luna Founder Says the Funds Are Not His South Korean authorities have reportedly frozen $40 million in crypto assets,
iME Lists on AscendEX
iME Lists on AscendEX press release PRESS RELEASE. AscendEXis thrilled to announce the listing of the iMe token (LIME) under the pair USDT/LIMEon Sept. 14 at 1 p.m. UTC.
Bitcoin, Ethereum Technical Analysis: ETH Rebounds on Friday, Climbing Above $1,700
Bitcoin, Ethereum Technical Analysis: ETH Rebounds on Friday, Climbing Above $1,700 Ethereum rose above $1,700, while bitcoin snapped a seven-day losing streak on Friday, with pric
Publicly Listed Energy Firm Equinor Exploits Gas Flaring in North Dakota to Mine Bitcoin
Publicly Listed Energy Firm Equinor Exploits Gas Flaring in North Dakota to Mine BitcoinJust recently, the firm Arcane Research recently revealed a number of screenshots from the pu
SportIcon Launches Innovative NFT Platform That Connects Fans With Exclusive Athlete Content
SportIcon Launches Innovative NFT Platform That Connects Fans With Exclusive Athlete Content press release PRESS RELEASE. NFTs have emerged as a unique digital asset in the past 24
Ethereum Foundation Makes It Clear The Merge Will Not Improve Fees and Throughput
Ethereum Foundation Makes It Clear The Merge Will Not Improve Fees and Throughput On Wednesday the Ethereum Foundation clarified that The Merge will not reduce onchain fees as the
Islamic Scholar Says Digital Currency is Not a ‘Fictitious Currency’
Islamic Scholar Says Digital Currency is Not a "Fictitious Currency" An Islamic scholar, Irshad Ahmad Ijaz, has asserted that digital currency is not fake currency and that it shou
Ethereum Repeats History – Key Support Holds Again Ahead Of Potential Rally
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
5,000 Bitcoin ATMs Add Cash-Out Option: Libertyx Sees Strong Adoption
5,000 Bitcoin ATMs Add Cash-Out Option: Libertyx Sees Strong Adoption Libertyx has added a cash-out option to its 5,000 bitcoin ATMs. The CEO says this addition
Analyst Who Called XRP Price Surge At $0.5 Says Surge To This Level Is Coming
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Turner Wright4 hours agoHouse committee will reopen discussions on digital dollar in Sept. 14 hearingFollowing an August recess, members of the House Financial Services Committee will gather for a “Digital Dollar Dilem
Nokia Believes the Metaverse Will Replace Smartphones in the Future
Nokia Believes the Metaverse Will Replace Smartphones in the Future Nokia, one of the first companies to manufacture a consumer-grade mobile phone system, now believes the metavers