Fun

News Feed - 2023-10-20 03:10:58

Martin Young2 hours agoEtherHiding: Why hackers may prefer Binance’s BNB Smart ChainAccording to cybersecurity analysts at 0xScope and CertiK, threat actors may prefer using BNB Smart Chain contracts because it’s cheaper and seen as having lower security than Ethereum.1147 Total views9 Total sharesListen to article 0:00Follow upJoin us on social networksDespite the name “EtherHiding,” the new attack vector that hides malicious code in blockchain smart contracts doesn’t have much to do with Ethereum at all, cybersecurity analysts have revealed.


As reported by Cointelegraph on Oct. 16, EtherHiding has been discovered as a new way for bad actors to hide malicious payloads inside smart contracts, with the ultimate goal of distributing malware to unsuspecting victims.


These cybercriminals tend to prefer using Binance’s BNB Smart Chain, it is understood.


Speaking to Cointelegraph, a security researcher from blockchain security firm CertiK, Joe Green, said most of this is due to BNB Smart Chain’s lower costs:“The handling fee of BSC is much cheaper than that of ETH, but the network stability and speed are the same because each update of JavaScript Payload is very cheap, meaning there’s no financial pressure.”


EtherHiding attacks are initiated by hackers compromising WordPress websites and injecting code that pulls partial payloads buried in Binance smart contracts. The website’s front end is replaced by a fake update browser prompt, which, when clicked, pulls the JavaScript payload from the Binance blockchain.


The actors frequently change the malware payloads and update website domains to evade detection. This allows them to continuously serve users fresh malware downloads disguised as browser updates, Green explained.Screenshot of malware updates being deployed in BSC smart contract. Source: Certik 


Another reason, according to security researchers at Web3 analytics firm 0xScope, could be because of increased security-related scrutiny on Ethereum.“While we are unlikely to know the EtherHiding hacker’s true motives for using BNB Smart Chain over other blockchains for their scheme, one possible factor is the increased security-related scrutiny on Ethereum.”


Hackers may face higher risks of discovery by injecting their malicious code using Ethereum due to systems such as Infura’s IP address tracking for MetaMask transactions, they said.


Related:Crypto investors under attack by new malware, reveals Cisco Talos


The 0xScope team told Cointelegraph they recently tracked the money flow between hacker addresses on BNB Smart Chain and Ethereum.


Key addresses were linked to NFT marketplace OpenSea users and Copper custody services, it reported.


Payloads were updated daily across 18 identified hacker domains. This sophistication makes EtherHiding hard to detect and stop, the firm concluded.


Magazine: Should crypto projects ever negotiate with hackers? Probably# Blockchain# Smart Contracts# Ethereum# Malware# Hackers# BSCAdd reactionAdd reactionRead moreHow to build a DApp on EthereumWhy the 2024 Bitcoin halving may play out differently than in the pastExclusive: Hackers selling discounted tokens linked to CoinEx, Stake hacks

News Feed

The Founder of Wallstreetbets Jaime Rogozinski Discusses Defi, NFTs, and Crypto Regulation
The Founder of Wallstreetbets Jaime Rogozinski Discusses Defi, NFTs, and Crypto Regulation In 2021, the subreddit forum r/wallstreetbets, also known as Wallstreetbets (WSB) became
Arijit Sarkar56 minutes agoAI infrastructure startup Ritual raises $25M to fill gaps in cryptoRitual’s AI models can help address new use cases in crypto, such as automatically managing risk parameters for lending prot
Ecuadorian Presidential Candidate Proposes a National Cryptocurrency but It Won’t Replace the Dollar
Ecuadorian Presidential Candidate Proposes a National Cryptocurrency but It Won"t Replace the Dollar An Ecuadorian presidential candidate hinted at creating a cr
Victoria Kennedy11 hours agoAI could revolutionize human resources, but there are risksWhile AI has the power to revolutionize human resources, it also leaves HR professionals open to certain risks.410 Total views47 Tota
Bored Ape NFT floor price hits lowest point in over two and a half years
Brayden Lindrea4 hours agoBored Ape NFT floor price hits lowest point in over two and a half yearsThe Bored Ape Yacht Club collection’s floor price is currently at 11.1 ETH, down 90% from its peak during the roaring NF
Government of Uruguay Presents Campaign Against Crypto Scams
Government of Uruguay Presents Campaign Against Crypto Scams The Department of the Interior of Uruguay is taking steps to warn users about the danger they face when investing in ce
Price analysis 6/28: BTC, ETH, BNB, SOL, XRP, DOGE, TON, ADA, AVAX, SHIB
Rakesh Upadhyay4 hours agoPrice analysis 6/28: BTC, ETH, BNB, SOL, XRP, DOGE, TON, ADA, AVAX, SHIBAltcoins see another week of rocky trading, while traders are viewing Bitcoin price dips as a buying opportunity, as seen
J.W. Verret3 hours agoSam Bankman-Fried’s trial is telling a story of classic financial deceitDisgraced FTX CEO Sam Bankman-Fried wasn"t the first financial kingpin to get creative with balance sheets, and he won"t be
Bitcoin Price Action Says Bottom Is In, Analyst Reveals What’s Coming
Este artículo también está disponible en español. Crypto analyst Master Ananda has asserted that the bottom is in for the Bitcoin price following its massive crash below
Iranian Government Approves ‘Comprehensive and Detailed’ Crypto Regulations
Iranian Government Approves "Comprehensive and Detailed" Crypto Regulations The government of Iran has finalized a set of cryptocurrency regulations. A “comprehensive and de
Actress Gwyneth Paltrow Invests in Bitcoin Mining Operation Terawulf
Actress Gwyneth Paltrow Invests in Bitcoin Mining Operation Terawulf The American actress and businesswoman Gwyneth Paltrow has participated in an investment round involving the bi
CertiK migrates blockchain applications to Alibaba Cloud
Arijit Sarkar36 minutes agoCertiK migrates blockchain applications to Alibaba CloudCertiK"s migration to Alibaba Cloud aims to enhance blockchain development security and resource efficiency in Asia.192 Total views1 Tota