Fun

News Feed - 2023-10-20 03:10:58

Martin Young2 hours agoEtherHiding: Why hackers may prefer Binance’s BNB Smart ChainAccording to cybersecurity analysts at 0xScope and CertiK, threat actors may prefer using BNB Smart Chain contracts because it’s cheaper and seen as having lower security than Ethereum.1147 Total views9 Total sharesListen to article 0:00Follow upJoin us on social networksDespite the name “EtherHiding,” the new attack vector that hides malicious code in blockchain smart contracts doesn’t have much to do with Ethereum at all, cybersecurity analysts have revealed.


As reported by Cointelegraph on Oct. 16, EtherHiding has been discovered as a new way for bad actors to hide malicious payloads inside smart contracts, with the ultimate goal of distributing malware to unsuspecting victims.


These cybercriminals tend to prefer using Binance’s BNB Smart Chain, it is understood.


Speaking to Cointelegraph, a security researcher from blockchain security firm CertiK, Joe Green, said most of this is due to BNB Smart Chain’s lower costs:“The handling fee of BSC is much cheaper than that of ETH, but the network stability and speed are the same because each update of JavaScript Payload is very cheap, meaning there’s no financial pressure.”


EtherHiding attacks are initiated by hackers compromising WordPress websites and injecting code that pulls partial payloads buried in Binance smart contracts. The website’s front end is replaced by a fake update browser prompt, which, when clicked, pulls the JavaScript payload from the Binance blockchain.


The actors frequently change the malware payloads and update website domains to evade detection. This allows them to continuously serve users fresh malware downloads disguised as browser updates, Green explained.Screenshot of malware updates being deployed in BSC smart contract. Source: Certik 


Another reason, according to security researchers at Web3 analytics firm 0xScope, could be because of increased security-related scrutiny on Ethereum.“While we are unlikely to know the EtherHiding hacker’s true motives for using BNB Smart Chain over other blockchains for their scheme, one possible factor is the increased security-related scrutiny on Ethereum.”


Hackers may face higher risks of discovery by injecting their malicious code using Ethereum due to systems such as Infura’s IP address tracking for MetaMask transactions, they said.


Related:Crypto investors under attack by new malware, reveals Cisco Talos


The 0xScope team told Cointelegraph they recently tracked the money flow between hacker addresses on BNB Smart Chain and Ethereum.


Key addresses were linked to NFT marketplace OpenSea users and Copper custody services, it reported.


Payloads were updated daily across 18 identified hacker domains. This sophistication makes EtherHiding hard to detect and stop, the firm concluded.


Magazine: Should crypto projects ever negotiate with hackers? Probably# Blockchain# Smart Contracts# Ethereum# Malware# Hackers# BSCAdd reactionAdd reactionRead moreHow to build a DApp on EthereumWhy the 2024 Bitcoin halving may play out differently than in the pastExclusive: Hackers selling discounted tokens linked to CoinEx, Stake hacks

News Feed

European Central Bank releases first CBDC progress update
Vince Quill5 hours agoEuropean Central Bank releases first CBDC progress updateThe ECB promised pseudonymization and independent audits of the CBDC system to calm consumer fears of tracking.730 Total views1 Total sharesL
Bitcoin, Ethereum Technical Analysis: BTC Nears $25,000, Whilst ETH Hits $1,700
Bitcoin, Ethereum Technical Analysis: BTC Nears $25,000, Whilst ETH Hits $1,700 Bitcoin moved significantly higher on Feb. 16, as the world’s largest cryptocurrency hit its
Casper Network halts operations following security breach
Amaka Nwaokocha13 hours agoCasper Network halts operations following security breachThis incident serves as a reminder of the ever-present need for vigilance and proactive measures in the rapidly evolving world of blockc
Biggest Friend.tech whale dumps tokens as users struggle to claim airdrop
Zoltan Vardai13 hours agoBiggest Friend.tech whale dumps tokens as users struggle to claim airdropThe largest Friend.tech whale has sold all their holdings, causing the new token to fall over 50% in value while other use
Bitcoin, Ethereum Technical Analysis: BTC Fails to Breakout of $40,000 Resistance Level
Bitcoin, Ethereum Technical Analysis: BTC Fails to Breakout of $40,000 Resistance Level On the eve of tomorrow’s FOMC meeting, bitcoin once again failed to climb past its lo
ParaSwap begins returning crypto after critical smart contract bug
Martin Young5 hours agoParaSwap begins returning crypto after critical smart contract bugParaSwap has now returned assets to wallets that have revoked their permissions to the AugustusV6 smart contract, which was found t
Crypto Analyst Predicts Major Price Crash For Shiba Inu, But It’s Not All Bad News
Este artículo también está disponible en español. Crypto analyst MadWhale has predicted that the Shiba Inu price could suffer a significant crash soon enough. Based on th
Bitcoin holders falling by 670K is a good sign for rebound: Santiment
Martin Young3 hours agoBitcoin holders falling by 670K is a good sign for rebound: SantimentThe trend could suggest investors aren’t confident enough to come back into the market yet, which only increases the chances f
CBOE gives official launch date for spot Ethereum ETF
Vince Quill2 hours agoCBOE gives official launch date for spot Ethereum ETFThe Chicago Board Options Exchange has confirmed that five spot Ethereum ETF products will begin trading on July 23.2263 Total views3 Total share
Georgia Goes After Crypto Miners Using Subsidized Electricity in Historic Town
Georgia Goes After Crypto Miners Using Subsidized Electricity in Historic Town A record high consumption of electricity blamed on illegal crypto farms in northwestern Georgia has c
Coinbase sees infinite interoperability potential with Ethereum and USDC
Derek Andersen2 hours agoCoinbase sees infinite interoperability potential with Ethereum and USDCCoinbase head of tokenization Anthony Bassili described plans for its Base network at TokenizeThis 2024 in Miami.650 Total
Facebook Was Wooing Regulators Before Controversial Libra Reveal
Facebook sat down with the United Kingdom"s finance ministry, the central bank, and other regulatory officials in what was presumably a pre-emptive move to win favor before announcing its own self-titled cryptocurrency,