Meet The Malware That Uses Bitcoin’s Blockchain To Update Its Army of Bots

2020-6-25 19:00

An advanced malware is utilizing messages hidden within Bitcoin‘s blockchain transactions. These messages send signals to a botnet army ready to attack at command.

How exactly is this malware using Bitcoin’s blockchain and why?

Glupteba, The Malware-Installing Trojan From 2011 That Uses Blockchain To Command An Army

Glupteba, a backdoor Trojan designed to install malware on unsuspecting computers, has also been using Bitcoin in an unusual way.

It was initially distributed in 2011, as “a secondary payload by the Alureon Trojan in order to push clickjacking contextual advertising.” Later, in 2014, it was used as part of “Operation Windigo” – a highly sophisticated attack involving thousands of compromised Linux systems.

Once the malware is installed, the compromised computer is then added to a botnet army ready for an array of commands.

Related Reading | Crypto-Demanding Cybercriminals Ramp Up Ransomware Threat With Data Exposure 

Somewhere along the line, Glupteba was updated to take advantage of Bitcoin’s public and transparent distributed ledger.

Like other malware with connections to cryptocurrencies, Glupteba can be used for cryptojacking. Cryptojacking is the process of backdoor malware mining for Monero, Bitcoin, or anything else, without the user’s consent or knowledge.

However, this is just one of many ways it can be used for harm and isn’t the reason for utilizing Bitcoin’s blockchain.

Botnet Commands Sent Via Messages Hidden In Bitcoin Blockchain Transactions

After malware utilizes its botnet to carry out an attack, once successful, the botnet can be rerouted to perform other tasks. These are typically more attacks, albeit on different servers with a unique domain or IP coordinates.

Botnets of this kind have in the past used Twitter, Pastebin, Reddit, and other messaging services to relay their commands. Glupteba, however, is using Bitcoin.

Not all Bitcoin transactions need to have a monetary value. Messages can be stored in a Bitcoin transaction’s OP_RETURN field, at up to 80 characters.

Using this method, Glupteba is able to hide its messages in plain sight and distribute them widely across to its botnet army.

Related Reading | Checking Crypto Prices on Your Mac? Watch Out for Malware 

Hiding messages in plain sight is called steganography and dates back to the late 1400s. The advantage of steganography over cryptography is that messages hidden in plain sight don’t attract attention to themselves.

The term typically refers to computer data, however, it was also used by spies posting personals in local newspapers to deliver messages during the Cold War.

Also happening in plain sight, is another Cold War, between cybercriminals and security experts.

Cybercrime, especially in the cryptocurrency space, has seen explosive growth. Bitcoin ransoms are growing in number and hackers are becoming more brazen.

Cryptojacking may not be getting as much coverage in media due to it being yesterday’s news, but numbers cases continue to rise.

For now, Glupteba doesn’t appear to be targeting cryptocurrency users despite leveraging the Bitcoin blockchain in another way. But crypto investors will want to pay extra attention to cybersecurity to protect any funds they hold.

Similar to Notcoin - TapSwap on Solana Airdrops In 2024

origin »

High Performance Blockchain (HPB) на Currencies.ru

$ 0.0100291 (+7.61%)
Объем 24H $25.057k
Изменеия 24h: 5.20 %, 7d: 30.40 %
Cегодня L: $0.0090557 - H: $0.0100291
Капитализация $732.823k Rank 1812
Цена в час новости $ 0.1133 (-91.15%)

malware blockchain army bitcoin command messages glupteba

malware blockchain → Результатов: 67


Фото:

Nasty Glupteba malware uses Bitcoin blockchain to keep itself alive

Cybersecurity researchers have discovered a new strain of the nefarious Glupteba malware that uses the Bitcoin blockchain to ensure it remains dangerous. TrendMicro’s latest blog details the previously undocumented variant which is capable of invading systems to mine Monero cryptocurrency and steal sensitive browser data like passwords and cookies.

2019-9-4 17:09


Radware’s Cloud Workload Protection Service now includes ‘crypto-jacking’ detection

CryptoNinjas - Bitcoin, Cryptocurrency & Blockchain Asset SourceRadware, a leading provider of cybersecurity and application delivery solutions, today announced that its Cloud Workload Protection Service now identifies and mitigates coin-mining malware known as ‘crypto-jacking’ operations taking place in customers’ public cloud environments.

2019-7-16 14:31


Фото:

New York City College Struck by Ransomware, $1.9 Million in Bitcoin Demanded

Munroe College in Manhattan has been hit by a ransomware attack that has shut down the college’s computer systems. The hackers are demanding 170 bitcoin (BTC), which is roughly $1. 9 million. The malware infection came to light on the morning of July 10, but the specifications of the infection are still largely unknown, as reportedRead MoreRead More.

2019-7-15 13:00


Фото:

Crypto Wallet Manufacturer Ledger Detects Malware Targeting its Desktop Application

Ledger, a crypto wallet startup, tweeted Friday, April 25, 2019, that they have detected a malware that could possibly replace the Ledger Live desktop application with a malicious one. “Only” a Phishing Attack After detecting the malware that had affected their systems, Ledger was quick to warn its users through their tweet.

2019-4-29 21:00


Фото:

The Rise of Cryptojacking: Prevent it, Detect it and Recover from the Malware

As cryptocurrencies grew in acceptance as well as value and cryptocurrency mining became a lucrative business, cryptojacking has become the latest jackpot for cybercriminals. Thousands of websites globally that are operated by government agencies and the most recognized organizations are compromised by malicious con artists who harvest their victims’ CPU power for covert mining operations.

2019-3-16 12:00


Google Removes Fake Malware Blocker Targeting Blockchain.com, MyEtherWallet Crypto Users

Fake Malware Blocker Had Been Targeting Blockchain.com, MyEtherWallet Users Besides the many scams and hacks that crypto users have learned to be cautious of, there is also the problem of malware and cryptojacking, in which a user’s computer system is invaded by malicious software which uses it to mine cryptocurrency without their consent. As a […]

2019-3-15 21:38


Фото:

Study Finds 4 Percent of Monero Mined via. Malware over the Last 12 Years

Researchers at Universidad Carlos III de Madrid and King’s College London have found that from 2007 to 2018, around $57 Million of Monero was mined via. Malware, January 3, 2019. Background of the Study The joint study co-authored and compiled by two researchers was published January 3, 2019, and it states that four percent of the Monero mined over the.

2019-1-23 20:00


Фото:

Study Finds 4 Percent of Monero Mined with Malware over the Last 12 Years

Researchers at Universidad Carlos III de Madrid and King’s College London have found that from 2007 to 2018, around $57 Million of Monero was mined via. Malware, January 3, 2019. Background of the Study The joint study co-authored and compiled by two researchers was published January 3, 2019, and it states that four percent of the Monero mined over the.

2019-1-23 20:00


Фото:

Pirated Content and Software Drives Malicious Crypto Mining, Says New Report by Kaspersky Lab

Cryptocurrency mining malware attacks, which infected over five million people in the first three quarters of 2018 alone could be entering your systems via pirated software and content. Malicious cryptocurrency mining is the biggest threat to internet users in 2018, leaving behind ransomware which had been most prevalent over the last few years.

2018-11-30 15:59


Фото:

Figureheads Or Figments: Decentralizing Blockchain Leadership

At press time, over 930 cryptocurrency projects have been pronounced deceased, riddled with malware or hacks; parodies; or just outright scams. What was the failure point of these projects that are no longer with us? Was it a lack of leadership? Too much control? Poor governance? Speed of implementation? For that matter, what has made […] The post Figureheads Or Figments: Decentralizing Blockchain Leadership appeared first on Crypto Briefing.

2018-11-8 20:10


Bitcoin, Blockchain and Cryptocurrency News For Today November 7th [VIDEO] – Part 2

Hackers Attack Gate.io Exchange Infecting 700,000 StatCounter Sites with Bitcoin-Stealing Malware Hackers Attack Gate.io Exchange Infecting 700,000 StatCounter Sites With Bitcoin-Stealing Malware Overstock CEO Boldly Claims Bitcoin is the Solution After the Looming Financial System Collapse Overstock CEO Boldly Claims Bitcoin is the Solution After the Looming Financial System Collapse Respected Bitcoin Trader ‘Crypto Rand' […]

2018-11-8 08:13


Фото:

Mac Cryptocurrency Price Tracking App Installs Backdoors to Control Host Computer

A Trojan pretending to be a macOS cryptocurrency ticker called CoinTicker was discovered installing backdoors on the computers of unsuspecting users, Bleeping Computer reported on October 29, 2018. Mac Cryptocurrency Price Tracker Caught Installing Backdoors Dozens of cybersecurity publications sounded the alarm over another cryptocurrency malware that was discovered on October 29, after a Malwarebytes forum user reported a trojan.

2018-10-31 18:00