Posts

Showing posts with the label malicious

EtherHiding: Hackers create novel way to hide malicious code in blockchains

Image
Threat actors have worked out a way to hide malicious payloads in Binance smart contracts to lure victims into updating their browsers from fake prompts, according to cybersecurity researchers. Cybercriminals have discovered a new way to spread malware to unsuspecting users, this time, by manipulating BNB Smart Chain (BSC) smart contracts to hide malware and disseminate malicious code. A breakdown of the technique known as ‘EtherHiding’ — was shared by security researchers at Guardio Labs in an Oct. 15 report — explaining that the attack involves compromising WordPress websites by injecting code that retrieves partial payloads from the block chain contracts. The attackers hide the payloads in Binance smart contracts, essentially serving as anonymous free hosting platforms for them. Guardio Labs exposes "EtherHiding" - a new threat hiding in Binance's Smart Chain, a technique that evades detection, targeting compromised WordPress sites. Read about this game-changing met...

Attacker hijacks Tornado Cash governance via malicious proposal

Image
The total control over Tornado Cash governance allows the attacker to withdraw all of the locked votes, drain all of the tokens in the governance contract and brick the router. Adding to the existing roadblocks of the decentralized crypto mixer Tornado Cash, an attacker managed to gain full control of the governance through a malicious proposal.  On May 20 at 3:25 ET, an attacker successfully granted 1.2 million votes to a malicious proposal . Given that the proposal received more than 700,000 legitimate votes, the attacker gained total control over Tornado Cash governance . On 2023/05/20 at 07:25:11 UTC, Tornado Cash governance effectively ceased to exist. Through a malicious proposal , an attacker granted themselves 1,200,000 votes. As this is more than the ~700,000 legitimate votes, they now have full control.https://t.co/nY87XmrYgT pic.twitter.com/h9qjc3xRqz — @samczsun.com (@samczsun) May 20, 2023 The information was shared by @samczsun of research-driven technology investmen...