Cointime

Download App
iOS & Android

Cryptocurrency Cybersecurity Threat: EtherHiding Takes Aim at Blockchain Contracts

Guardio Labs, a cybersecurity firm, has identified a new threat called "EtherHiding" that targets WordPress websites. The attack involves embedding malicious code into blockchain contracts to siphon off partial payments. The attackers can modify their code and attack methods, making it difficult for traditional defense mechanisms to keep up.

WordPress sites are particularly vulnerable as they power an estimated 43% of all websites. The attackers use counterfeit browser updates to deliver malware, which can compromise sensitive data. It is essential for website administrators and blockchain users to implement robust security measures to protect their digital assets.

Comments

All Comments

Recommended for you

  • Cyvers: Mask Network founder suspected of being stolen, losing nearly $4 million

    Cyvers Alerts officials stated that suspicious transactions related to Suji Yan, the founder of the decentralized social protocol Mask Network, were monitored. A suspicious address received nearly $4 million in digital assets, the stolen assets were immediately exchanged for ETH, and transferred to six different addresses.
  • Bybit hackers have laundered 71,000 ETH in the past 24 hours, and have laundered a total of 206,000 ETH

    According to on-chain analyst Yu Jin's monitoring, in the past 24 hours, the Bybit hacker continued to wash away 71,000 ETH (170 million US dollars). From the afternoon of the 22nd until now, 4 and a half days, 499,000 ETH stolen has been washed away 206,000 ETH. An average of 45,000 ETH per day. Now there are still 292,000 ETH (685 million US dollars) left in the hacker's address.
  • Ministry of Public Security: Telecom fraud groups are using blockchain, virtual currency and AI technology to upgrade their criminal methods

     Beijing Business Daily reported that at a press conference held by the Ministry of Public Security on January 10, it was announced that as of the end of 2024, more than 53,000 Chinese criminal suspects involved in telecommunications fraud in Myanmar's northern region have been arrested, and the "Four Major Families" criminal groups in Myanmar's northern region have been successfully destroyed. The Ministry of Public Security pointed out that although the crackdown has achieved significant results, the crime situation is still severe. Fraudulent groups are constantly upgrading their criminal tools using new technologies such as blockchain, virtual currency, and AI intelligence. These groups are well-organized and engage in illegal activities such as cross-border cooperation in app development, traffic diversion and promotion, and money laundering. Fraudsters tailor their scripts to target victims of different ages, professions, and educational backgrounds, and the victims are widespread. Although the telecommunications fraud park near the Chinese border in Myanmar's northern region has been cleared, there are still many fraudulent dens operating overseas under the guise of "technology parks" and "development zones".
  • Hong Kong police cracked down on a scam group that used deepfake technology to trick others into investing in virtual currency, involving about 34 million yuan

    Hong Kong police recently busted a virtual currency fraud group that used deepfake technology to lure others into investing through social media platforms, involving about 34 million yuan. Hong Kong police's commercial crime department arrested 31 people between the ages of 20 and 34 last week in two office buildings in Kowloon Bay, some of whom claimed to be students or unemployed, involved in the same fraud group, and seized their pre-set "scripts".
  • Solv Protocol's official X account was stolen and published false information, please beware of the risks

    according to SlowMist's monitoring, the official X account of Solv Protocol has been hacked and false information has been released. Please stay vigilant and beware of risks.
  • Scam Sniffer: Superchain Eco official X account was stolen and released phishing links, please be aware of the risks

    according to Scam Sniffer, the X account of Superchain Eco (@SuperchainEco) has been hacked and a phishing link has been released. Users should be vigilant of the risks.
  • SlowMist Chief Information Security Officer: In the past two months, North Korean hacker groups have continued to impersonate Hack VC and others to conduct conference fraud

    23pds, the chief information security officer of SlowMist, tweeted that North Korean hacker groups have been continuously impersonating organizations or individuals such as Hack VC and SevenX Ventures for conference fraud in the past two months. Please be aware of the risks.
  • Crypto hackers are using fake job postings to trick victims into downloading malware to steal crypto assets

    security researcher Taylor Monahan (also known as Tay) revealed that crypto hackers have found a clever new way to trick victims into downloading malicious software that allows hackers to access their computers and empty their wallets, or cause other major losses. He said that hackers first impersonate a recruiting officer from a well-known encryption company, offering targets salaries ranging from $200,000 to $350,000. However, this method is not about enticing targets to open a PDF containing malicious software, or to download video calling software disguised as malicious software, but to instruct victims to fix microphone and video access issues, "If you follow their instructions, you're screwed."
  • MarbleX and Netmarble Launch $20 Million Ecosystem Promotion Plan

    Ethereum game platform Immutable has announced a partnership with the blockchain game division Marblex of South Korean gaming giant Netmarble. The collaboration will migrate Marblex's ecosystem and its multiple games from the Klaytn blockchain to the Ethereum Layer 2 network Immutable zkEVM. The games include "Ni no Kuni: Cross Worlds", "A3: Still Alive" and "Meta World: My City", and the two parties will also launch an "ecosystem promotion plan" to provide up to $20 million in support to developers to attract new games to join Marblex and Immutable. It is currently unclear whether the Immutable migration will affect Saga's plans, and the project representatives have not commented on the issue.
  • Blockchain Asset Management announces launch of a dedicated blockchain fund for accredited investors

    Blockchain Asset Management, a cryptocurrency fund with a scale of $100 million, announced the launch of an exclusive blockchain fund for qualified investors. The specific amount of funds raised by the fund has not been disclosed yet, but it is said to have reached "eight figures", which means it is in the tens of millions of dollars. In addition, the investment threshold for the new fund is $100,000, and all investors are required to meet the approved standards (annual income exceeding $200,000, net assets exceeding $1 million).