Cryptocurrency Mining Is Used By Cybercriminals To Make A Quick Profit

Share It On:

The rapid popularity of Bitcoin and the emergence of about 1500 other digital coins or tokens have drawn more hackers into the red-hot cryptocurrency space expanding opportunities for crime and fraud. Criminals have been injecting websites with scripts to mine the Moreno Cryptocurrency. Nearly 50k sites have inserted. Cybercriminals always follow the money and right now they see the unregulated and unsecured currencies to target people and businesses to earn money very quickly and easily. About 5,541 WordPress websites infected with malware as part of crypto jacking campaigns only. Nearly 50000 sites were found to host any cryptocurrency mining malware.

Digital Currencies has proliferated into a more asset class in the world over the last two years. With weekly launches of alternative coins which called altcoins, cybercriminals have developed several ways to defraud cryptocurrency holders due to which crypto jacking, account takeovers, scams against first coins offerings have all increased. Cryptocurrency mining has become one of the lucrative industry.  As in the case of Monero, it is more easily capable of being mined on CPUs (Central Processing Unit) rather than GPUs (Graphical Processing Unit). Website owners have taken JavaScript-based mining scripts to generate revenue. Cryptocurrency miners are frequently configured to max out the CPU capacity of a given device. So, performing cryptocurrency mining via scripts embedded on web pages is very much parasitical regardless of the intent of website owner.

In the case of embedding JavaScript miners in a website, it has attracted the interest of criminals. Criminals have begun exploiting cross-site scripting and other vulnerabilities to inject mining scripts into the sites to wrongly generate funds. These types of attacks have constantly been rising. According to Mursch’s investigation, 48953 websites were found to have coin mining scripts, 39,925(81.6%) used Coin hive.  These websites share a total of six unique Coinhive sites suggesting their inclusion on websites is not an active decision by website owners rather they were added into a website by some legitimate means likely through vulnerabilities in WordPress itself or through a plugin.

Crypto jacking is becoming more popular among criminals as proactive protections to safeguard against the attacks. Crypto jacking blocked default in Opera. Miner Block extension has been recommended by Troy Mursch (the author of the Bad Packets Report) in Chrome and Firefox. Web-based mining attacks are only one component of criminals mining the Monero Cryptocurrency in malware attacks. Despite this attack targeting Android devices, Microsoft Word Devices and Telegram were also recently discovered recently. Cyber Criminals have also recycled the EternalBlue vulnerability developed by NSA which used for creating the mining botnet “Smominru”.


Share It On:

Recent Posts

Kumari Bank Promoter Share Sale: Eligibility, Application Process, and Price

Kumari Bank Promoter Share Sale: Eligibility, Application Process, and Price

Share It On:21st November, Kathmandu Kumari Bank Limited has officially declared its intention to sell a substantial number of promoter

Up to NPR 150 Cashback on Nepal Telecom and Ncell Services with Namaste Pay

Up to NPR 150 Cashback on Nepal Telecom and Ncell

Share It On:21st November, Kathmandu Namaste Pay has unveiled an exciting new campaign to reward its users with cashback on

Ncell introduces innovative feature, enabling customers to convert voice to data or data to voice services

Ncell introduces innovative feature, enabling customers to convert voice to

Share It On:21st November, Kathmandu Ncell customers can enjoy an innovative feature that allows them to convert or exchange remaining

Genese Solution’s G-TEC: Empowering Women in Tech and Creating a Diverse Tech Workforce in Nepal

Genese Solution’s G-TEC: Empowering Women in Tech and Creating a

Share It On:21st November 2024, Kathmandu Genese Solution – a value IT consulting company, and Kageshwori Manohara municipality, have joined

Shikhar Insurance: Celebrating 20 Years of Service and Commitment to Nepali Customers

Shikhar Insurance: Celebrating 20 Years of Service and Commitment to

Share It On:21st November 2024, Kathmandu Shikhar Insurance had a grand celebration for their 20th Anniversary. On the occasion of

India’s Generative AI Startups: A Comprehensive Look at 2024’s Key Trends and Investments

India’s Generative AI Startups: A Comprehensive Look at 2024’s Key

Share It On:21st November 2024, Kathmandu As 2024 draws to a close, India’s generative AI ecosystem stands out as a