• bitcoinBitcoin (BTC) $ 104,392.00
  • ethereumEthereum (ETH) $ 3,478.98
  • tetherTether (USDT) $ 0.999768
  • xrpXRP (XRP) $ 2.24
  • bnbBNB (BNB) $ 941.11
  • solanaSolana (SOL) $ 156.22
  • usd-coinUSDC (USDC) $ 0.999805
  • staked-etherLido Staked Ether (STETH) $ 3,477.84
  • tronTRON (TRX) $ 0.278619
  • dogecoinDogecoin (DOGE) $ 0.161290
  • cardanoCardano (ADA) $ 0.531400
  • wrapped-stethWrapped stETH (WSTETH) $ 4,238.88
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.01
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 104,339.00
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 3,761.78
  • hyperliquidHyperliquid (HYPE) $ 37.74
  • chainlinkChainlink (LINK) $ 14.61
  • bitcoin-cashBitcoin Cash (BCH) $ 493.47
  • usdsUSDS (USDS) $ 0.999628
  • wrapped-eethWrapped eETH (WEETH) $ 3,755.74
  • ethena-usdeEthena USDe (USDE) $ 0.998439
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.998922
  • leo-tokenLEO Token (LEO) $ 9.51
  • stellarStellar (XLM) $ 0.268787
  • wethWETH (WETH) $ 3,477.72
  • zcashZcash (ZEC) $ 466.12
  • whitebitWhiteBIT Coin (WBT) $ 52.79
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 104,373.00
  • suiSui (SUI) $ 1.99
  • hedera-hashgraphHedera (HBAR) $ 0.170133
  • avalanche-2Avalanche (AVAX) $ 16.08
  • litecoinLitecoin (LTC) $ 85.75
  • moneroMonero (XMR) $ 344.87
  • shiba-inuShiba Inu (SHIB) $ 0.000009
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.20
  • the-open-networkToncoin (TON) $ 1.95
  • usdt0USDT0 (USDT0) $ 0.999221
  • daiDai (DAI) $ 0.999475
  • crypto-com-chainCronos (CRO) $ 0.122635
  • bittensorBittensor (TAO) $ 430.63
  • polkadotPolkadot (DOT) $ 2.52
  • memecoreMemeCore (M) $ 2.36
  • mantleMantle (MNT) $ 1.18
  • susdssUSDS (SUSDS) $ 1.07
  • uniswapUniswap (UNI) $ 5.04
  • usd1-wlfiUSD1 (USD1) $ 0.998715
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.108574
  • aaveAave (AAVE) $ 192.97
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • bitget-tokenBitget Token (BGB) $ 4.03
  • paypal-usdPayPal USD (PYUSD) $ 0.999752
  • okbOKB (OKB) $ 127.77
  • internet-computerInternet Computer (ICP) $ 4.96
  • nearNEAR Protocol (NEAR) $ 1.83
  • pepePepe (PEPE) $ 0.000006
  • ethenaEthena (ENA) $ 0.323245
  • ethereum-classicEthereum Classic (ETC) $ 14.56
  • jito-staked-solJito Staked SOL (JITOSOL) $ 193.91
  • falcon-financeFalcon USD (USDF) $ 0.992783
  • binance-peg-wethBinance-Peg WETH (WETH) $ 3,472.52
  • tether-goldTether Gold (XAUT) $ 3,980.40
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 5.01
  • aptosAptos (APT) $ 2.62
  • ondo-financeOndo (ONDO) $ 0.592298
  • pi-networkPi Network (PI) $ 0.224223
  • usdtbUSDtb (USDTB) $ 0.999726
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.164101
  • aster-2Aster (ASTER) $ 0.835653
  • htx-daoHTX DAO (HTX) $ 0.000002
  • dashDash (DASH) $ 130.82
  • worldcoin-wldWorldcoin (WLD) $ 0.701121
  • kucoin-sharesKuCoin (KCS) $ 12.12
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,993.22
  • official-trumpOfficial Trump (TRUMP) $ 7.29
  • hash-2Provenance Blockchain (HASH) $ 0.028600
  • binance-staked-solBinance Staked SOL (BNSOL) $ 168.35
  • arbitrumArbitrum (ARB) $ 0.254377
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.10
  • gatechain-tokenGate (GT) $ 11.70
  • algorandAlgorand (ALGO) $ 0.153570
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,671.15
  • pax-goldPAX Gold (PAXG) $ 3,986.09
  • bfusdBFUSD (BFUSD) $ 0.999525
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.13
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 37.81
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 3,656.26
  • pump-funPump.fun (PUMP) $ 0.003682
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 104,253.00
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 3,703.22
  • wbnbWrapped BNB (WBNB) $ 939.81
  • vechainVeChain (VET) $ 0.014211
  • story-2Story (IP) $ 3.74
  • skySky (SKY) $ 0.051724
  • cosmosCosmos Hub (ATOM) $ 2.48
  • kaspaKaspa (KAS) $ 0.043985
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999506
  • jupiter-exchange-solanaJupiter (JUP) $ 0.343283
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,694.29
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 104,174.00
  • flare-networksFlare (FLR) $ 0.013499
  • nexoNEXO (NEXO) $ 1.06
  • filecoinFilecoin (FIL) $ 1.45
  • ripple-usdRipple USD (RLUSD) $ 1.00
  • global-dollarGlobal Dollar (USDG) $ 0.999951
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.996962
  • render-tokenRender (RENDER) $ 1.91
  • sei-networkSei (SEI) $ 0.155063
  • xdce-crowd-saleXDC Network (XDC) $ 0.053314
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.014528
  • decredDecred (DCR) $ 53.54
  • bonkBonk (BONK) $ 0.000011
  • morphoMorpho (MORPHO) $ 1.69
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 1.34
  • fasttokenFasttoken (FTN) $ 2.01
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,744.78
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 104,423.00
  • immutable-xImmutable (IMX) $ 0.421518
  • hashnote-usycCircle USYC (USYC) $ 1.10
  • clbtcclBTC (CLBTC) $ 104,303.00
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 10.88
  • ousgOUSG (OUSG) $ 113.16
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 179.64
  • aerodrome-financeAerodrome Finance (AERO) $ 0.826419
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.15
  • cgeth-hashkey-cloudcgETH Hashkey Cloud (CGETH.HASH) $ 3,441.29
  • usdx-money-usdxStables Labs USDX (USDX) $ 0.998657
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.09
  • optimismOptimism (OP) $ 0.344886
  • celestiaCelestia (TIA) $ 0.778578
  • blockstackStacks (STX) $ 0.356837
  • lido-daoLido DAO (LDO) $ 0.717277
  • msolMarinade Staked SOL (MSOL) $ 208.27
  • injective-protocolInjective (INJ) $ 6.45
  • tbtctBTC (TBTC) $ 104,083.00
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 3,479.96
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 3,680.93
  • spx6900SPX6900 (SPX) $ 0.646271
  • beldexBeldex (BDX) $ 0.080407
  • curve-dao-tokenCurve DAO (CRV) $ 0.413142
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999804
  • the-graphThe Graph (GRT) $ 0.054649
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 3,480.40
  • usdaiUSDai (USDAI) $ 1.00
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999850
  • flokiFLOKI (FLOKI) $ 0.000058
  • tezosTezos (XTZ) $ 0.514411
  • usual-usdUsual USD (USD0) $ 0.997908
  • gtethGTETH (GTETH) $ 3,478.24
  • stader-ethxStader ETHx (ETHX) $ 3,732.72
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.203698
  • kaiaKaia (KAIA) $ 0.090030
  • doublezeroDoubleZero (2Z) $ 0.150944
  • pyth-networkPyth Network (PYTH) $ 0.090686
  • mantle-bridged-usdt-mantleMantle Bridged USDT (Mantle) (USDT) $ 0.994238
  • iotaIOTA (IOTA) $ 0.122120
  • true-usdTrueUSD (TUSD) $ 0.997774
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 104,600.00
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.11
  • cognifyCognify (SN115) $ 1,762.47
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,830.82
  • plasmaPlasma (XPL) $ 0.250029
  • trust-wallet-tokenTrust Wallet (TWT) $ 1.13
  • newton-projectAB (AB) $ 0.005496
  • starknetStarknet (STRK) $ 0.102198
  • swethSwell Ethereum (SWETH) $ 3,820.61
  • ether-fiEther.fi (ETHFI) $ 0.814875
  • sbtc-2sBTC (SBTC) $ 103,771.00
  • conflux-tokenConflux (CFX) $ 0.086297
  • pendlePendle (PENDLE) $ 2.61
  • humanityHumanity (H) $ 0.239572
  • sonic-3Sonic (S) $ 0.115595
  • bittorrentBitTorrent (BTT) $ 0.00000044
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 3,475.72
  • the-sandboxThe Sandbox (SAND) $ 0.175014
  • bitcoin-svBitcoin SV (BSV) $ 21.50
  • ghoGHO (GHO) $ 0.999094
  • syrupMaple Finance (SYRUP) $ 0.379381
  • ethereum-name-serviceEthereum Name Service (ENS) $ 12.80
  • usddUSDD (USDD) $ 0.999569
  • ark-3ARK (ARK) $ 39.12
  • dogwifcoindogwifhat (WIF) $ 0.413999
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.160992
  • wrapped-hypeWrapped HYPE (WHYPE) $ 37.64
  • sun-tokenSun Token (SUN) $ 0.021356
  • theta-tokenTheta Network (THETA) $ 0.406668
  • jasmycoinJasmyCoin (JASMY) $ 0.008376
  • usdbUSDB (USDB) $ 0.987683
  • satoshi-stablecoinSatoshi Stablecoin (SATUSD) $ 0.999048
  • galaGALA (GALA) $ 0.008559
  • apenftAINFT (NFT) $ 0.00000040
  • arbitrum-bridged-wrapped-eethArbitrum Bridged Wrapped eETH (Arbitrum) (WEETH) $ 3,750.45
  • heliumHelium (HNT) $ 2.10
  • zksyncZKsync (ZK) $ 0.053494
  • decentralandDecentraland (MANA) $ 0.201323
  • vaultaVaulta (A) $ 0.241086
  • flowFlow (FLOW) $ 0.236639
  • polygon-pos-bridged-weth-polygon-posPolygon PoS Bridged WETH (Polygon POS) (WETH) $ 3,482.52
  • zencashHorizen (ZEN) $ 21.23
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.20
  • dexeDeXe (DEXE) $ 6.56

Cryptojacking Resurfaces As Monero Miner Malware Hits 3,500+ Sites: Report

0 41

Cryptojacking Resurfaces As Monero Miner Malware Hits 3,500+ Sites: Report

Hackers have infected more than 3,500 websites with stealthy cryptomining scripts that quietly hijack visitors’ browsers to generate Monero, a privacy-focused crypto designed to make transactions more difficult to trace.

The malware doesn’t steal passwords or lock files. Instead, it quietly turns visitors’ browsers into Monero mining engines, siphoning small amounts of processing power without user consent.

The campaign, still active as of this writing, was first uncovered by researchers at cybersecurity firm c/side.

“By throttling CPU usage and hiding traffic in WebSocket streams, it avoided the telltale signs of traditional crypto jacking,” c/side disclosed Friday.

Crypto jacking, sometimes spelled as one word, is the unauthorized use of someone’s device to mine crypto, typically without the owner’s knowledge.

The tactic first gained mainstream attention in late 2017 with the rise of Coinhive, a now-defunct service that briefly dominated the cryptojacking scene before being shut down in 2019.

In the same year, reports on its prevalence have become conflicting, with some telling Decrypt it hasn’t returned to “previous levels” even as some threat research labs confirmed a 29% rise at the time.

‘Stay low, mine slow’

Over half a decade later, the tactic appears to be staging a quiet comeback: reconfiguring itself from noisy, CPU-choking scripts into low-profile miners built for stealth and persistence.

Rather than burning out devices, today’s campaigns spread quietly across thousands of sites, following a new playbook that, as c/side puts it, aims to “stay low, mine slow.”

That shift in strategy is no accident, according to an information security researcher familiar with the campaign who spoke to Decrypt on condition of anonymity.

The group appears to be reusing old infrastructure to prioritize long-term access and passive income, Decrypt was told.

“These groups most likely already control thousands of hacked WordPress sites and e-commerce stores from past Magecart campaigns,” the researcher told Decrypt.

Magecart campaigns are attacks where hackers inject malicious code into online checkout pages to steal payment information.

“Planting the miner was trivial, they simply added one more script to load the obfuscated JS, repurposing existing access,” the researcher said.

But what stands out, the researcher said, is how quietly the campaign operates, making it hard to detect with older methods.

“One way past cryptojacking scripts were detected was by their high CPU usage,” Decrypt was told. “This new wave avoids that by using throttled WebAssembly miners that stay under the radar, capping CPU usage and communicating over WebSockets.”

WebAssembly enables code to run faster inside a browser, while WebSockets maintain a constant connection to a server. Combined, these enable a crypto miner to work without drawing attention.

The risk isn’t “directly targeting crypto users, since the script doesn’t drain wallets, although technically, they could add a wallet drainer to the payload,” the anonymous researcher told Decrypt. “The real target is server and web app owners,” they added.

Source

Leave A Reply

Your email address will not be published.