Bitcoin
Bitcoin (BTC)
$103,025.00 5.97986
Bitcoin price
Ethereum
Ethereum (ETH)
$2,187.41 20.35615
Ethereum price
BNB
BNB (BNB)
$624.21 3.6793
BNB price
Solana
Solana (SOL)
$161.34 9.1782
Solana price
XRP
XRP (XRP)
$2.30 7.67858
XRP price
Shiba Inu
Shiba Inu (SHIB)
$0.0000142 11.10939
Shiba Inu price
Pepe
Pepe (PEPE)
$0.0000109 32.45172
Pepe price
Bonk
Bonk (BONK)
$0.0000196 15.60559
Bonk price
dogwifhat
dogwifhat (WIF)
$0.674865 17.28371
dogwifhat price
Popcat
Popcat (POPCAT)
$0.465653 3.38383
Popcat price
Bitcoin
Bitcoin (BTC)
$103,025.00 5.97986
Bitcoin price
Ethereum
Ethereum (ETH)
$2,187.41 20.35615
Ethereum price
BNB
BNB (BNB)
$624.21 3.6793
BNB price
Solana
Solana (SOL)
$161.34 9.1782
Solana price
XRP
XRP (XRP)
$2.30 7.67858
XRP price
Shiba Inu
Shiba Inu (SHIB)
$0.0000142 11.10939
Shiba Inu price
Pepe
Pepe (PEPE)
$0.0000109 32.45172
Pepe price
Bonk
Bonk (BONK)
$0.0000196 15.60559
Bonk price
dogwifhat
dogwifhat (WIF)
$0.674865 17.28371
dogwifhat price
Popcat
Popcat (POPCAT)
$0.465653 3.38383
Popcat price
Bitcoin
Bitcoin (BTC)
$103,025.00 5.97986
Bitcoin price
Ethereum
Ethereum (ETH)
$2,187.41 20.35615
Ethereum price
BNB
BNB (BNB)
$624.21 3.6793
BNB price
Solana
Solana (SOL)
$161.34 9.1782
Solana price
XRP
XRP (XRP)
$2.30 7.67858
XRP price
Shiba Inu
Shiba Inu (SHIB)
$0.0000142 11.10939
Shiba Inu price
Pepe
Pepe (PEPE)
$0.0000109 32.45172
Pepe price
Bonk
Bonk (BONK)
$0.0000196 15.60559
Bonk price
dogwifhat
dogwifhat (WIF)
$0.674865 17.28371
dogwifhat price
Popcat
Popcat (POPCAT)
$0.465653 3.38383
Popcat price
Bitcoin
Bitcoin (BTC)
$103,025.00 5.97986
Bitcoin price
Ethereum
Ethereum (ETH)
$2,187.41 20.35615
Ethereum price
BNB
BNB (BNB)
$624.21 3.6793
BNB price
Solana
Solana (SOL)
$161.34 9.1782
Solana price
XRP
XRP (XRP)
$2.30 7.67858
XRP price
Shiba Inu
Shiba Inu (SHIB)
$0.0000142 11.10939
Shiba Inu price
Pepe
Pepe (PEPE)
$0.0000109 32.45172
Pepe price
Bonk
Bonk (BONK)
$0.0000196 15.60559
Bonk price
dogwifhat
dogwifhat (WIF)
$0.674865 17.28371
dogwifhat price
Popcat
Popcat (POPCAT)
$0.465653 3.38383
Popcat price

Cryptojacking Strikes Again! Hackers Target Government Websites to Mine Monero

This article is more than 4 years old
News
Cryptojacking Strikes Again! Hackers Target Government Websites to Mine Monero

Cryptojacking, the novel hacking process which inflicts a victim’s computer with code to mine cryptocurrency, is evidently on the rise as hackers have targeted hundreds of popular websites with fraudulent software to mine the fungible digital coin monero (XMR).

“Cryptojacking” A Sophisticated Crime

In 2018 alone, thousands of users have fallen victim to malicious cryptojacking code. Surprisingly, it is not from accessing a “shady” website that causes users to be “cryptojacked,” as hackers are using sophisticated methods, such as masking and mimicking popular websites to trap undoubting users.

The latest incident was unearthed by Bad Packets Report’s researcher Troy Mursch, who unveiled on May 5, 2018, that more than 300 websites have been targets of cryptojacking.

Once again, the infamous browser mining software Coinhive was compromised and used by hackers to mine the cryptocurrency monero, by exploiting an “outdated and vulnerable version” of a Drupal content management software.

According to the post, Mursch was notified about the “crypto-hacked” websites of the government of Chihuahua, Mexico, and San Diego Zoo, after which the cyber-security sprung into action.

During his investigation, Mursch observed a similar code in the JavaScript libraries of the affected websites. The code, contained in “/misc/jquery.once.js?v=1.2,” revealed the attacker’s Coinhive domain, where Mursch discovered a changed version of the popular mining software.

Cryptojacking Strikes Again! Hackers Target Government Websites to Mine Monero - 1

(Source: Bad Packets)

Later on, by reverse checking the suspected domain address on IP-checker site WhoIs, Mursch was able to find out the associated email address of the hackers, which was then used to check the world wide web using all common denominators as search parameters.

Affected sites include the City of Marion, Ohio, the University of Aleppo, and the National Labor Relations Board, Mexico. The full list of affected sites can be accessed on this spreadsheet.

Attacks Possible Due to Coinhive’s JS Usage

Mursch believes that the root cause of Coinhive being the center of a majority of cryptojacking attacks is due to its use of a JavaScript-based program, that is easy to inflict.

Speaking to CoinDesk, Mursch said:

“This is because Coinhive and other cryptojacking services (malware) are simply done with JavaScript. Every modern browser and device can run JavaScript, so as such, everybody can mine cryptocurrency and unfortunately Coinhive has been used and abused time and time again. [In] this particular case, Drupal users need to update [as soon as possible].”

An increasingly common cyber-nuisance, hackers have employed a number of ways to extract money. Amongst them are, as previously reported by BTCManager, holding sensitive data to a cryptocurrency-only ransom, and latching on YouTube Ads to inflict computers.