A DPRK-attributed malware campaign has added Ethereum transactions to its command-and-control (C2) system. The XCTDH campaign already used TRON and Aptos to locate malware payloads stored on BNB Smart Chain (BSC). Its newer “HashHiding” channel uses ordinary Ethereum transfers to tell infected machines where to find the current C2 server.... Weiterlesen
Intelligence View
⚡ tsecurity.de Intelligence
XCTDH Campaign Uses HashHiding and Blockchain Transactions to Hide Malware C2 Infrastructure
A DPRK-attributed malware campaign has added Ethereum transactions to its command-and-control (C2) system. The XCTDH campaign already used TRON and Aptos to locate malware payloads stored on BNB Smart Chain (BSC). Its newer “HashHiding” cha…
Reagiere als Erste:r — dein Feedback zählt!
2. Cyber Threat Intelligence & Forensik
CTI Threat Relationship Graph3 Knoten / 2 Relationen
MITRE ATT&CK Matrix Navigator 14 Taktiken
1 belegte TechnikenLive-Mapping
Reconnaissance
–
Resource Development
–
Initial Access
–
Execution
–
Persistence
–
Privilege Escalation
–
Defense Evasion
–
Credential Access
–
Discovery
–
Lateral Movement
–
Collection
–
Command and Control
Exfiltration
–
Impact
–