Wednesday, June 25, 2025
cryptonews100
No Result
View All Result
CryptoNews100
No Result
View All Result
Home Cryptocurrency

Disrupting the operations of cryptocurrency mining botnets

cryptonews100_tggfrn by cryptonews100_tggfrn
June 25, 2025
in Cryptocurrency
0
Disrupting the operations of cryptocurrency mining botnets
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter
Sign up an get up to $1000 USDT!

Related articles

Common Cents: Learn more about Cryptocurrency!

Common Cents: Learn more about Cryptocurrency!

June 25, 2025
Cryptocurrency earns “mainstream” status as adoption accelerates

Cryptocurrency earns “mainstream” status as adoption accelerates

June 25, 2025


Disrupting the operations of cryptocurrency mining botnets

Pierluigi Paganini
June 25, 2025

Cybersecurity researchers devised two assault methods to disrupt the operations of cryptocurrency mining botnets.

Akamai Researchers uncovered two novel methods to disrupt cryptocurrency mining botnets by exploiting flaws in widespread mining topologies.

Present strategies to cease cryptocurrecy mining botnets are pool bans or infrastructure takedowns, nevertheless, each are sluggish and sophisticated. Researchers developed two quicker methods exploiting vulnerabilities in the stratum protocol to disrupt operations by focusing on proxies or wallets, probably forcing attackers to desert campaigns.

“We developed two methods by leveraging the mining topologies and pool insurance policies that allow us to cut back a cryptominer botnet’s effectiveness to the level of fully shutting it down, which forces the attacker to make radical modifications to their infrastructure and even abandon the total marketing campaign.” reads the report revealed by Akamai.

Researchers developed XMRogue, a device to disrupt cryptomining botnets utilizing mining proxies. XMRogue permits researchers to impersonate a miner, hook up with a mining proxy, submit consecutive unhealthy shares (invalid mining job outcomes), and probably ban the mining proxy from the pool.

“When mining utilizing a proxy, all the victims are related to a single server, which implies that interfering with the proxy can carry the total mining operation down.” continues the report. “The concept is straightforward: By connecting to a malicious proxy as a miner, we will submit invalid mining job outcomes — unhealthy shares — that may bypass the proxy validation and can be submitted to the pool. Consecutive unhealthy shares will ultimately get the proxy banned, successfully halting mining operations for the total cryptomining botnet.”

By sending crafted invalid shares (unhealthy hashes) by means of Stratum to malicious proxies, they set off pool-level bans, halting the attacker’s operation. XMRogue bypasses proxy validations by accurately formatting share fields.

cryptocurrency mining botnets

In exams performed by Akamai, it lowered one marketing campaign’s annual income from $50K to $12K, a 76% drop, by banning proxies, probably forcing attackers to desert the marketing campaign.

Akamai’s second methodology targets miners related on to public swimming pools with out proxies. By flooding the pool with over 1,000 login makes an attempt utilizing the attacker’s pockets, the pockets will get briefly banned for an hour. Although not everlasting, this disruption can considerably hinder the assault. The researchers demonstrated the approach focusing on Monero miners, nevertheless, it’s adaptable to different cryptocurrencies.

“Once we inspected the mining pool’s source code, an alternative choice got here to thoughts — focusing on the pockets tackle. Whereas the earlier unhealthy shares coverage focused miner IP addresses, we recognized an extra coverage that’s enforced on the pockets degree — the pool will ban the pockets’s tackle for one hour if it has more than 1,000 workers.” continues the report. “When utilizing proxy mining, an attacker can embed their pockets tackle completely on the proxy server, enabling them to successfully masquerade it. However in conditions the place direct mining is carried out, the pockets tackle have to be current on the sufferer machine, which permits us to extract it. Getting the attacker banned on this case is easy — we simply ship greater than 1,000 login requests utilizing the attacker’s pockets concurrently, which can drive the pool to ban the attacker’s pockets.”

The researchers applied this second assault approach in the XMRogue device

The methods above reveal how defenders can disrupt malicious cryptominer campaigns by exploiting mining pool insurance policies, with out affecting reliable miners. Whereas a reliable person can rapidly get better by altering their IP or pockets, attackers face a a lot greater problem. Shutting down a malicious marketing campaign would require modifications throughout the total botnet, making this protection particularly efficient towards much less subtle operations.

“We consider that the menace of cryptominers will proceed to develop over time. However now we will struggle again and disrupt the attacker’s operation, making it rather more difficult to monetize cryptominers successfully” concludes the report.

Observe me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, cryptocurrency mining botnets)







Source link

Tags: disruptingminingbotnetsofcryptocurrencyoperations
Share76Tweet47
Drive and walk to earn crypto!

Related Posts

Common Cents: Learn more about Cryptocurrency!

Common Cents: Learn more about Cryptocurrency!

by cryptonews100_tggfrn
June 25, 2025
0

What's cryptocurrency and what do it's good to know about it? We discover out in in the present day's Common...

Cryptocurrency earns “mainstream” status as adoption accelerates

Cryptocurrency earns “mainstream” status as adoption accelerates

by cryptonews100_tggfrn
June 25, 2025
0

Home > Investment > Cryptocurrency earns “mainstream” status as adoption acceleratesRoughly 12 per cent of Australians now personal cryptocurrency based...

DOL Abandons ESG Rule in Investment Duties Regulation; Rescinds Cryptocurrency Guidance | Goodwin

DOL Abandons ESG Rule in Investment Duties Regulation; Rescinds Cryptocurrency Guidance | Goodwin

by cryptonews100_tggfrn
June 25, 2025
0

On Might 28, 2025, the U.S. Division of Labor (DOL) took two main steps that sign a shift in its...

Local authorities freeze stolen cryptocurrency in money laundering investigation

Local authorities freeze stolen cryptocurrency in money laundering investigation

by cryptonews100_tggfrn
June 24, 2025
0

The Anti-Money Laundering Authority has taken a big step in a posh investigation involving stolen cryptocurrency, marking the primary time...

XRP surges on Israel-Iran ceasefire news. These drivers will fuel cryptocurrency prices this week – DL News

XRP surges on Israel-Iran ceasefire news. These drivers will fuel cryptocurrency prices this week – DL News

by cryptonews100_tggfrn
June 24, 2025
0

XRP leads high cryptocurrencies’ restoration.Oil slid on information of an Israel-Iran ceasefire.Digital property wobbled as Iranian missiles examined the truce.XRP’s...

Load More

Crypto Fear & Greed Index

Latest Crypto Fear & Greed Index

Recent News

Common Cents: Learn more about Cryptocurrency!

Common Cents: Learn more about Cryptocurrency!

June 25, 2025
Ethereum (ETH) Consolidates Near $2400 As Bullish Pattern Signals 75% Rally

Ethereum (ETH) Consolidates Near $2400 As Bullish Pattern Signals 75% Rally

June 25, 2025
Bitcoin Inflows Drop as Data Hints At Rally To $120K

Bitcoin Inflows Drop as Data Hints At Rally To $120K

June 25, 2025

Categories

  • Bitcoin
  • Cardano
  • Chainlink
  • Cryptocurrency
  • Dogecoin
  • Elon Musk
  • Ethereum
  • Exchanges
  • Litecoin
  • Pokadot
  • Polygon
  • Real World Assets
  • Shiba Inu
  • Solana
  • sui
  • World Liberty Financial
  • XRP

Download the official CryptoNews100 Android App! Click the button below:

Tags

ADA (92) Bitcoin (310) BlockDAG (52) BTC (97) bullish (47) Buy (119) Cardano (145) ChainLink (110) coin (58) crypto (406) Cryptocurrency (121) Detail (59) DOGE (70) Dogecoin (126) ETF (70) ETH (90) Ethereum (183) flash (60) hits (49) Inu (100) launches (53) Link (50) market (97) million (47) News (184) Polkadot (73) POLYGON (63) prediction (68) Presale (50) price (273) rally (54) RWA (57) SHIB (56) Shiba (107) SOL (76) Solana (177) Sui (111) Surge (54) today (44) token (46) top (102) trading (49) TradingView (58) Trump (95) XRP (238)

© 2023 Crypto News100 All Rights Reserved.
By visiting this website, you understand that the content provided within is for educational and entertainment purposes only. Nothing on this site may be constituted as financial advice and this site is not directing you to make any investments in cryptocurrency or in anything else. Thank you for visiting and please proceed responsibly.
As an Amazon Associate I earn from qualifying purchases.

No Result
View All Result
  • Home
  • Bitcoin
  • Ethereum
  • Alt Coins
    • Cardano
    • Dogecoin
    • Litecoin
    • Pokadot
    • Polygon
    • Shiba Inu
    • Solana
    • XRP
  • Crypto Related DEALS

© 2023 Crypto News100 All Rights Reserved.
By visiting this website, you understand that the content provided within is for educational and entertainment purposes only. Nothing on this site may be constituted as financial advice and this site is not directing you to make any investments in cryptocurrency or in anything else. Thank you for visiting and please proceed responsibly.
As an Amazon Associate I earn from qualifying purchases.