Table of Contents
When you heard about ransomware Bad Rabbit, did you think that was the worst thing that the security has recently received. No, here it is.
Hacker Hijack Coinhive DNS to Dig Virtual Money with Thousands of Websites Overview
CoinHive, a web service that allows the website to embed JavaCript to take advantage of the CPU of Monero peach site visitors, has been hacked. An unidentified hacker has hijacked Coinhive's CloudFlare account, allowing editing DNS servers and replacing Coinhive's JavaScript code being embedded into thousands of websites with an infected version.
https: // coin-hive [.] com / lib / coinhive. min. js
Get the Password from the Data Leak
Hacker reused passwords leaked from the Kickstarter leak in 2014. DNS records for coinhive. com were modified to redirect requests to coinhive. min. js to another server containing the malicious version of the JavaScript file. Thousands of pages using Coinhive's script were tricked for at least 6 hours when downloading the Monero island code for hackers.
Your Website May Be Digging Money for Strangers
Coinhive received attention after the world's largest torrent download site, The Pirate Bay, was discovered using a virtual money digging tool on its browser. Since then, thousands of other websites have also started using Coinhive to utilize the visitor's CPU and dig virtual money as another way to make money.
How many Coinhive words are earned in the pocket of hackers
Even hackers use Coinhive to check money from websites they hacked by silently injecting the script. Now the company is looking for ways to compensate for losses caused by this case.
How to Prevent Websites from Exploiting Your CPU to Dig Virtual Money
Many anti-virus software, including Malwarebytes and Kaspersky, started blocking the script to prevent the user's computer CPU from being exploited to dig virtual money.
You can also install open source browser utilities like No Coin or minerBlock to block virtual money digging tools like Coinhive.
See also: How to block websites using your CPU to dig virtual money
Security note: Threat conditions and vendor guidance can change. Install current updates and verify any advisory with the official vendor before taking action.
FAQ
Why does hacker Hijack Coinhive DNS to Dig Virtual Money with Thousands of Websites matter?
When you heard about ransomware Bad Rabbit, did you think that was the worst thing that the security has recently received. No, here it is.
Who may be affected by this issue?
The impact depends on the affected product, version, account, device, or network. Review the article details and the vendor's current advisory to confirm whether your environment is exposed.
How can users reduce the risk?
Install current security updates, use official downloads, enable strong account protection, maintain tested backups, and follow the latest guidance from the relevant vendor.
Reader Comments 0
Sign in with email or Google to join the discussion.