Dogecoin (DOGE) is now being used by crypto hackers after TikTok boom

2020-8-1 12:00

Dogecoin’s usecases have seemingly evolved over time. The meme coin was initially created as a joke in 2014, turned into one of the hottest cryptocurrencies in 2015, became Elon Musk’s favorite in 2018, and was part of a TikTok challenge in 2020.

But things have taken a darker turn for the currency; hackers are now utilizing the token to control crypto mining botnets, security firm Intezer Labs said in a report this week.

Such DOGE, much hack

Intezer Labs, a New York-based malware analysis and detection firm, found out hackers using the infamous “Doki” backdoor have been using Dogecoin wallets to mask their online presence.

The firm said it had been analyzing Doki, a trojan virus, since January 2020 but recently discovered its use in installing and maintaining crypto-mining malware later. 

Undetected Doki attack actively infecting vulnerable #Docker servers in the cloud. Attacker uses a novel Domain Generation Algorithm (DGA) based on a DogeCoin digital wallet to generate C&C domains. Research by @NicoleFishi19 and @kajilot https://t.co/CS1aK5DXjv

— Intezer (@IntezerLabs) July 28, 2020

A hacker — who goes by Ngrok — had uncovered a method to use Dogecoin wallets for infiltrating web servers, the firm noted. The usage is a first such case for the meme coin, which is otherwise known for funnier purposes.

Intezer Labs found out Doki was using a previously undocumented method to contact its operator by abusing the Dogecoin blockchain in a unique way in order to dynamically generate its control and command (C&C) domain addresses.

Using Dogecoin transactions allowed the attackers to alter these C&C addresses on any affected computers, or servers, that ran Ngrok’s Monero mining bots. Doing so allowed the hacker/s to mask their online location, thus preventing detection by legal and cybercriminal authorities.

Intezer Labs explained in its report: 

“While some malware strains connect to raw IP addresses or hardcoded URLs included in their source code, Doki used a dynamic algorithm to determine the control and command (C&C) address using the Dogecoin API.”

The firm added these steps meant security firms needed to access the hacker’s Dogecoin wallet to take down Doki, which was “impossible” without knowing the wallet’s private keys.

Using DOGE to control servers

Using Doki allowed Ngrok to control their newly-deployed Alpine Linux servers for running their crypto-mining operations. They used the Doki service to determine and change the URL of the control and command (C&C) server it needed to connect for new instructions.

Intezer researchers reverse-engineered the process, detailing the initial steps as shown in the image below:

Hackers used these steps to control their botnet. Image: ZDNet

When the above was fully executed, the Ngrok gang could change Doki’s command servers by making a single transaction from within a Dogecoin wallet they controlled.

However, this was just part of a larger attack. Once the Ngrok gang gained access to command servers, they deployed another botnet to mine Monero. Dogecoin and Doki only served as access bridge, as ZDNet researcher Catalin Cimpanu tweeted:

Anyway, Doki, while using a unique C&C DGA, is actually part of a larger attack chain — namely the Ngrok crypto-mining crew.

These hackers target misconfigured Docker APIs, which they use to deploy new Alpine Linux images to mine Monero (Doki is the access part here) pic.twitter.com/xh20MqS9od

— Catalin Cimpanu (@campuscodi) July 28, 2020

Intezer said Doki has been active since this January, but remained undetected on all 60 “VirusTotal” scanning software used on Linux servers.

As of today, the attack is still active as of today. Malware operators and “crypto-mining gangs” have been actively using the method, said Intezer.

But it’s not a big worry. The firm says preventing exposure to the virus is easy; one just needs to ensure that any critical application process interfaces (APIs) are fully offline and not connected to any application which interacts with the internet.

The post Dogecoin (DOGE) is now being used by crypto hackers after TikTok boom appeared first on CryptoSlate.

Similar to Notcoin - Blum - Airdrops In 2024

origin »

Dogecoin (DOGE) на Currencies.ru

$ 0.3886 (+0.13%)
Объем 24H $8.602b
Изменеия 24h: -0.28 %, 7d: -3.88 %
Cегодня L: $0.3729 - H: $0.3886
Капитализация $57.077b Rank 7
Цена в час новости $ 0.0037123 (10367.9%)

dogecoin crypto hackers tiktok boom doge used

dogecoin crypto → Результатов: 126


Bitcoin Spark Outshines Dogecoin: What This Means for Your Crypto Portfolio

Bitcoin Spark (BTCS) has been the talk amongst crypto investors and enthusiasts in August. Remarkably, many of them suggest that this new crypto outshines Dogecoin (DOGE). Is Dogecoin dead? While Dogecoin (DOGE) may have experienced a significant decline from its peak, it’s too early to declare it dead. The coin is still holding its ground […]

2023-8-19 20:20


Обзор игр с использованием криптовалют

С развитием и популяризацией криптовалют и блокчейна эти темы стали активно использоваться в различных играх. В некоторых, например в мобильных «Симпсонах» и «Футураме», о биткоине можно встретить реплики персонажей, а в других - криптовалюта является неотъемлемой частью игры.

2018-11-18 12:46


Фото:

Dogecoin Creator: Banks Will Kill Decentralization

Institutional investors have been one of the key goals for the cryptocurrency sector. You’d think it was the Second Coming, the amount people talk about it. But what are the ramifications? According to Jackson Palmer, one of the main developers behind Dogecoin (DOGE), the time of the institutional investors won’t be one of adoption, but of […] The post Dogecoin Creator: Banks Will Kill Decentralization appeared first on Crypto Briefing.

2018-11-6 00:00


Фото:

What Do XRP And Dogecoin Have In Common?

It sounds like a bad christmas cracker joke (which we are allowed to mention since it’s now October) but what to XRP and Dogecoin have in common? Of course, one is based upon a meme and the other is a very serious blockchain solution designed for the facilitation of financial transactions (but which is which?) however, the pair do have something very interesting in common, they are leading the markets in a very special way.

2018-10-2 20:00


Фото:

Kraken Adds Cardano and Quantum to Its List of Supported Crypto Assets

Cryptocurrency exchange Kraken has announced the addition of two new assets to its platform: Cardano and Quantum, bringing the number of supported coins up to 19. Ninth-placed Cardano (ADA) and 29th-ranked Quantum (QTUM) join the likes of Bitcoin, Ether, EOS, Stellar Lumuns, Litecoin, Tether, Monero, Dash, Ether Classic, Dogecoin, Zcash, Augur, Iconomi, Gnosis, and Melon.

2018-10-2 13:07


Фото:

Dogecoin Now ‘Envy of the Crypto World’ As ICOs Dumped $30M ETH Last Week

Altcoin markets are witnessing upheaval September 11 as Ethereum (ETH) sees major sell-offs from ICOs and Dogecoin generates altcoins’ second-biggest transaction volumes. Dogecoin ‘Envy Of The Crypto World’ Data uploaded to Twitter by cryptocurrency researcher Kevin Rooke shows the abrupt rise of DOGE after developers released the coin’s long-awaited Ethereum bridge beta September 5.

2018-9-11 18:00