Binance Square
#etherhiding

etherhiding

4,587 рет көрілді
5 адам талқылап жатыр
C-ICT Trader
·
--
🚨 MICROSOFT FLAGS ACTIVE ON-CHAIN EXPLOIT TARGETING $BNB USERS — SMART CONTRACT WEAPONIZATION DETECTED 💣 The new ClickFix and TerminalFix redirection campaigns are leveraging EtherHiding to embed malicious payloads directly inside BNB Smart Chain contracts. 📊 Instead of traditional C2 servers, attackers now use the RPC gateway to fetch instructions stored immutably on-chain, a structural shift that makes takedowns nearly impossible without the deployer’s wallet signature. 🦈 This isn’t a routine phishing vector — it’s a living-off-the-land blueprint that chains PowerShell, mshta, rundll32, and WMI to execute stealer payloads like Lumma Stealer and AsyncRAT at scale. The institutional implication: any endpoint compromised through a fake CAPTCHA can quickly become a liquidity drain or private key leakage event. 💻 🔍 Microsoft’s threat intelligence confirms thousands of enterprises and devices are hit daily, with credential theft often preceding lateral movement and ransomware. For BNB Smart Chain participants, the key takeaway is clear: your wallet’s security perimeter now extends far beyond seed phrases. 💬 Have you ever encountered a suspicious CAPTCHA asking you to paste a command? 👇 ⚠️ Not financial advice. Always manage your risk. 🛡️ 🏷️ #BNB #Security #Crypto #SmartContract #EtherHiding 🔍 🛡️
🚨 MICROSOFT FLAGS ACTIVE ON-CHAIN EXPLOIT TARGETING $BNB USERS — SMART CONTRACT WEAPONIZATION DETECTED 💣

The new ClickFix and TerminalFix redirection campaigns are leveraging EtherHiding to embed malicious payloads directly inside BNB Smart Chain contracts. 📊 Instead of traditional C2 servers, attackers now use the RPC gateway to fetch instructions stored immutably on-chain, a structural shift that makes takedowns nearly impossible without the deployer’s wallet signature.

🦈 This isn’t a routine phishing vector — it’s a living-off-the-land blueprint that chains PowerShell, mshta, rundll32, and WMI to execute stealer payloads like Lumma Stealer and AsyncRAT at scale. The institutional implication: any endpoint compromised through a fake CAPTCHA can quickly become a liquidity drain or private key leakage event. 💻 🔍

Microsoft’s threat intelligence confirms thousands of enterprises and devices are hit daily, with credential theft often preceding lateral movement and ransomware. For BNB Smart Chain participants, the key takeaway is clear: your wallet’s security perimeter now extends far beyond seed phrases. 💬 Have you ever encountered a suspicious CAPTCHA asking you to paste a command? 👇

⚠️ Not financial advice. Always manage your risk. 🛡️

🏷️ #BNB #Security #Crypto #SmartContract #EtherHiding

🔍 🛡️
Көбірек контент көру үшін кіріңіз
Binance Square платформасында әлемдік криптоқоғамдастыққа қосылыңыз
⚡️ Криптовалюта туралы ең соңғы және пайдалы ақпаратты алыңыз.
💬 Әлемдегі ең ірі криптобиржаның сеніміне ие.
👍 Расталған авторлардың нақты пікірлерін табыңыз.
Электрондық пошта/телефон нөмірі