Binance Square
#etherhiding

etherhiding

Просмотров: 4,587
5 обсуждают
C-ICT Trader
·
--
🚨 MICROSOFT FLAGS ACTIVE ON-CHAIN EXPLOIT TARGETING $BNB USERS — SMART CONTRACT WEAPONIZATION DETECTED 💣 The new ClickFix and TerminalFix redirection campaigns are leveraging EtherHiding to embed malicious payloads directly inside BNB Smart Chain contracts. 📊 Instead of traditional C2 servers, attackers now use the RPC gateway to fetch instructions stored immutably on-chain, a structural shift that makes takedowns nearly impossible without the deployer’s wallet signature. 🦈 This isn’t a routine phishing vector — it’s a living-off-the-land blueprint that chains PowerShell, mshta, rundll32, and WMI to execute stealer payloads like Lumma Stealer and AsyncRAT at scale. The institutional implication: any endpoint compromised through a fake CAPTCHA can quickly become a liquidity drain or private key leakage event. 💻 🔍 Microsoft’s threat intelligence confirms thousands of enterprises and devices are hit daily, with credential theft often preceding lateral movement and ransomware. For BNB Smart Chain participants, the key takeaway is clear: your wallet’s security perimeter now extends far beyond seed phrases. 💬 Have you ever encountered a suspicious CAPTCHA asking you to paste a command? 👇 ⚠️ Not financial advice. Always manage your risk. 🛡️ 🏷️ #BNB #Security #Crypto #SmartContract #EtherHiding 🔍 🛡️
🚨 MICROSOFT FLAGS ACTIVE ON-CHAIN EXPLOIT TARGETING $BNB USERS — SMART CONTRACT WEAPONIZATION DETECTED 💣

The new ClickFix and TerminalFix redirection campaigns are leveraging EtherHiding to embed malicious payloads directly inside BNB Smart Chain contracts. 📊 Instead of traditional C2 servers, attackers now use the RPC gateway to fetch instructions stored immutably on-chain, a structural shift that makes takedowns nearly impossible without the deployer’s wallet signature.

🦈 This isn’t a routine phishing vector — it’s a living-off-the-land blueprint that chains PowerShell, mshta, rundll32, and WMI to execute stealer payloads like Lumma Stealer and AsyncRAT at scale. The institutional implication: any endpoint compromised through a fake CAPTCHA can quickly become a liquidity drain or private key leakage event. 💻 🔍

Microsoft’s threat intelligence confirms thousands of enterprises and devices are hit daily, with credential theft often preceding lateral movement and ransomware. For BNB Smart Chain participants, the key takeaway is clear: your wallet’s security perimeter now extends far beyond seed phrases. 💬 Have you ever encountered a suspicious CAPTCHA asking you to paste a command? 👇

⚠️ Not financial advice. Always manage your risk. 🛡️

🏷️ #BNB #Security #Crypto #SmartContract #EtherHiding

🔍 🛡️
Войдите, чтобы посмотреть больше материала
Присоединяйтесь к пользователям криптовалют по всему миру на Binance Square
⚡️ Получайте новейшую и полезную информацию о криптоактивах.
💬 Нам доверяет крупнейшая в мире криптобиржа.
👍 Получите достоверные аналитические данные от верифицированных создателей контента.
Эл. почта/номер телефона