• bitcoinBitcoin (BTC) $ 97,110.00
  • ethereumEthereum (ETH) $ 3,389.50
  • tetherTether (USDT) $ 0.999636
  • xrpXRP (XRP) $ 2.24
  • bnbBNB (BNB) $ 667.19
  • solanaSolana (SOL) $ 186.07
  • dogecoinDogecoin (DOGE) $ 0.323834
  • usd-coinUSDC (USDC) $ 0.999356
  • staked-etherLido Staked Ether (STETH) $ 3,384.30
  • cardanoCardano (ADA) $ 0.917421
  • tronTRON (TRX) $ 0.246075
  • avalanche-2Avalanche (AVAX) $ 38.92
  • chainlinkChainlink (LINK) $ 22.83
  • wrapped-stethWrapped stETH (WSTETH) $ 4,054.69
  • the-open-networkToncoin (TON) $ 5.33
  • suiSui (SUI) $ 4.64
  • shiba-inuShiba Inu (SHIB) $ 0.000022
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 96,823.00
  • hyperliquidHyperliquid (HYPE) $ 33.34
  • polkadotPolkadot (DOT) $ 7.17
  • stellarStellar (XLM) $ 0.363044
  • hedera-hashgraphHedera (HBAR) $ 0.258075
  • wethWETH (WETH) $ 3,405.65
  • bitcoin-cashBitcoin Cash (BCH) $ 452.66
  • leo-tokenLEO Token (LEO) $ 9.27
  • uniswapUniswap (UNI) $ 13.37
  • pepePepe (PEPE) $ 0.000018
  • litecoinLitecoin (LTC) $ 100.08
  • wrapped-eethWrapped eETH (WEETH) $ 3,575.77
  • nearNEAR Protocol (NEAR) $ 5.19
  • ethena-usdeEthena USDe (USDE) $ 0.999198
  • bitget-tokenBitget Token (BGB) $ 4.16
  • aptosAptos (APT) $ 10.13
  • usdsUSDS (USDS) $ 1.00
  • internet-computerInternet Computer (ICP) $ 10.41
  • aaveAave (AAVE) $ 310.73
  • crypto-com-chainCronos (CRO) $ 0.161131
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.482143
  • mantleMantle (MNT) $ 1.18
  • ethereum-classicEthereum Classic (ETC) $ 26.46
  • render-tokenRender (RENDER) $ 7.33
  • vechainVeChain (VET) $ 0.046441
  • mantra-daoMANTRA (OM) $ 3.87
  • moneroMonero (XMR) $ 192.00
  • whitebitWhiteBIT Coin (WBT) $ 24.37
  • bittensorBittensor (TAO) $ 470.85
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 1.31
  • daiDai (DAI) $ 0.999742
  • ethenaEthena (ENA) $ 1.12
  • arbitrumArbitrum (ARB) $ 0.772166
  • kaspaKaspa (KAS) $ 0.121836
  • filecoinFilecoin (FIL) $ 5.02
  • fantomFantom (FTM) $ 1.03
  • algorandAlgorand (ALGO) $ 0.339182
  • okbOKB (OKB) $ 45.01
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 2.64
  • cosmosCosmos Hub (ATOM) $ 6.72
  • blockstackStacks (STX) $ 1.73
  • ondo-financeOndo (ONDO) $ 1.73
  • optimismOptimism (OP) $ 1.82
  • immutable-xImmutable (IMX) $ 1.41
  • bonkBonk (BONK) $ 0.000032
  • celestiaCelestia (TIA) $ 5.11
  • movementMovement (MOVE) $ 0.990385
  • theta-tokenTheta Network (THETA) $ 2.18
  • injective-protocolInjective (INJ) $ 21.36
  • binance-peg-wethBinance-Peg WETH (WETH) $ 3,401.68
  • the-graphThe Graph (GRT) $ 0.213230
  • dogwifcoindogwifhat (WIF) $ 2.03
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 97,076.00
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.029790
  • sei-networkSei (SEI) $ 0.439398
  • worldcoin-wldWorldcoin (WLD) $ 2.26
  • thorchainTHORChain (RUNE) $ 5.13
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,497.56
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.995439
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,808.10
  • flokiFLOKI (FLOKI) $ 0.000172
  • jasmycoinJasmyCoin (JASMY) $ 0.033964
  • gatechain-tokenGate (GT) $ 13.07
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,556.50
  • lido-daoLido DAO (LDO) $ 1.73
  • galaGALA (GALA) $ 0.036470
  • tokenize-xchangeTokenize Xchange (TKX) $ 18.92
  • flare-networksFlare (FLR) $ 0.027217
  • makerMaker (MKR) $ 1,658.61
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 96,755.00
  • beam-2Beam (BEAM) $ 0.027663
  • fasttokenFasttoken (FTN) $ 3.32
  • usual-usdUsual USD (USD0) $ 0.997654
  • the-sandboxThe Sandbox (SAND) $ 0.573068
  • pyth-networkPyth Network (PYTH) $ 0.375251
  • nexoNEXO (NEXO) $ 1.35
  • kucoin-sharesKuCoin (KCS) $ 11.16
  • tezosTezos (XTZ) $ 1.31
  • kaiaKaia (KAIA) $ 0.224584
  • based-brettBrett (BRETT) $ 0.131837
  • solv-btcSolv Protocol SolvBTC (SOLVBTC) $ 97,076.00
  • raydiumRaydium (RAY) $ 4.44
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,495.74
  • eosEOS (EOS) $ 0.818370
  • heliumHelium (HNT) $ 6.87
  • binance-staked-solBinance Staked SOL (BNSOL) $ 191.55
  • ethereum-name-serviceEthereum Name Service (ENS) $ 35.49
  • aerodrome-financeAerodrome Finance (AERO) $ 1.62
  • jupiter-exchange-solanaJupiter (JUP) $ 0.848602
  • xdce-crowd-saleXDC Network (XDC) $ 0.076470
  • flowFlow (FLOW) $ 0.716150
  • starknetStarknet (STRK) $ 0.489846
  • arweaveArweave (AR) $ 16.32
  • bitcoin-svBitcoin SV (BSV) $ 54.16
  • dydx-chaindYdX (DYDX) $ 1.49
  • aioz-networkAIOZ Network (AIOZ) $ 0.939549
  • iotaIOTA (IOTA) $ 0.297638
  • bittorrentBitTorrent (BTT) $ 0.000001
  • msolMarinade Staked SOL (MSOL) $ 232.38
  • curve-dao-tokenCurve DAO (CRV) $ 0.822260
  • coredaoorgCore (CORE) $ 1.10
  • neoNEO (NEO) $ 14.21
  • axie-infinityAxie Infinity (AXS) $ 6.34
  • elrond-erd-2MultiversX (EGLD) $ 35.12
  • matic-networkPolygon (MATIC) $ 0.483199
  • decentralandDecentraland (MANA) $ 0.485055
  • solv-protocol-solvbtc-bbnSolv Protocol SolvBTC.BBN (SOLVBTC.BB) $ 96,171.00
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 96,459.00
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 3,392.30
  • pendlePendle (PENDLE) $ 5.21
  • zcashZcash (ZEC) $ 53.37
  • apecoinApeCoin (APE) $ 1.17
  • fartcoinFartcoin (FARTCOIN) $ 0.824912
  • eigenlayerEigenlayer (EIGEN) $ 3.86
  • mog-coinMog Coin (MOG) $ 0.000002
  • jito-governance-tokenJito (JTO) $ 2.99
  • chilizChiliz (CHZ) $ 0.086688
  • akash-networkAkash Network (AKT) $ 3.23
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 3,384.63
  • ai16zai16z (AI16Z) $ 0.696531
  • conflux-tokenConflux (CFX) $ 0.162042
  • wormholeWormhole (W) $ 0.273922
  • popcatPopcat (POPCAT) $ 0.760798
  • usddUSDD (USDD) $ 0.997808
  • mina-protocolMina Protocol (MINA) $ 0.619411
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 200.53
  • spx6900SPX6900 (SPX) $ 0.780447
  • compound-governance-tokenCompound (COMP) $ 81.92
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 3,379.32
  • roninRonin (RON) $ 1.92
  • superfarmSuperVerse (SUPER) $ 1.57
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.37
  • havvenSynthetix Network (SNX) $ 2.07
  • ecasheCash (XEC) $ 0.000035
  • gnosisGnosis (GNO) $ 263.98
  • dog-go-to-the-moon-runeDOG•GO•TO•THE•MOON (Runes) (DOG) $ 0.006721
  • chiaChia (XCH) $ 21.24
  • dydxdYdX (ETHDYDX) $ 1.49
  • zksyncZKsync (ZK) $ 0.180778
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.324328
  • ether-fi-staked-btcEther.fi Staked BTC (EBTC) $ 96,526.00
  • amp-tokenAmp (AMP) $ 0.007858
  • notcoinNotcoin (NOT) $ 0.006424
  • axelarAxelar (AXL) $ 0.751177
  • chex-tokenCHEX Token (CHEX) $ 0.658429
  • peanut-the-squirrelPeanut the Squirrel (PNUT) $ 0.649530
  • tether-goldTether Gold (XAUT) $ 2,626.64
  • fraxFrax (FRAX) $ 0.994096
  • layerzeroLayerZero (ZRO) $ 5.72
  • mantle-restaked-ethMantle Restaked ETH (CMETH) $ 3,557.08
  • terra-lunaTerra Luna Classic (LUNC) $ 0.000112
  • reserve-rights-tokenReserve Rights (RSR) $ 0.011277
  • baby-doge-coinBaby Doge Coin (BABYDOGE) $ 0.00000000
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,686.70
  • grassGrass (GRASS) $ 2.42
  • turboTurbo (TURBO) $ 0.008436
  • usualUsual (USUAL) $ 1.26
  • vanaVana (VANA) $ 18.62
  • safeSafe (SAFE) $ 1.09
  • cat-in-a-dogs-worldcat in a dogs world (MEW) $ 0.006379
  • ordinalsORDI (ORDI) $ 26.76
  • super-oethSuper OETH (SUPEROETHB) $ 3,402.32
  • oasis-networkOasis (ROSE) $ 0.083043
  • echelon-primeEchelon Prime (PRIME) $ 10.94
  • blurBlur (BLUR) $ 0.265356
  • 1inch1inch (1INCH) $ 0.392770
  • trust-wallet-tokenTrust Wallet (TWT) $ 1.30
  • beldexBeldex (BDX) $ 0.077428
  • susdssUSDS (SUSDS) $ 1.02
  • paypal-usdPayPal USD (PYUSD) $ 0.999381
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 97,297.00
  • creditcoin-2Creditcoin (CTC) $ 1.27
  • pax-goldPAX Gold (PAXG) $ 2,623.28
  • dexeDeXe (DEXE) $ 9.03
  • apenftAPENFT (NFT) $ 0.00000052
  • pumpbtcpumpBTC (PUMPBTC) $ 96,065.00
  • livepeerLivepeer (LPT) $ 13.89
  • goatseus-maximusGoatseus Maximus (GOAT) $ 0.507086
  • gigachad-2Gigachad (GIGA) $ 0.052223
  • nervos-networkNervos Network (CKB) $ 0.010945
  • arkhamArkham (ARKM) $ 1.50
  • kusamaKusama (KSM) $ 31.38
  • true-usdTrueUSD (TUSD) $ 0.999789

ESET and Dutch police expose Ebury botnet’s cryptocurrency theft operations

0 106

ESET and Dutch police expose Ebury botnet’s cryptocurrency theft operations

  crypto.news 7 h

ESET and Dutch police expose Ebury botnet’s cryptocurrency theft operations

Dutch cybersecurity specialists have linked a major cryptocurrency theft to the infamous Ebury botnet, responsible for compromising over 400,000 servers over a 15-year period.

According to a report from Slovakian cybersecurity firm ESET, the incident was initially uncovered during a 2021 investigation by the Dutch National High Tech Crime Unit (NHTCU). During this investigation, operatives found the Ebury botnet on a server linked to crypto theft.

After this revelation, the Dutch crime unit collaborated with ESET, led by researcher Marc-Etienne Léveillé, who had been studying Ebury for over a decade.

Ebury operators allegedly used a sophisticated attack dubbed adversary-in-the-middle (AitM) to steal the crypto funds. The attack transpires with the botnet intercepting network traffic and capturing login credentials and session information.

“Cryptocurrency theft was not something that we’d ever seen them do before,” Léveillé noted.

The botnet redirects this traffic to servers controlled by the cybercriminals, allowing them to access and steal cryptocurrency from the wallets of the victims. In its report, ESET revealed that over 100,000 remained infected as of 2023.

Ebury specifically targets Bitcoin and Ethereum nodes, making off with wallets and other valuable credentials. The botnet would steal the funds once the unsuspecting victims entered their credentials on the infected server.

ESET and Dutch police expose Ebury botnet’s cryptocurrency theft operations

Flowchart of Ebury’s attack on crypto wallets | Source: welivesecurity

Further, once a victim’s system was compromised, Ebury would exfiltrate credentials and use them to infiltrate related systems. The report identified a wide array of victims ranging from universities, enterprises, internet service providers, and cryptocurrency traders.

The attackers also employ stolen identities to rent servers and deploy their attacks. As such, it is very difficult for law enforcement agencies to track down the identities of those behind this cybercrime racket.

“They’re really good at blurring the attribution,” Léveillé added.

You might also like: Crypto.com ‘disappointed’ over $3m fine by Dutch central bank, plans to appeal

One Ebury operator, Maxim Senakh, was arrested at the Finland-Russia border in 2015 and was extradited to the United States. The U.S. Department of Justice charged Senakh with computer fraud, to which he pleaded guilty in 2017. He was sentenced to four years behind bars.

While the masterminds behind Ebury remain at large, the NHTCU has revealed that several leads are being pursued.

Crypto thefts have become increasingly complicated over the years. Earlier this month, North Korean hackers employed a new malware variant dubbed “Durian” to targeted attacks on at least two cryptocurrency firms.

Prior to that, a January report from cybersecurity firm Kaspersky revealed that a malware was targetting cryptocurrency wallets on MacOS.

Read more: Kraken obtains Dutch license, expands crypto services in Europe

Source

Leave A Reply

Your email address will not be published.