Microsoft Announces Emergence of New Viral Threat! It Surprisingly Uses Altcoin Network

cryptonews.ruPublished on 2026-08-08Last updated on 2026-08-08

Abstract

Microsoft has identified a new cyberattack method where threat actors use smart contracts on the BNB Smart Chain blockchain to disseminate malware instructions, a technique dubbed "EtherHiding." Instead of hosting malicious payloads on traditional command-and-control servers, attackers embed code within blockchain smart contracts. They compromise legitimate websites to display fake CAPTCHA pages. These pages trick users into pressing Windows+R, pasting a pre-loaded malicious command from their clipboard via Ctrl+V, and pressing Enter, thereby unknowingly executing attacker-prepared commands on their own systems. This method is reportedly prevalent in social engineering campaigns known as ClickFix and TerminalFix, which target thousands of corporate and personal devices globally each day. Leveraging blockchain infrastructure allows attackers to update malicious instructions via a decentralized, public network, making detection and complete takedown of the attack infrastructure more challenging.

Microsoft's threat analysis service has uncovered a new method of cyberattack in which malicious actors use smart contracts on the $BNB blockchain to distribute malware instructions.

According to Microsoft, attackers are using the "EtherHiding" method on compromised websites. In this method, instead of receiving malicious instructions directly from a classic server controlled by the attackers, they are retrieved from a smart contract on the $BNB Smart Chain network via an RPC gateway.

A key element of the attack chain are fake CAPTCHA screens. These pages, designed to give users the impression of a real verification, instruct them to press Windows + R, then paste a pre-prepared command from the clipboard using Ctrl + V, and finally press Enter. In this way, the user, unsuspectingly, executes malicious commands prepared by the attackers on their computer.

Microsoft stated that this method is particularly frequently used in social engineering campaigns known as ClickFix and TerminalFix. According to the company, these campaigns target thousands of corporate and personal devices daily worldwide.

Using blockchain infrastructure as part of the attack chain allows the attackers to update instructions through a distributed and publicly accessible infrastructure, rather than through a centralized server. This also represents a new method that may make detecting and completely disabling the malicious infrastructure more difficult.

*This is not investment advice.

end-content

Trending Cryptos

Related Questions

QAccording to the article, what is the name of the new cyberattack method that uses smart contracts to spread malware instructions?

AThe new cyberattack method is called "EtherHiding."

QWhich blockchain network's smart contracts are exploited in the described 'EtherHiding' attack?

AThe attack exploits smart contracts on the BNB Smart Chain network.

QHow do the attackers trick users into executing malicious commands on their computers in this scheme?

AThey use fake CAPTCHA pages that instruct users to press Windows + R, paste a prepared command from the clipboard using Ctrl + V, and press Enter, thereby unknowingly executing the malicious code.

QWhich social engineering campaigns are mentioned as frequently using this 'EtherHiding' method?

AThe campaigns are known as 'ClickFix' and 'TerminalFix.'

QWhat advantage does using blockchain infrastructure provide to the attackers, according to Microsoft's analysis?

AUsing blockchain infrastructure allows attackers to update instructions through a distributed and public infrastructure rather than a centralized server, making detection and full takedown of the malicious infrastructure more difficult.

Related Reads

Michael Saylor's Latest Interview: The 'Wealth Logic' of AI and Bitcoin

Michael Saylor, in a recent interview, discussed leveraging AI for financial innovation, leading to a $15 billion capital raise. He advised focusing on directing AI rather than competing with it, emphasizing the search for "S-curve" opportunities in technology. Saylor argued that fiat currencies inevitably depreciate, citing a ~7% annual loss in the U.S. dollar's purchasing power. He positioned Bitcoin as the superior, universal capital asset for long-term savings, outperforming gold, real estate, and major indices due to its verifiable scarcity and resistance to confiscation. Addressing AI's impact, he agreed that basic commodities would become abundant but contended that status-driven demand for scarce assets would persist, ensuring money's role. For careers, he warned against entering fields like law or medicine at the end of their S-curves, urging instead to master AI tools and tackle novel, edge-case problems. Saylor outlined ten foundational life principles, including focus, health, critical thinking, and integrity. He defended MicroStrategy's recent minor Bitcoin sale as a strategic move to dispel market myths about a potential "death spiral," affirming their ability to fund dividends sustainably if Bitcoin appreciates above 3.2% annually. He predicted Bitcoin's continued outperformance versus traditional assets and recommended that individuals invest in both AI subscriptions and Bitcoin. Finally, he shared two profound personal learnings: applied statistics (via Taleb's works) for discerning signal from noise, and a deep study of history (Will Durant's "The Story of Civilization") to gain perspective on recurring human patterns, including the inevitable debasement of all fiat currencies.

marsbit3h ago

Michael Saylor's Latest Interview: The 'Wealth Logic' of AI and Bitcoin

marsbit3h ago

Trading

Spot

Hot Articles

Discussions

Welcome to the HTX Community. Here, you can stay informed about the latest platform developments and gain access to professional market insights. Users' opinions on the price of S (S) are presented below.

活动图片