【24h】

Is Cryptojacking Dead After Coinhive Shutdown?

机译:Coinhive关机后Cryptojacking死了吗?

获取原文

摘要

Cryptojacking is the exploitation of victims' computer resources to mine for cryptocurrency using malicious scripts. It had become popular after 2017 when attackers started to exploit legal mining scripts, especially Coinhive scripts. Coinhive was actually a legal mining service that provided scripts and servers for in-browser mining activities. Nevertheless, over 10 million web users had been victims every month before the Coinhive shutdown that happened in Mar 2019. This paper explores the new era of the cryptojacking world after Coinhive discontinued its service. We aimed to see whether and how attackers continue cryptojacking, generate new malicious scripts, and developed new methods. We used a capable cryptojacking detector named CMTracker that proposed by Hong et al. in 2018. We automatically and manually examined 2770 websites that had been detected by CMTracker before the Coinhive shutdown. The results revealed that 99% of sites no longer continue cryptojacking. 1% of websites still run 8 unique mining scripts. By tracking these mining scripts, we detected 632 unique cryptojacking websites. Moreover, open-source investigations (OSINT) demonstrated that attackers still use the same methods. Therefore, we listed the typical patterns of cryptojacking. We concluded that cryptojacking is not dead after the Coinhive shutdown. It is still alive, but not as attractive as it used to be.
机译:加密劫持是利用受害者的计算机资源来使用恶意脚本挖掘加密货币的方法。自从2017年攻击者开始利用合法的挖掘脚本(尤其是Coinhive脚本)以来,它就变得很流行。 Coinhive实际上是一个合法的挖掘服务,为浏览器内的挖掘活动提供脚本和服务器。尽管如此,在2019年3月Coinhive关闭之前,每月有超过1000万的Web用户成为受害者。本文探讨了Coinhive停止服务后的加密劫持世界的新时代。我们旨在查看攻击者是否以及如何继续进行加密劫持,生成新的恶意脚本以及开发新的方法。我们使用了Hong等人提出的名为CMTracker的功能强大的密码劫持检测器。在2018年。我们自动手动检查了Coinhive关闭之前CMTracker检测到的2770个网站。结果显示,99%的站点不再继续进行加密劫持。 1%的网站仍运行8个独特的挖掘脚本。通过跟踪这些挖掘脚本,我们检测到632个唯一的密码劫持网站。此外,开源调查(OSINT)证明,攻击者仍然使用相同的方法。因此,我们列出了加密劫持的典型模式。我们得出的结论是,在Coinhive关闭后,加密劫持并没有消失。它仍然活着,但没有以前那么吸引人。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号