Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
News Trojanized npm Packages Employ NullReceiver Tactic to Decode C2 IP from Blockchain
The Hacker News
6 days ago

Trojanized npm Packages Employ NullReceiver Tactic to Decode C2 IP from Blockchain

By info@thehackernews.com (The Hacker News)

Cybersecurity researchers have flagged an evolution of the EtherHiding blockchain-based command-and-control (C2) technique that conceals the C2 server IP address inside a made-up destination address of a completely empty Ethereum transfer. The new dead drop resolver approach, observed in two trojanized npm packages "bianira-ui" and "fluid-type-ui," has been codenamed NullReceiver by

More from The Hacker News

Leaving Threaticon

This link opens an external site that isn't part of the platform.