Zcash, Chase’s cryptocurrency partner, fixes bug that could have allowed ‘unlimited’ counterfeits

Developers behind the privacy-focused cryptocurrency Zcash have patched a security flaw that could have allowed hackers to create an unlimited amount of counterfeit coins. Roughly one year ago cryptographer Ariel Gabizon discovered what appeared to be a “subtle” bug in zk-SNARKS, a tool to hide user identities and currency balances. The bug could have allowed attackers to overwhelm Zcash’s financial ecosystem with falsified currency, perhaps enough to undermine trust in the cryptocurrency altogether. The problem also could have put in peril the partnership between Zerocoin Electric Coin Company, the organization behind Zcash, and JPMorgan Chase. “Prior to its remediation, an attacker could have created fake Zcash without being detected,” members of the Zcash team said in a blog post Tuesday. “The counterfeiting vulnerability has been fully remediated in Zcash and no action is required by Zcash users.” Gabizon, a ZECC employee, discovered the issue in March 2018. Only four members […]

The post Zcash, Chase’s cryptocurrency partner, fixes bug that could have allowed ‘unlimited’ counterfeits appeared first on CyberScoop.

Continue reading Zcash, Chase’s cryptocurrency partner, fixes bug that could have allowed ‘unlimited’ counterfeits

Critical Zcash Bug Could Have Allowed ‘Infinite Counterfeit’ Cryptocurrency

The developers behind the privacy-minded Zcash cryptocurrency have recently discovered and patched a highly dangerous vulnerability in the most secretive way that could have allowed an attacker to coin an infinite number of Zcash (ZEC).

Yes, infinite…… Continue reading Critical Zcash Bug Could Have Allowed ‘Infinite Counterfeit’ Cryptocurrency

Cryptocurrency Transactions May Uncover Sales of Shadow Broker Hacking Tools

Even though the Shadow Brokers told customers to use privacy-focused cryptocurrency Zcash, researchers may have found clues pointing to who tried to buy more of the group’s wares. Continue reading Cryptocurrency Transactions May Uncover Sales of Shadow Broker Hacking Tools

Flaw in Telegram Windows App Used for Cryptomining & Backdoor

By Waqas
Another day, another popular app compromised to drop backdoor and conduct
This is a post from HackRead.com Read the original post: Flaw in Telegram Windows App Used for Cryptomining & Backdoor
Continue reading Flaw in Telegram Windows App Used for Cryptomining & Backdoor

Flaw in Telegram Windows App Used for Cryptomining & Backdoor

By Waqas
Another day, another popular app compromised to drop backdoor and conduct
This is a post from HackRead.com Read the original post: Flaw in Telegram Windows App Used for Cryptomining & Backdoor
Continue reading Flaw in Telegram Windows App Used for Cryptomining & Backdoor

Telegram zero day used to spread cryptomining malware

A zero-day vulnerability in the popular encrypted messaging app Telegram has subjected affected users to remote cryptomining for months, according to research released Tuesday by Kaspersky Lab. The vulnerability is in the chat app’s Windows client, Kaspersky researcher Alexey Firsh writes. The weakness specifically is in the way Telegram deals with a Unicode character that reverses the direction of text in the app. A hacker sends a victim what appears to be a .png image attachment. As a result of trickery with the Unicode character, it is actually a JavaScript file that installs malware on their system. Kaspersky found that the vulnerability has been exploited to mine cryptocurrency such as Monero, Zcash and Fantomcoin on a victim’s computer. In some cases, the zero day was used to deploy spyware or remote control malware. Firsh writes that Kaspersky doesn’t know exactly which versions of Telegram have been affected in the past, […]

The post Telegram zero day used to spread cryptomining malware appeared first on Cyberscoop.

Continue reading Telegram zero day used to spread cryptomining malware

Bitcoin hype pushes hackers to stash their money in lesser-known cryptocurrencies

Cybercriminals are increasingly moving away from bitcoin as their preferred digital currency in favor of lesser-known cryptocurrencies because of prolonged transaction delays, surging transaction costs and general market volatility, experts tell CyberScoop. Although cybercriminals have been slowly moving away from bitcoin for months, researchers say a noticeable shift towards alternative coins — such as Monero, Dash and ZCash — occurred when bitcoin’s value skyrocketed over $19,000 for one bitcoin in mid-December. The price has drastically fluctuated between $12,000 and roughly $19,000 since then. “Many cybercriminals emulate the operational best practices of legitimate businesses in order to minimize their overhead costs and maximize returns, and in the case of high transaction costs with bitcoin, it makes perfect sense to look at other coins with smaller overheads,” said Richard Henderson, a global security strategist with endpoint cybersecurity firm Absolute. Experts say this shift does not necessarily mean that criminals’ attention is fading from bitcoin, […]

The post Bitcoin hype pushes hackers to stash their money in lesser-known cryptocurrencies appeared first on Cyberscoop.

Continue reading Bitcoin hype pushes hackers to stash their money in lesser-known cryptocurrencies

Cryptojacking on the rise in poorer countries where ransoms can’t be paid

A collection of poorer countries in Eastern Europe are the only places in cyberspace where ransomware isn’t seen as a top threat. Cybercriminals aren’t ignoring nations like Ukraine. Instead, to make the most of malware, hackers are finding different ways to extract value from poor countries whose population is still connected to the internet. Rich countries like the United States are ripe for ransomware because the population has more money to pay ransoms, with the practice becoming a $2 billion criminal industry in 2017. Knowing that residents in less-developed countries are less likely be able to pay ransoms, criminals are heavily targeting poorer regions with malware that uses victims’ computers to mine cryptocurrency — a scheme known as cryptomining or cryptojacking — according to new research from the cybersecurity firm Bitdefender. “Ransomware is the number one infection globally,” Bogdan Botezatu, the senior threat analyst at the cybersecurity firm Bitdefender, told CyberScoop. “Cryptominers rank second.” […]

The post Cryptojacking on the rise in poorer countries where ransoms can’t be paid appeared first on Cyberscoop.

Continue reading Cryptojacking on the rise in poorer countries where ransoms can’t be paid