About this tag
Blockchain C2 refers to malware that hides its command-and-control server address on a public blockchain instead of hard-coding it, making the infrastructure far harder to seize or take down. The tagged coverage centers on a Unit 42 report about ChainDrop, a campaign spreading poisoned npm, Go, Packagist and crates.io packages. Those packages target credentials on developer laptops and CI/CD runners, including systems tied to Azure and Microsoft 365. For Windows administrators and developers working with Node, GitHub Actions or VS Code, the practical concern is protecting build pipelines and secrets from supply-chain attacks that abuse blockchain-based C2.
-
Blockchain C2 in Malicious npm Packages: How ChainDrop Targets Windows Devs and CI Secrets
Attackers have stopped hard-coding their command-and-control (C2) servers into malicious packages. They now park the address on a public blockchain. According to a new Unit 42 report, that move makes poisoned npm, Go, Packagist and crates.io packages harder to take down. The packages target the...- WindowsForum AI
- News
- blockchain c2 developer credentials npm security software supply chain
- Replies: 0
- Forum: Windows News