Advertisements

Here’s Where $800 Of Bitcoin Buys You $10,000 Cash

Researchers from cloud security-as-a-service provider Armor’s Threat Resistance Unit (TRU) have been taking a deep dive into a dozen dark markets and forums. Analysis of the data compiled from trawling these English and Russian-speaking criminal marketplaces has been published in the annual Armor Black Market Report. As well as the usual tracking of the prices for stolen credit cards, bank account credentials and Distributed Denial of Service (DDoS) for-hire operators, there was one surprising new trend: a Bitcoin to cash conversion scheme that offers criminal buyers the opportunity to buy cash for pennies on the dollar. Paying $800 (£647) in Bitcoin gets you $10,000 (£8,095) in cash.

The Black Market Report

The Armor Black Market Report is the result of researchers from the Armor TRU trawling through underground internet markets and criminal forums. These “dark markets” are notorious for selling just about anything that can be stolen online, from personal and financial data to illicit services such as articles of incorporation for creating shell companies, the distribution malicious spam and even hackers for hire who will scrub your credit history.

The TRU research team analyzed and compiled data from twelve dark markets and criminal forums visited between February and June 2019. It came as no surprise to me that they found cybercriminal after cybercriminal selling credentials for as yet “unhacked” Windows remote desktop (RDP) servers. These are often used by ransomware actors looking for an entry point into corporate networks. That these credentials were being sold for as little as $20 (£16) was unexpected though. The cost of entry, quite literally, to the ransomware threat sector has never been cheaper.

Today In: Innovation

Neither, for that matter, has the cost of cold, hard cash. The TRU researchers found that, partly to get noticed in a crowded market and partly to offset the risk of monetizing stolen banking and credit card accounts, entrepreneurial threat actors are selling cash for between 10 and 12 cents on the dollar. This isn’t, as you might have guessed, a case of criminal philanthropy.

Instead, it’s a method for criminals to offload the risk of monetizing stolen account credentials by transferring the funds available rather than taking possession of them. It’s still money laundering, and it’s illegal, but it puts the most significant weight of risk onto the buyer.

Here’s how the buy cash for Bitcoin scheme works

The seller offers bundles of cash in various amounts, from $2,500 (£2,020) to $10,000 (£8,095) in exchange for a pre-paid fee in Bitcoin. That fee varies between 10% and 12%. Which means that $10,000 of cold cash can be bought for $800 in Bitcoin.

The buyer makes the payment and then chooses how they would like to collect the cash. This can be a straightforward transfer of funds to a bank or PayPal account or wired via Western Union. As well as getting a significant return on their illicit investment, the purchaser no longer has to worry about monetizing online bank account or credit card credentials. It’s a turn-key service; there’s no risky logging into compromised accounts, no money mules to worry about, just the (totally illegal) collection of cash.

“For those scammers who don’t possess the technical skills and a robust money mule network to monetize online bank account or credit card credentials, this is an offer that can be very attractive,” Chris Hinkley, head of Armor’s TRU team said, “the threat actors are still selling financial account and credit card credentials outright, but this clever service gives them an additional channel for monetizing the large amounts of financial data available on the underground.”

Money mules served well by dark market documentation

One of the other interesting things to come out of this analysis was the fact that cybercriminals are selling articles of incorporation and sole proprietorship papers on the dark market. Not shocking, but interesting. While the cash for Bitcoin transactions gets rid of the money mule requirement, there are still plenty of people who adopt that role, and these papers are aimed at them. A money mule is someone who transfers stolen money between accounts in exchange for a fee of between 10% and 20% of the value. For a money mule to be successful, they need to open business bank accounts that don’t trigger fraud alerts on larger transfer volumes. To open these accounts, they need an Employer Identification Number (EIN) assigned by the U.S. Internal Revenue Service, and that’s where the documentation to create shell companies enters the equation. The documentation does not come cheap, however. Sole proprietorship papers complete with EIN were found on sale for $1,611 (£1,298), and Articles of Incorporation with EIN were $811 (£653).

Follow me on Twitter or LinkedIn. Check out my website.

I’m a three-decade veteran technology journalist and have been a contributing editor at PC Pro magazine since the first issue in 1994. A three-time winner of the BT Security Journalist of the Year award (2006, 2008, 2010) I was also fortunate enough to be named BT Technology Journalist of the Year in 1996 for a forward-looking feature in PC Pro called ‘Threats to the Internet.’ In 2011 I was honored with the Enigma Award for a lifetime contribution to IT security journalism. Contact me in confidence at davey@happygeek.com if you have a story to reveal or research to share

Source: Here’s Where $800 Of Bitcoin Buys You $10,000 Cash

On Paxful you buy bitcoin from other people in real-time. Trading happens online via live chat. Paxful Vendors can earn six figures from the comfort of their home and many do. Once payment is made and verified by the seller, the bitcoin will be released to your wallet. We’ve built a feedback and reputation system on the advice of the very best traders in the space. Use the simplest bitcoin wallet on earth. You can’t make a mistake and know exactly where to go next.

for more info : http://onlinemarketingscoops.com/

Advertisements

Warning Issued After Malware Is Found To Have Hijacked Bitcoin Blockchain

Bitcoin’s blockchain has been hijacked by a new strain of the Glupteba malware that uses the network to resist attacks, cyber security researchers have warned.

The malware uses the bitcoin blockchain to update, meaning it can continue running even if a device’s antivirus software blocks its connection to servers run by the hackers, security intelligence blog Trend Micro reported this week.

The Glupteba malware, first discovered in December 2018, is distributed through advertising designed to spread viruses through script and can steal an infected devices’ browsing history, website cookies, and account names and passwords with this particular variant found to be targeting file-sharing websites.

However, according to researchers, the new version of the malware can also mine the privacy-specialized monero cryptocurrency and threaten the security of Instagram users’ accounts.

The malware uses the Electrum bitcoin wallet to send bitcoin transactions that the attackers use to gain access to systems.

“This technique makes it more convenient for the threat actor to replace command and control servers,” Trend Micro researchers wrote. A command and control server is the centralized computer that issues commands to an infected network of devices.

The Glupteba malware, first discovered in December 2018, is distributed through advertising designed to spread viruses through script and can steal an infected devices’ browsing history, website cookies, and account names and passwords with this particular variant found to be targeting file-sharing websites.

However, according to researchers, the new version of the malware can also mine the privacy-specialized monero cryptocurrency and threaten the security of Instagram users’ accounts.

The malware uses the Electrum bitcoin wallet to send bitcoin transactions that the attackers use to gain access to systems.

“This technique makes it more convenient for the threat actor to replace command and control servers,” Trend Micro researchers wrote. A command and control server is the centralized computer that issues commands to an infected network of devices.

“If they lose control of a command and control server for any reason, they simply need to add a new bitcoin script and the infected machines obtain a new command and control server by decrypting the script data and reconnecting.”

It’s not the first time the bitcoin blockchain has been taken advantage of by criminals, with German researchers last year discovering child abuse imagery shared via the decentralized network.

Follow me on Twitter.

I am a journalist with significant experience covering technology, finance, economics, and business around the world. As the founding editor of Verdict.co.uk I reported on how technology is changing business, political trends, and the latest culture and lifestyle. I have covered the rise of bitcoin and cryptocurrency since 2012 and have charted its emergence as a niche technology into the greatest threat to the established financial system the world has ever seen and the most important new technology since the internet itself. I have worked and written for CityAM, the Financial Times, and the New Statesman, amongst others. Follow me on Twitter @billybambrough or email me on billyATbillybambrough.com. Disclosure: I occasionally hold some small amount of bitcoin and other cryptocurrencies.

Source: Warning Issued After Malware Is Found To Have Hijacked Bitcoin Blockchain

by Christian Karam & Vitaly Kamluk The blockchain is the public ledger stacking all bitcoin/altcoins transactions. It is constantly growing as “completed” blocks are automatically added to it with a new set of records. The blocks are added to the blockchain in a linear and chronological order. The blockchain has complete information about the addresses and their balances right from the genesis block to the most recently completed block through the mining process. Depending on the crypto-currency and the implementation of its protocols, there would be a fixed open space, where data can be stored, referenced or hosted on the blockchain within encrypted transactions and their records. This very versatile nature of the blockchain offers great opportunities for future innovation especially in decentralized systems. The research focus revolves around the threat of embedding decentralized chunks of malware on the blockchain by either hosting it or referencing it with cascaded pointers. Transactions and data are encrypted throughout the blockchain networks using different versions of public/private key encryption. Could malware survive eternally inside crypto-transactions? A proof of concept will be explained highlighting the concerns revolving around the “abuse and bloating” of the blockchain while comparing it to previous malware hosting and deployment models. In this talk, INTERPOL will frame the scope of this future threat and provide potential solutions for a threat surrounding the blockchain technology.

Bitcoin Warning As Serious Security Vulnerabilities Uncovered

Bitcoin developers have been trying to make the world’s most popular cryptocurrency more useful for payments, with the somewhat controversial Lightning Network one of the most popular projects.

However, serious security vulnerabilities have this week been discovered on the bitcoin Lightning Network, which could result in users losing their funds if nodes are not upgraded.

“Security issues have been found in various Lightning projects which could cause loss of funds,” wrote software developer, Rusty Russell, who authored the majority part of bitcoin’s Lightning Network protocol specification, in a post shared via a Lightning Network mailing list. “Full details will be released in four weeks, please upgrade well before then.”

The specifics of the vulnerability will be disclosed on 27 September, a common software security practise to both prevent bug exploitation and give developers time to patch problems.

The vulnerability appears to be related to the lightning-ready bitcoin wallet Eclair, which Russell also advised users to update.

The Lightning Network, first proposed by Thaddeus Dryja and Joseph Poon in a 2015 white paper, creates a layer on top of the bitcoin blockchain, where transactions can be passed back and forth before being added to the underlying blockchain.

Today In: Money

This should mean bitcoin transaction speeds are increased while costs are significantly reduced.

There are now a few different Lightning-ready wallets available, as well as companies that are able to process them on behalf of merchants.

However, low user numbers mean bitcoin lightning nodes currently lose money when they process transactions, according to recent reports.

When sending a Lightning payment, two parties deposit the funds at one bitcoin address, a so-called channel, in which they can exchange funds a limitless number of times.

This maintains bitcoin’s security but means small, regular payments don’t need to be added to the underlying blockchain until the channel is closed.

Questions have been raised about what Lightning Network adoption will mean for the bitcoin price, with much of the price dependent on transaction fees picked up by miners.

Most are though confident that with increased bitcoin adoption the price will continue to rise.

Follow me on Twitter.

I am a journalist with significant experience covering technology, finance, economics, and business around the world. As the founding editor of Verdict.co.uk I reported on how technology is changing business, political trends, and the latest culture and lifestyle. I have covered the rise of bitcoin and cryptocurrency since 2012 and have charted its emergence as a niche technology into the greatest threat to the established financial system the world has ever seen and the most important new technology since the internet itself. I have worked and written for CityAM, the Financial Times, and the New Statesman, amongst others. Follow me on Twitter @billybambrough or email me on billyATbillybambrough.com. Disclosure: I occasionally hold some small amount of bitcoin and other cryptocurrencies.

Source: Bitcoin Warning As Serious Security Vulnerabilities Uncovered

By Daniel Chechik, Ben Hayak, and Orit Kravitz Chechik A mysterious vulnerability from 2011 almost made the Bitcoin network collapse. Silk Road, MTGox, and potentially many more trading websites claim to be prone to “Transaction Malleability.” We will shed some light and show in practice how to exploit this vulnerability.

US Lawmakers Are Realizing They Can’t Ban Bitcoin

Those who have been longtime critics of Bitcoin usually have one key theory in common, which is that governments will eventually ban Bitcoin and cryptocurrency will then cease to exist in any meaningful form. For examples of this point of view, just look at economist Nouriel Roubini and JPMorgan Chase CEO Jamie Dimon.

That said, implementing such a ban is no easy task. After all, Bitcoin was built by cypherpunks as a form of digital money that would be unaffected by the desires of politicians and regulators around the world.

Lately, it appears that lawmakers in the United States are starting to realize the difficulties associated with a potential Bitcoin ban.

Bitcoin Ban Deemed Unlikely During Congressional Hearings

On Tuesday, the U.S. Senate Committee on Banking, Housing and Urban Affairs held a hearing on cryptocurrency and blockchain technology regulation. During that hearing, Senate Banking Committee Chairman Mike Crapo (R-ID) shared his belief that the United States would not be able to succeed in banning Bitcoin.

“If the United States were to decide — and I’m not saying that it should — if the United States were to decide we don’t want cryptocurrency to happen in the United States and tried to ban it, I’m pretty confident we couldn’t succeed in doing that because this is a global innovation,” said Crapo.

This statement came in the form of a question to Jeremy Allaire, who is the co-founder and CEO of global financial services company Circle. In his response, Allaire explained the new reality created by the creation of Bitcoin.

“I think the challenge that we all face with this is some of these cryptocurrencies — they’re literally just a piece of open-source software,” said Allaire. “There’s nothing else. It exists on the internet, it’s open-source software, anyone can implement it, it runs wherever the internet runs, and these have a monetary policy where these assets are algorithmically generated . . . That is a challenge that every government in the world now faces — that money, digital money, will move frictionlessly everywhere in the world at the speed of the internet.”

These remarks made during Tuesday’s hearing follow comments made by U.S. Congressman Patrick McHenry (R-NC) from earlier in the month when he stated “there’s no capacity to kill Bitcoin” during an interview with CNBC.

Back in May, Congressman Brad Sherman (D-CA) claimed that Congress should implement a ban on Bitcoin, but Sherman did not share specific details as to how such a ban could be effectively achieved.

                                

The difficulties associated with implementing a ban on Bitcoin are behind one economist’s theory that the best way to kill the cryptocurrency would be for governments to become more competitive in terms of monetary policy and financial freedom.

Abra CEO Bill Barhydt has also pointed out that bringing forth a Bitcoin ban could be legally difficult for the U.S. Government. That said, there is growing support for bans on encryption-based technologies among various law enforcement agencies in the United States, in addition to the Trump White House.

On the other hand, more centralized cryptocurrency systems like Facebook’s Libra project, which is really a cryptocurrency in name only, would be much easier for governments to control.

It should be noted that extreme limitations on technology and financial freedom, such as the new cash-related bill making its way through the Parliament of Australia, may end up unintentionally educating more people as to why Bitcoin has value in the first place.

Follow me on Twitter. Check out my website.

I’m a writer who has been following Bitcoin since 2011. I’ve worked all over the Bitcoin media space — from being editor-in-chief at Inside Bitcoins to contributing to Bitcoin Magazine on a regular basis. My work has also been featured in Business Insider, VICE Motherboard, and many other financial and tech media outlets. I’m mostly interested in the use of Bitcoin for transactions that would be censored by the traditional financial system (think darknet markets and ransomware) in addition to the use of bitcoin as an unseizable, digital store of value. Altcoins, appcoins, and ICOs don’t make much sense to me. Find all of my work at kyletorpey.com. Disclosure: I hold some bitcoin.

Source: US Lawmakers Are Realizing They Can’t Ban Bitcoin

Iceland: Figurehead in Bitcoin Miner Heist Jailed for More Than Four Years

An Icelandic man has received a four-and-a-half-year prison sentence for stealing Bitcoin mining equipment, local English-language news outlet Iceland Monitor reported Jan. 17. Sindri Þór Stefánsson, who in April 2018 boarded a flight to Stockholm from Reykjavik reportedly with a stolen passport, was subsequently arrested in Amsterdam and returned home. Stefánsson claimed he legally fled custody to Sweden. In court, Stefánsson, along with six accomplices, received a lengthy jail term.

Source: Iceland: Figurehead in Bitcoin Miner Heist Jailed for More Than Four Years

This Bitcoin Price Tracking Traffic Light Isn’t Just A Red LED — Hackaday

1.jpg

Quick, what’s the price of Bitcoin? Is it lower today than yesterday? Are you overdrafting your Lamborghini account? What if you had an easy way to tell at a glance how much you could have made if you sold in December of last year? That’s what this Bitcoin price tracking traffic light is all about, and it’s a great use of existing electronics. The hardware for this build is a traffic light table lamp available on Amazon for twenty bucks. Inside this traffic light, you get a PCB with three LEDs and a small microcontroller to control the LEDs. The …read more

via This Bitcoin Price Tracking Traffic Light Isn’t Just A Red LED — Hackaday

Bitcoin sinks below $4,000 as the crypto market takes another hefty beating — TechCrunch

As we hang out with family and friends this holiday season, it’s interesting to look back on the Bitcoin mania that we endured one Thanksgiving ago. Aunts and uncles asking about internet money as you passed the mashed potatoes while trying to explain the concept of decentralization in a way that made it seem like […]

via Bitcoin sinks below $4,000 as the crypto market takes another hefty beating — TechCrunch

Here’s how to protect your bitcoin and ethereum from hacking

https://www.pivot.one/share/post/5c1f94ab016de74b6531f993?uid=5bd49f297d5fe7538e6111b6&invite_code=JTOJYV

This Kid Has Been Begging For A Bitcoin For Over 15,000 Tweets

1.jpg

Begging in the Bitcoin world is nothing new. Go to any gambling site or even some exchange troll boxes, and you will find people asking for Bitcoin. Look at any Tweet by a major Bitcoin personality, and you will find people asking for Bitcoin. Go to any forum, Reddit related to cryptocurrency, or anything else of that nature, and you will find the same. This reporter has occasionally seen such people who consistently beg for cryptos referred to as “begshits” or “trolls.” The negative connotation is not without merit. After all, there are plenty of ways to get crypto without buying it or even really working for it. This Twitter account, which is likely powered by a script of some sort, has spammed “BeastGangPaulers” for crypto consistently..Read more…

 

 

Donate us if you like

 

 

 

Bitcoin Scammers Hack into Twitter Accounts of Target, The Body Shop (Among Others) – Jodie Lauren Smith

1

Target and The Body Shop were targeted in a new wave of verified Twitter account hacks. This new attack follows a wave of similar attacks, including the attack where hackers masqueraded as Elon Musk by changing the name of other verified accounts they hacked into. Hackers used Elon Musk’s identity and credibility within the industry to encourage users ot part with their Bitcoin in exchange for more Bitcoin that never materialized.

In this latest attack, a crypto giveaway was the focus of the tweets, and a link was included so users could take part. More than a few high profile accounts were targeted including TargetToledo Rockets, The Body Shop, Universal Music Czech Republic, the Agriculture and Horticulture Development Board (AHDB).

It is not yet clear how hackers managed to hack the accounts, however since the English used within the tweets is substandard, it is assumed the hackers are not native English speakers. While this may seem like a hint to most people that the Twitter account is not genuine, often this is intentional. For example with Nigerian inheritance and love scams, the scammers often use poor English as a means of making sure they only receive responses from the most gullible people, which are usually the most vulnerable people to these types of scams.

The relative success of these scams goes to highlight the trust people put into the verified account ‘tick’ on Twitter profiles. For many people, as soon as they see the tick, they believe they are dealing with a legitimate person or company that they can trust. Hackers are exploiting this to target a wide array of people. The attacks also prey on people’s excitement over cryptocurrency and the desire to get involved in this new and exciting area of financial technology. Many people have been wanting to dip their toe in the cryptocurrency pool, but aren’t sure how to go about it. Big businesses that are accessible to the public also add an air of legitimacy for those people wanting to segway into crypto.

Twitter hasn’t released a formal response specifically around these attacks, although pressure is mounting for them to do so. Twitter needs to find a way to make these types of attacks impossible, otherwise, users will become more fearful and less trusting of the platform.

Hopefully, Twitter can find a solution before the next wave of attacks. This seems to be a method hackers wanting to scam people out of cryptocurrency keep returning to, suggesting that it is very profitable and worth the effort to hack the accounts.

 

 

 

Donate us if you like

%d bloggers like this:
Skip to toolbar