Cybersecurity Company: Hackers Ransom YouTube Bloggers to Promote Cryptocurrency Mining Trojans
ChainCatcher news, according to Decrypt, cybersecurity company Kaspersky has discovered that hackers are using copyright complaints to threaten YouTube content creators, forcing them to add the cryptocurrency mining Trojan SilentCryptoMiner in their video descriptions. This malware is based on XMRig and is used to mine cryptocurrencies such as Ethereum, Ethereum Classic, Monero, and Ravencoin, and it controls a botnet via the Bitcoin blockchain.The primary targets of the hackers are YouTubers who provide installation tutorials for the Windows Packet Divert driver. They first launch false copyright complaints against the videos, then contact the creators claiming to be the developers of the driver, demanding that they add malicious links. Currently, it is known that one YouTuber with 60,000 followers has fallen victim, leading to over 40,000 downloads of the infected files. Kaspersky estimates that at least 2,000 devices have been infected.Kaspersky security researcher Leonid Bezvershenko warned that hackers are exploiting the trust between YouTubers and their audiences, and such threats may spread to platforms like Telegram. He advises users not to trust tutorials that request disabling antivirus software and to verify the source before downloading any files to prevent infection by cryptocurrency mining Trojans.