Follow

"It looks for a value of sent out from an attacker-controlled 'hardcoded wallet address.'

The first 12 hex characters from a SHA256 digest of this value will serve as the C2 domain address hosted on DynDNS"...

bleepingcomputer.com/news/secu

Sign in to participate in the conversation
Qoto Mastodon

QOTO: Question Others to Teach Ourselves
An inclusive, Academic Freedom, instance
All cultures welcome.
Hate speech and harassment strictly forbidden.