|

Google disrupts massive botnet used by hackers to mine crypto using Bitcoin blockchain

  • Google disrupted the malicious operations of the Glupteba botnet which has been used by hackers to steal account information.
  • The firm filed a lawsuit against two Russian nationals that it believes helped run the malware for the past few years.
  • The disruption may only be temporary as Glupteba utilizes a blockchain system that could allow hackers to remain in control over infected hosts.

Google has disrupted Glupteba, a botnet that has spread malware to roughly a million Windows devices using the Bitcoin blockchain. The American multinational technology company stated that the perpetrators used the botnet to mine cryptocurrencies on victims’ computers.

Glupteba could resume operations shortly 

In a civil complaint filed on December 7 against two Russian nationals Dmitry Staroviko, Alexander Filippov, as well as 15 unknown individuals, Google revealed that Glupteba has infected more than one million machines worldwide. The botnet has been tracked by law enforcement and computer security experts for years.

Google alleged that the defendants used the botnet to steal victims’ account information to sell to third parties and mine cryptocurrencies on victims’ computers. The perpetrators used blockchain technology to protect themselves and bypass traditional tools that could disrupt malicious activities. According to Google executives, Bitcoin’s decentralization made it “much harder to shut down.”

The firm also reached out to internet infrastructure companies to take down services used by the hackers to control the network. Google’s services were used by the perpetrators to distribute the malware. As a result, the company took down approximately 63 million Google Docs, over 1,000 Google accounts and more than 900 Google Cloud projects that were used to spread Glupteba.

Google general counsel Halimah Delaine Prado and vice president of engineering Royal Hansen explained that the company does not only plug security holes, the firm is working to eliminate entire classes of threats for consumers and businesses that depend on the internet.

However, Google warned that Glupteba could continue to operate again due to the fact that the hackers have incorporated a fail-safe mechanism that uses the Bitcoin blockchain to issue commands. 

If the communication between the hackers and the botnet is cut off, the network will automatically search for messages posted by hackers for directions telling it how to reconnect through publicly accessible Bitcoin transactions.

According to blockchain analysis firm Chainalysis, this is the “first known case of a botnet using this approach.”

Author

Sarah Tran

Sarah Tran

Independent Analyst

Sarah has closely followed the growth of blockchain technology and its adoption since 2016.

More from Sarah Tran
Share:

Editor's Picks

Ripple extends losses as derivatives interest cools

Ripple (XRP) extends its bearish roll near $1.12 support on Friday, reflecting intense headwinds in the broader crypto market largely attributable to macroeconomic pressure.

Crypto Today: Bitcoin, Ethereum, XRP weaken further as capital outflows persist

Macroeconomic headwinds continue to weigh heavily on the cryptocurrency market on Friday, prompting major assets like Bitcoin (BTC) to pare earlier gains and extend losses after June’s brief relief rally.

Bitcoin Weekly Forecast: Recovery hopes fade after the Fed spoils the party

Bitcoin is set to end the week in the red, trading near the 200-Week Simple Moving Average at around $62,300 on Friday. Institutional selling persists, capping BTC’s recovery as spot Exchange Traded Funds point to a sixth consecutive week of outflows.

Sui risks a deeper bearish leg despite on-chain resilience

Sui is down 2% on Friday, extending its decline toward the recent support leg formed at $0.6618. The Total Value Locked in the Sui ecosystem has stabilized around 600 million SUI tokens, reflecting resilient user demand.

Bitcoin: Recovery hopes fade after the Fed spoils the party
Bitcoin (BTC) is set to end the week in the red, trading near the 200-Week Simple Moving Average (SMA) at around $62,300 on Friday. Institutional selling persists, capping BTC’s recovery as spot Exchange Traded Funds (ETFs) point to a sixth consecutive week of outflows.