Microsoft Uncovers Malware Hiding Commands in Blockchain Smart Contracts
Microsoft's Threat Intelligence team has discovered a widespread malware operation that abuses blockchain technology to stay hidden from security tools. Instead of relying on traditional command servers, the attackers store their malicious instructions inside smart contracts on the BNB Chain, a public blockchain. This makes the malware's communications harder to detect and take down, since blockchain data is decentralised and difficult to remove.
According to Microsoft, the campaign is affecting thousands of Windows systems every day, hitting both corporate networks and individual users. While details on exactly how systems become infected weren't specified, the scale suggests this is a broad, opportunistic campaign rather than a targeted attack on specific organisations.
This technique highlights how cybercriminals are adapting their infrastructure to evade detection by using legitimate technologies like blockchains in unconventional ways. For small businesses, this is a reminder that malware doesn't need to look unusual to be dangerous — attackers are constantly finding new ways to hide their tracks using everyday, trusted technology.