Microsoft Warns Hackers Are Using Blockchain to Hide Malware from Takedown Efforts
Microsoft has warned that cybercriminals are exploiting the BNB Smart Chain—a blockchain platform normally used for cryptocurrency transactions—to distribute malware. Attackers compromise legitimate third-party websites and inject malicious JavaScript code that communicates with smart contracts stored on the blockchain.
What makes this technique particularly dangerous is its resilience. Because the malicious code is embedded in blockchain smart contracts rather than a single server, security teams and website owners cannot simply remove or block it the way they would with a traditional malicious link or file. This gives attackers a more durable and harder-to-disrupt channel for delivering malware to unsuspecting website visitors.
For small businesses, this development is a reminder that compromised websites—even reputable ones—can be used to deliver malware without visitors realising it. As attackers adopt more resilient infrastructure like blockchain-based delivery, traditional detection and blocking methods become less effective, making strong endpoint protection and cautious browsing habits even more important.