Aeternum C2 Botnet Stores Encrypted Commands on Polygon Blockchain to Evade Takedown

Summary

Aeternum C2 is a new botnet loader that leverages the Polygon blockchain for command and control, making it more resilient to takedown attempts. The botnet stores encrypted commands on the blockchain, avoiding traditional server-based infrastructure.

IFF Assessment

FOE

The botnet's blockchain-based command and control makes it harder to disrupt, posing a challenge for defenders.

Defender Context

Defenders should monitor blockchain transactions for suspicious activity related to Aeternum C2 and develop methods to detect and mitigate the botnet's actions. The trend of using decentralized infrastructure for C2 is increasing, requiring new approaches to botnet detection and takedown.

Read Full Story →