Categories: NewsSecurity

Baijiu Malware is Distributed Through the Geocities’ Web Hosting Platform

Consumers fortunate enough to be using the Internet for over a decade right now will remember a platform by the name of Geocities. This platform was quite popular in the early days of internet consumer adoption. It allowed anyone to host a website for free and proved to be quite powerful. A new type of malware, which goes by the name of Baijiu, used the Geocities’ web service to deceive victims.

Internet Criminals Have Not Forgotten About Geocities

It is quite interesting to see how new technology and old internet services can be combined to create a powerful malware strain. The Baijiu malware has caught the attention of security researchers this week. Not only does it use the Geocities’ web service, but it also tries to target people who show an increased interest in North Korea. That latter part is quite interesting, to say the least.

To be more specific there is a big crisis taking place in North Korea. There is a global concern regarding the humanitarian situation in the country. For those who are unaware, North Korea was hit by a major typhoon last year, and humanitarian help has been underway ever since. However, the government does not reveal much information regarding these efforts whatsoever.

People who show an interest in this situation are now targeted by this new type of malware. Victims are tricked into clicking a malicious file hosted on a Geocities website which promises to tell them more about how the humanitarian situation is unfolding right now. It is an interesting play by cybercriminals, that much is certain.

Related Post

As one would somewhat expect, this malware is mainly designed to infect computers with espionage tools. This will allow the criminals to steal data from their victims, although it is a bit unclear as to what the criminals are after exactly. In most cases, criminals look to extract information related to financial problems and logins for other online services.

Baijiu sets itself apart from the competition due to some other features as well. Unlike most current types of malware, Baijiu has proven to be quite a complex piece of work. Rather than using a more traditional phishing attack, its developers are actively targeting a specific group of users. Moreover, the malware successfully hides as long as possible, making detection nearly impossible.

The use of Geocities to spread this malware is what stands out to most technology enthusiasts, though. Yahoo still owns this web hosting service provider, and Geocities is still free to use. Moreover, it provides high bandwidth and does not require users to go through a thorough signup process. This makes it rather appealing to cybercriminals, and it is not unlikely more criminals will use this platform for future attacks.

If you liked this article, follow us on Twitter @themerklenews and make sure to subscribe to our newsletter to receive the latest bitcoin, cryptocurrency, and technology news.

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

Bitwise Launches Its First Tokenized Fund With $259M in Assets and 4% Annual Yield

Bitwise Asset Management has just made its first move into tokenized funds, and it comes…

10 hours ago

Binance Launches US Stocks and ETFs Trading for Non-US Users With Zero Commission

Binance just made a move that blurs the line between crypto exchange and traditional brokerage…

11 hours ago

NEAR Protocol Ships Confidential Payments, Crosses $19B in Intents Volume, and Partners With Bermuda Government

NEAR Protocol has had a month that most blockchain projects would stretch across an entire…

1 day ago

Chainlink Records 7 New Integrations Across 6 Services and 4 Chains

Something is becoming increasingly clear about Chainlink, the integrations are not slowing down. The protocol…

1 day ago

Circle Freezes $12.6 Million in Zama’s Confidential USDC Contract on Ethereum

Blockchain investigator ZachXBT has flagged a major stablecoin freeze that is sending shockwaves through the…

2 days ago

Exponent Finance Launches V2 To Expand Institutional Yield Markets On Solana

From a primarily interest rate swap niche product, Exponent has developed into an onchain capital…

3 days ago