Millions of Android Phones Hijacked to Mine Monero Cryptocurrency: Malwarebytes

Advertisement
By Sumit Chakraborty | Updated: 13 February 2018 18:37 IST
Highlights
  • Hackers have been mining Monero coins via smartphones for months
  • Users presented with CAPTCHA to solve while browser mines Monero
  • Android phone users should use web filters, security software

Millions of Android smartphones have reportedly been hijacked in a drive-by cryptocurrency mining campaign. As per security researchers, over the past few months, hackers have secretly been mining Monero coins via smartphones. According to Malwarebytes researchers, the campaign was first observed in January though it had started around November last year.

According to the report, millions of Android mobile users have been redirected to a specifically designed page "performing in-browser cryptomining." Though the method, the report says, is "automated, without user consent, and mostly silent," visitors are presented with a CAPTCHA to solve to prove that they are human and not a bot.

Advertisement

The warning message reads as "Your device is showing suspicious surfing behaviour. Please prove that you are human by solving the captcha. Until you verify yourself as human, your browser will mine the Cryptocurrency Monero for us in order to recover the server costs incurred by bot traffic." Until a user enters the code, the smartphone or tablet continues mining Monero, damaging the device's processor.

Also see: How to Stop Websites From Using Your Phone or Computer to Mine Bitcoin and Other Cryptocurrencies 

Interestingly, upon clicking entering the code, users are redirected to the Google home page, the report says. Also, the code is static and hardcoded in the page's source, making the process appear malicious. The researchers at Malwarebytes say that victims may face the forced redirection during regular browsing sessions or via infected apps with malicious ads.

Advertisement

"It's possible that this particular campaign is going after low-quality traffic-but not necessarily bots -and rather than serving typical ads that might be wasted, they chose to make a profit using a browser-based Monero miner," Jerome Segura, lead malware intelligence analyst at Malwarebytes, wrote in the blog post.

Malwarebytes identified five domains using the same captcha code and Coinhive site keys used for the campaign. According to the data posted on the blog, at least two websites had more than 30 million visits per month, and the domains combined yielded around 800,000 visits per day.

Advertisement

Unsurprisingly, Web filtering or security applications on smartphones have been highly recommended by the researchers, to prevent such hijacks. They say that forced cryptomining is now affecting mobile phones and tablets not only via Trojanised apps but also via redirects and pop-unders. Meanwhile, here is a guide on how to stop websites from using your phone or computer to mine cryptocurrencies.

 

Also seeCryptocurrency Prices across Indian exchanges

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Oppo Find X9 Ultra, Find X9s Go on Sale in India Ahead of Schedule: Sale Offers
  2. 007 First Light Launch: Release Timings, Price and Everything You Need to Know
  3. Realme 16T vs OnePlus Nord CE 6 vs Motorola Edge 70: Price, Features Compared
  4. Here's When the Redmi Turbo 5 Could Launch in India
  5. Honor 600e With a 108-Megapixel Rear Camera Debuts at This Price
  6. Asus ROG Flow Z13-KJP Review: For Ludens Who Care
  7. Oppo A6c With a 7,000mAh Battery Arrives in India at This Price
  8. Insta360 Luna Ultra Pre-Orders Open, Listed With 8K Video, Leica Lens Before Launch
  9. Kara OTT Release Date Confirmed: When and Where to Watch it Online?
  10. Redmi Note 15 5G, Redmi 15 5G Reportedly Receive Price Hikes in India
  1. Redmi Turbo 5 India Launch Date Tipped; Could Arrive Along With the Redmi 17 5G
  2. Google Introduces Gemini 3.5 Flash Low to Help Antigravity Users Maximise Usage
  3. Oppo Find X9 Ultra and Find X9s Now on Sale in India: Price, Specifications, Sale Offers
  4. 007 First Light Launch: Release Timings, Price and Everything You Need to Know
  5. Bitcoin Struggles Near $76,800 as ETF Outflows Continue to Pressure Markets
  6. Vivo Teases First Over-Ear ANC Headphones Ahead of May 29 Launch
  7. Hai Jawani To Ishq Hona Hai OTT Release Reportedly Revealed Online: What You Need to Know
  8. Honor 600e Launched With 108-Megapixel Rear Camera, 6520mAh Battery: Price, Specifications
  9. TP-Link India Starts Local Manufacturing of Wi-Fi 7 Products Following 6GHz Spectrum Delicensing
  10. Insta360 Luna Ultra Pre-Orders Open, Listed With 8K Video and Leica Lens Ahead of Launch
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.