logo

New Aeternum C2 Botnet Evades Takedowns via Polygon Blockchain

ID: 739dde81-ea82-5b54-8239-68081a3df968

STIX ID: report--739dde81-ea82-5b54-8239-68081a3df968

Feed Name: HackRead

Threat Score
72/100

Date Published: 2026-02-26

Date Updated: 2026-04-22

Author: Deeba Ahmed

...
...

Aeternum C2 is a novel botnet discovered by Qrator Research Lab that uses Polygon blockchain smart contracts as its sole command-and-control channel, making it resistant to traditional takedown methods. The threat is a C++ loader that fetches permanent smart-contract-based instructions (delivered to infected Windows machines every 2–3 minutes) and supports payloads such as clippers, miners and DDoS activity; it employs anti-VM checks and can be operated cheaply (roughly $1 in MATIC can send 100 commands), enabling persistent, scalable abuse and complicating mitigation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.