Chainalysis found a 420% increase in onchain malware and a 440% rise in malicious blockchain writes since July 2025, when high-capacity open-source Chinese AI models began producing malicious code with limited safeguards. The firm also identified threat actors it suspects are linked to Iran’s Ministry of Intelligence writing encoded command-and-control routing data onto the Bitcoin blockchain. Attacker-controlled wallets sent small payments to a Bitcoin address historically associated with creator Satoshi Nakamoto, used as a permanent public location for infected devices to retrieve updated instructions.
Source: Read the original article

