February 12, 2018 By David Bisson 2 min read

Litecoin is the second-most popular cryptocurrency among vendors that operate on the Dark Web, according to recent research.

Recorded Future analyzed 150 message boards, marketplaces and illicit services on the Dark Web and determined that 30 percent of these vendors currently accept Litecoin as an alternative payment system. Not far behind is Dash, another form of cryptocurrency, which is accepted by 1 in 5 digital underground merchants.

Meanwhile, bitcoin still enjoys universal acceptance among Dark Web vendors.

Litecoin Gaining Ground on Bitcoin

According to the report, bitcoin’s rise in popularity has strained the blockchain network, resulting in larger payment fees and rendering these payments “economically infeasible.” In addition, some criminals abuse the blockchain to try to double-spend their bitcoins.

Most vendors have responded by requiring three confirmations before marking a transaction as complete. Such a policy makes Dark Web bitcoin users jittery, especially if they’re purchasing illicit goods such as drugs or weapons.

Litecoin’s code increases the speed of transactions. As a result, transaction fees are low and miners can generate a larger number of coins. Recorded Future asserted that these benefits could ultimately make Litecoin, or a similar cryptocurrency such as Dash, the top choice on the Dark Web within the next year.

Ryan Taylor, CEO of the Dash Core team, told SC Magazine he disagrees with that assessment, noting that the criminal underground doesn’t use his cryptocurrency. “Currently, less than 1 percent of transactions on the Dash network utilize the PrivateSend feature,” he said, “which contradicts the assertion that Dash is on the rise as a Dark Net payments alternative.”

The Growing Risk of Cryptocurrency Mining Attacks

If Litecoin continues to grow in popularity, ransomware authors will surely adopt the cryptocurrency. Bad actors could begin using cryptocurrency mining attacks to generate new Litecoin, which may increase the number of organizations that will be affected by such incidents in the coming years.

More from

Hive0137 and AI-supplemented malware distribution

12 min read - IBM X-Force tracks dozens of threat actor groups. One group in particular, tracked by X-Force as Hive0137, has been a highly active malware distributor since at least October 2023. Nominated by X-Force as having the “Most Complex Infection Chain” in a campaign in 2023, Hive0137 campaigns deliver DarkGate, NetSupport, T34-Loader and Pikabot malware payloads, some of which are likely used for initial access in ransomware attacks. The crypters used in the infection chains also suggest a close relationship with former…

Unveiling the latest banking trojan threats in LATAM

9 min read - This post was made possible through the research contributions of Amir Gendler.In our most recent research in the Latin American (LATAM) region, we at IBM Security Lab have observed a surge in campaigns linked with malicious Chrome extensions. These campaigns primarily target Latin America, with a particular emphasis on its financial institutions.In this blog post, we’ll shed light on the group responsible for disseminating this campaign. We’ll delve into the method of web injects and Man in the Browser, and…

Crisis communication: What NOT to do

4 min read - Read the 1st blog in this series, Cybersecurity crisis communication: What to doWhen an organization experiences a cyberattack, tensions are high, customers are concerned and the business is typically not operating at full capacity. Every move you make at this point makes a difference to your company’s future, and even a seemingly small mistake can cause permanent reputational damage.Because of the stress and many moving parts that are involved, businesses often fall short when it comes to communication in a crisis.…

Topic updates

Get email updates and stay ahead of the latest threats to the security landscape, thought leadership and research.
Subscribe today