Slashdot Mirror


In-Store WiFi Provider Used Starbucks Website To Generate Monero Coins (hackread.com)

hjf writes: On December 2nd, Twitter user Noah Dinkin tweeted a screenshot that showed that Starbucks' in-store "free WiFi" is using their captive portal to briefly mine the Monero cryptocurrency during the 10-second delay splash screen. Starbucks has not yet responded to the tweet, and neither has their wifi provider, Fibertel Argentina. While Dinkin mentioned that the culprit behind the scheme could be Starbucks' in-store wifi provider, it's possible that a cybercriminal could have hacked their website to place CoinHive code secretly. HackRead notes that "just a few days ago researchers identified more than 5,000 sites that were hijacked to insert CoinHive code, yet Starbucks' direct involvement is still unclear." CoinHive is a company that produces a JavaScript miner for the Monero Blockchain that you can embed in your website. Any coins mined by the browser are sent to the owner of the website.

15 of 30 comments (clear)

  1. We need regulation by gurps_npc · · Score: 2

    I have no problem with people doing this, as long a:

    1) They tell the owner of the PC what is going on.

    2) They do not double dip (i.e. also showing advertising and tracking the customers).

    It should be an either/or situation, they either earn money by selling your attention OR they earn money by selling your computer cycles. Not both, and only with notification.

    --
    excitingthingstodo.blogspot.com
    1. Re:We need regulation by omnichad · · Score: 1

      This is just plain Malware. If you want to add an exception to the signature, go for it. If you really intend to mine coins, you're going to use native code or even dedicated GPU/ASIC hardware.

      There is no web site worth 100% of your CPU cycles.

    2. Re:We need regulation by omnichad · · Score: 1

      I have 24 tabs open right now, two of which are Slashdot. My browser CPU usage is 0.6%. I don't know where you dug up your Pentium 90, but put it back in the ground.

    3. Re:We need regulation by Ichijo · · Score: 2

      It should be an either/or situation, they either earn money by selling your attention OR they earn money by selling your computer cycles. Not both...

      Or they earn money from your drink. Ads, computer cycles, or drink--pick one.

      --
      Any sufficiently unpopular but cohesive argument is indistinguishable from trolling.
    4. Re:We need regulation by hjf · · Score: 1

      That's why Starbucks is a global corporation and you're here on /.

    5. Re:We need regulation by rtb61 · · Score: 1

      Doesn't matter a crap whether you mind or not, enough dicks are out there, to pretty much guarantee it will end up being banned, including the fake currency. Some dicks always go to far and spoil the game for everyone and you know it is happening.

      PS most people use their computer for more than one task at a time, one process crippling the entire computer, nobody want's it. I have no problem with fake coin miners using other people's computer facing a real custodial sentence.

      --
      Chaos - everything, everywhere, everywhen
  2. Re:Outsourcing At Its Finest by hjf · · Score: 1

    The wifi provider, Fibertel, is one of the country's largest ISPs and the largest cable operator. It's the argentinian equivalent of Comcast.

  3. Re:Trouble keeping up with new cryptocurrencies by DontBeAMoran · · Score: 1

    Dude come on it's not that bad. I mean, there's only 927 crypto-currencies listed on coingecko.com so... oh, yeah ok I see what you mean.

    About 900 of those are me-too crap though, you can safely ignore them. Unless they replace Bitcoin one day, in which can you shouldn't ignore them.

    --
    #DeleteFacebook
  4. Block ... by CaptainDork · · Score: 1

    ... coinhive.

    --
    It little behooves the best of us to comment on the rest of us.
  5. Re:Outsourcing At Its Finest by TimSSG · · Score: 1
    Wow, that is really bad. Tim S.

    The wifi provider, Fibertel, is one of the country's largest ISPs and the largest cable operator. It's the argentinian equivalent of Comcast.

  6. Re:Better than PreRoll Video Ads by AvitarX · · Score: 1

    Except that'd be worth not even close to a 30 second video.

    Not even close to a single small text ad.

    --
    Wow, sent an e-mail as suggested when clicking on "use classic" banner, and got a fast response that addressed my msg
  7. Re:"Has not respnded..." by iamgnat · · Score: 1

    How come corporations never respond???

    Among other things, because they aren't really given the opportunity. Generally it's something like:

    • "Journalist": [bangs out story]
    • "Journalist": [calls related parties for comment]
    • "Journalist": [leaves message for those that don't answer directly]
    • "Journalist": [goes ahead and releases article without allowing messages to be returned]

    Even for those where they get a real person, in something the size of Starbucks the answer will invariably be "we'll look into it and get back to you" or "let us find out who you need to talk to". There is still no delay in the publishing though.

    That certainly isn't always true, but it's also not always "[insert big company] is evil and hiding things" either.

  8. Just block it. by thedarb · · Score: 1

    Use a good add or javascript blocker that blocks coin hive. Done.

    --
    This sig intentionally left blank.
  9. Re:"Has not respnded..." by omnichad · · Score: 1

    "Journalist": [goes ahead and releases article without allowing messages to be returned]

    You left out where they call it "[insert big company] refused to comment" - almost universally used with that exact phrasing.

  10. Re:Simple to avoid by omnichad · · Score: 1

    You can host JavaScript anywhere - even on the same domain as the content.