A number of phishing efforts are using the decentralised InterPlanetary Filesystem (IPFS) network to host malware, phishing kit infrastructure, and support other assaults. According to a study provided with The Hacker News by Cisco Talos researcher Edmund Brumaghin, “several malware families are currently being hosted within IPFS and retrieved during the earliest stages of malware attacks.”
The study confirms findings by Trustwave SpiderLabs from July 2022, which discovered more than 3,000 emails using IPFS phishing URLs as an attack vector and dubbed IPFS the “new hotbed” for hosting phishing sites.