Cryptocurrencies Still Lead, But New Contenders Emerge
Cryptocurrencies, especially Bitcoin (BTC), continue to be the preferred method for many transactions, particularly in illicit activities. According to the Australian Federal Police (AFP), a common belief among criminal groups is that cryptocurrency transactions are anonymous and evade law enforcement scrutiny.
The adoption of privacy-centric coins such as Monero (XMR) and Zcash (ZEC) is on the rise, providing a layer of anonymity that complicates tracking efforts by authorities. Data from Kurrie indicates a significant trend on the darknet, where the acceptance of Monero by new marketplaces increased from just above 33% to nearly 50% between 2023 and 2024. This shift highlights a growing preference for methods that prioritize privacy and circumvent surveillance.
Moreover, tools like mixers and tumblers—which obscure transaction histories—are gaining traction. Privacy coins like Zcash, alongside innovative protocols utilizing zero-knowledge proofs, are becoming more popular for those seeking to hide their financial trails. As Kurrie notes, this situation poses a challenge for law enforcement agencies, necessitating the development of advanced blockchain forensic tools and cross-chain analytics to trace illicit funds.
Numerous platforms now provide a range of currencies, escrow services, and automated laundering options, crafting a robust ecosystem for shadowy transactions. Carroll suggests that the mechanisms used in dark web payment systems are increasingly comparable to legitimate online marketplaces, featuring customer protection and dispute resolution systems.
This emergence of sophisticated payment solutions can be partly attributed to a series of exit scams involving players like AlphV/BlackCat. Carroll mentions that there is a growing need among criminal entities to facilitate quick payment processes from victims to sustain ongoing operations.
What Steps Should CISOs Consider?
As organizations navigate the complexities of the dark web, security professionals must adopt a proactive and strategic approach, focusing on intelligence gathering rather than succumbing to fear, according to Currie.
Accessing the dark web, when legal, can be beneficial for various purposes including threat analysis, privacy advocacy, and security development.
Currie emphasizes the importance of proactive dark web monitoring to detect compromised credentials, leaked information, and emerging threats in real-time. Maintaining robust operational security is equally vital. This can involve utilizing trusted Tor browsers, VPNs, dedicated devices, and disabling scripts that might reveal user identity.
For security teams, integrating insights from the dark web into a broader threat intelligence framework is increasingly crucial. These insights not only contextualize cyber risks but also empower teams to adapt and strengthen their defenses against emerging threats. As Currie points out, understanding the behaviors and motivations of threat actors through dark web data significantly enhances a security professional’s capabilities.


