Wednesday, August 20, 2025
cryptonews100
No Result
View All Result
CryptoNews100
No Result
View All Result
Home Alt Coins Solana

SlowMist Uncovers Malicious GitHub Project Targeting Solana Users

cryptonews100_tggfrn by cryptonews100_tggfrn
July 4, 2025
in Solana
0
SlowMist Uncovers Malicious GitHub Project Targeting Solana Users
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter
Sign up an get up to $1000 USDT!


TL;DR

  • SlowMist uncovered a pretend GitHub repository posing as a Solana buying and selling bot that stole pockets funds utilizing hidden malware in its code.
  • The malicious package deal, crypto-layout-utils, was downloaded from an exterior URL, scanned for personal keys, and despatched them to a server managed by the attacker.
  • SlowMist confirmed that a part of the stolen funds was transferred to FixedFloat and warned concerning the rising sophistication of those assaults.

A pretend GitHub repository used to unfold malware has raised alarm throughout the crypto group following an investigation by cybersecurity agency SlowMist.

The case got here to mild after a person reported the theft of funds from their pockets, which occurred after downloading and working a supposed Solana buying and selling bot revealed by the zldp2002 account. The instrument, disguised as a respectable mission referred to as solana-pumpfun-bot, rapidly gathered an unusually excessive variety of stars and forks, serving to to hide its true objective.

Slowmist post

SlowMist’s evaluation revealed that the code, constructed with Node.js, included a dependency named crypto-layout-utils, which had already been faraway from the official NPM registry. As an alternative, the package-lock.json file had been altered to obtain this library from a GitHub URL managed by the attacker. After de-obfuscating the package deal, researchers confirmed it contained features designed to scan native recordsdata for wallets or private keys and ship them to an exterior server.

Solana ETF

SlowMist Discovered Stolen Funds Moved to FixedFloat

SlowMist additionally uncovered a community of faux GitHub accounts used to fork initiatives and replicate malware variations, artificially inflating public metrics to draw extra downloads. A few of these forks included one other malicious dependency, bs58-encrypt-utils-1.0.3, which started circulating in mid-June. After this package deal was faraway from NPM, attackers switched to utilizing customized obtain hyperlinks to maintain the operation lively.

Utilizing on-chain monitoring instruments, SlowMist detected that a portion of the stolen funds was moved to the FixedFloat platform. The operation mixed social engineering strategies with dependency manipulation in open-source initiatives, main some unsuspecting customers to run malicious code on their techniques.

Crypto security

This incident is a transparent demonstration of the rising sophistication behind assaults concentrating on the crypto sector. Investigators warned of the dangers posed by unverified instruments that deal with property and suggested isolating take a look at environments whereas fastidiously inspecting the origin and dependencies of any software program earlier than execution.



Source link

Related articles

Solana Price Prediction: Cardano Latest News & Why Rollblock Is Predicted As The Best Crypto To Buy Now

Solana Price Prediction: Cardano Latest News & Why Rollblock Is Predicted As The Best Crypto To Buy Now

August 20, 2025
Solana Golden Cross Signals Bull Run, But Remittix Volume Outpaces SOL’s Breakout

Solana Golden Cross Signals Bull Run, But Remittix Volume Outpaces SOL’s Breakout

August 20, 2025
Tags: GitHubmaliciousprojectSlowMistSolanatargetinguncoversusers
Share76Tweet47
Drive and walk to earn crypto!

Related Posts

Solana Price Prediction: Cardano Latest News & Why Rollblock Is Predicted As The Best Crypto To Buy Now

Solana Price Prediction: Cardano Latest News & Why Rollblock Is Predicted As The Best Crypto To Buy Now

by cryptonews100_tggfrn
August 20, 2025
0

Solana and Cardano each noticed value declines over the weekend, inflicting some analysts to make bearish Solana value predictions. With...

Solana Golden Cross Signals Bull Run, But Remittix Volume Outpaces SOL’s Breakout

Solana Golden Cross Signals Bull Run, But Remittix Volume Outpaces SOL’s Breakout

by cryptonews100_tggfrn
August 20, 2025
0

The crypto market is gaining momentum once more this week as Solana Worth demonstrates indicators of a bullish run forward....

Solana (SOL) Price Analysis & Prediction and Rising Crypto to Watch in Q3–Q4 2025

Solana (SOL) Price Analysis & Prediction and Rising Crypto to Watch in Q3–Q4 2025

by cryptonews100_tggfrn
August 19, 2025
0

Because the crypto market navigates a unstable August, Solana stays underneath the microscope for buyers and analysts alike. Mutuum Finance...

Solana App Revenue Plunges 44% in Q2 Despite Efficiency Gains – Bitcoin.com News

Solana App Revenue Plunges 44% in Q2 Despite Efficiency Gains – Bitcoin.com News

by cryptonews100_tggfrn
August 19, 2025
0

Despite seeing a major drop in the Chain GDP, Solana's software income seize ratio grew from 126.5% to 211.6% in...

Solana and Ethereum Show Signs Of Exhaustion Analysts Say Remittix Is Now The Smarter Bet

Solana and Ethereum Show Signs Of Exhaustion Analysts Say Remittix Is Now The Smarter Bet

by cryptonews100_tggfrn
August 19, 2025
0

The crypto market is seeing early indicators of fatigue in Solana and Ethereum as merchants take a cautious stance forward...

Load More

Crypto Fear & Greed Index

Latest Crypto Fear & Greed Index

Recent News

Police warning after £2.1m Bitcoin scam

Police warning after £2.1m Bitcoin scam

August 20, 2025
BTCS rolls out Ethereum ‘bividend’ as NAV discount lingers

BTCS rolls out Ethereum ‘bividend’ as NAV discount lingers

August 20, 2025
Crypto Funds Bleed With Nearly $1B Outflows in BTC and ETH

Crypto Funds Bleed With Nearly $1B Outflows in BTC and ETH

August 20, 2025

Categories

  • Bitcoin
  • Cardano
  • Chainlink
  • Cryptocurrency
  • Dogecoin
  • Elon Musk
  • Ethereum
  • Exchanges
  • Litecoin
  • Pokadot
  • Polygon
  • Real World Assets
  • Shiba Inu
  • Solana
  • sui
  • World Liberty Financial
  • XRP

Download the official CryptoNews100 Android App! Click the button below:

Tags

ADA (207) Bitcoin (781) BlockDAG (156) BTC (217) bullish (134) Buy (255) Cardano (350) ChainLink (275) crypto (928) Cryptocurrency (338) Detail (124) DOGE (164) Dogecoin (346) ETF (186) ETH (229) Ethereum (494) flash (128) gains (130) hits (119) Inu (255) key (122) launches (141) Link (135) market (268) million (128) News (425) Polkadot (172) POLYGON (163) prediction (152) Presale (142) price (705) rally (192) RWA (172) SHIB (142) Shiba (266) SOL (143) Solana (426) Sui (277) Surge (152) Surges (137) token (147) top (211) TradingView (119) Trump (179) XRP (579)

© 2023 Crypto News100 All Rights Reserved.
By visiting this website, you understand that the content provided within is for educational and entertainment purposes only. Nothing on this site may be constituted as financial advice and this site is not directing you to make any investments in cryptocurrency or in anything else. Thank you for visiting and please proceed responsibly.
As an Amazon Associate I earn from qualifying purchases.

No Result
View All Result
  • Home
  • Bitcoin
  • Ethereum
  • Alt Coins
    • Cardano
    • Dogecoin
    • Litecoin
    • Pokadot
    • Polygon
    • Shiba Inu
    • Solana
    • XRP
  • Crypto Related DEALS

© 2023 Crypto News100 All Rights Reserved.
By visiting this website, you understand that the content provided within is for educational and entertainment purposes only. Nothing on this site may be constituted as financial advice and this site is not directing you to make any investments in cryptocurrency or in anything else. Thank you for visiting and please proceed responsibly.
As an Amazon Associate I earn from qualifying purchases.