The obfuscation game: MUT-9332 targets Solidity developers via malicious VS Code extensions

Datadog Security Research uncovered a campaign by the threat actor MUT-9332 distributing three malicious VS Code extensions—solaibot, among-eth, and blankebesxstnion—that target Solidity developers on Windows. These extensions deploy complex multi-stage malware, including a payload hidden inside an image file, to steal cryptocurrency wallet credentials and maintain persistence on victim systems. #MUT9332 #solaibot #myau

Read More
⚡ Weekly Recap: Zero-Day Exploits, Insider Threats, APT Targeting, Botnets and More

This cybersecurity update covers recent threats, vulnerabilities, and incidents targeting organizations worldwide, emphasizing the importance of resilience and swift action. It highlights developments involving tech giants, nation-state actors, and supply chain attacks affecting multiple systems and entities. #Microsoft #Coinbase #EarthAmmit #Konni #APT28…

Read More
Printer company provided infected software downloads for half a year

When a YouTuber discovered malware infections in software for Procolored UV printers, an investigation revealed multiple malware threats embedded in official software downloads, including the XRed backdoor and a file-infector virus called SnipVex. The compromised software could spread infections through removable drives and network shares, affecting systems installing or using these printer drivers and utilities. #Procolored #XRed #SnipVex

Read More
The Internet’s Biggest-Ever Black Market Just Shut Down Amid a Telegram Purge

A major online black market for crypto scammers and money laundering operations on Telegram has been shut down thanks to investigative efforts and platform bans. The marketplace facilitated over $27 billion in illicit transactions before its closure.Affected: Telegram, Huione Guarantee, Haowang Guarantee, Xinbi Guarantee, Tudou Guarantee, crypto scam operators, illicit financial…

Read More
Xinbi Telegram Market Tied to .4B in Crypto Crime, Romance Scams, North Korea Laundering

Xinbi Guarantee is a Telegram-based black market marketplace facilitating over $8.4 billion in transactions since 2022, primarily using USDT stablecoin. The platform offers illicit services including technology tools, personal data, money laundering, and even criminal activities beyond cybercrime. Affected: Xinbi Guarantee, HuiOne Guarantee, blockchain and cryptocurrency systems, users engaging in illegal…

Read More
Malicious PyPI Package Posing as Solana Tool Stole Source Code in 761 Downloads

Cybersecurity experts have identified a malicious Python package, solana-token, on PyPI that aimed to steal source code and secrets from developers working on blockchain projects. Although removed from PyPI after 761 downloads, it highlights ongoing supply chain risks in cryptocurrency development. Affected: Developers, Blockchain systems, Software supply chains…

Read More
Same name, different hack: PyPI package targets Solana developers

The article highlights the continued rise of software supply chain attacks targeting cryptocurrency projects, exemplified by a malicious PyPI package named solana-token that steals developer secrets and source code. These attacks specifically threaten blockchain development environments and cryptocurrency infrastructure, particularly impacting the Solana platform and its developer ecosystem. #Solana #PyPI

Read More