Close Menu
Cryprovideos
    What's Hot

    Toncoin (TON) Is Most Oversold Asset: How Value Will Be Affected – U.At the moment

    May 9, 2026

    DOGE Worth Prediction: $0.13 Goal by June as Whales Place for Breakout

    May 9, 2026

    Bitcoin Funding Charges Fall To 2020 Lows On Binance — Gas For Additional Upside? | Bitcoinist.com

    May 9, 2026
    Facebook X (Twitter) Instagram
    Cryprovideos
    • Home
    • Crypto News
    • Bitcoin
    • Altcoins
    • Markets
    Cryprovideos
    Home»Altcoins»Solana PumpFun Bot Turns Out to Be Malware in Disguise
    Solana PumpFun Bot Turns Out to Be Malware in Disguise
    Altcoins

    Solana PumpFun Bot Turns Out to Be Malware in Disguise

    By Crypto EditorJuly 5, 2025No Comments2 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email


    A malicious open-source venture on GitHub disguised as a Solana buying and selling bot has compromised person wallets, in accordance with a July 2, 2025, report by cybersecurity agency SlowMist.

    The venture, referred to as “solana-pumpfun-bot”, was printed underneath the GitHub person zldp2002 and shortly gained traction in the neighborhood. However as a substitute of providing actual performance, the bot silently stole cryptocurrencies from customers’ wallets and funneled the funds to a platform referred to as FixedFloat.

    Pretend Bundle, Actual Injury

    SlowMist’s investigation revealed that the bot was constructed with Node.js and used a shady dependency named “crypto-layout-utils”, which isn’t listed in official NPM repositories. As soon as put in, this bundle silently scanned for personal keys and pockets recordsdata on the person’s machine and despatched them to an attacker-controlled server, githubshadow.xyz.

    The malware’s code was closely obfuscated, making it tough to detect. The attacker additionally forked the venture a number of instances utilizing pretend GitHub accounts, amplifying publicity. A few of these forks used an alternate malicious bundle, “bs58-encrypt-utils-1.0.3”.

    Assault Energetic Since Mid-June

    The assault seems to have been energetic since June 12, 2025, and was solely found after a sufferer contacted SlowMist a day after putting in the venture. Publish-exploit on-chain evaluation utilizing SlowMist’s MistTrack software confirmed the stolen funds have been routed to FixedFloat.

    Skilled Warning

    SlowMist strongly cautioned towards working GitHub-based open-source software program that interacts with wallets or non-public keys until completed in a extremely remoted atmosphere. The agency recommends avoiding suspicious or unverified packages, particularly in crypto bot frameworks and automation instruments.

    The case underscores the rising danger of social engineering and dependency hijacking in open-source crypto growth — and the significance of verifying each part earlier than execution.

    Solana PumpFun Bot Turns Out to Be Malware in Disguise
    Twitter

    Linkedin

    Kosta has been working within the crypto business for over 4 years. He strives to current completely different views on a given subject and enjoys the sector for its transparency and dynamism. In his work, he focuses on balanced protection of occasions and developments within the crypto house, offering data to his readers from a impartial perspective.

    Telegram



    Supply hyperlink

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related Posts

    Hacker Drains $5.9M From Ethereum Liquidity Supplier TrustedVolumes

    May 9, 2026

    Litecoin Bulls See XRP Like Breakout Setup as LTC Targets Main Upside

    May 9, 2026

    XRP Flashes Historic Rally Sign, Fueling $12 Worth Hypothesis

    May 9, 2026

    115 Million XRP Withdrawn From Spot Exchanges, Is Demand Rising? – U.Right this moment

    May 9, 2026
    Latest Posts

    Bitcoin Funding Charges Fall To 2020 Lows On Binance — Gas For Additional Upside? | Bitcoinist.com

    May 9, 2026

    Jack Mallers: Wall Avenue Is No Risk to Bitcoin – Bitbo

    May 9, 2026

    Crypto Regulation 2026: Did China Ban Bitcoin? – U.Immediately

    May 9, 2026

    Bollinger Bands Creator Has Simply Gone All In On Bitcoin, Is $100,000 Subsequent? | Bitcoinist.com

    May 9, 2026

    Australian Police Seize Tens of millions in Bitcoin From Alleged Darknet Market Operator – Decrypt

    May 9, 2026

    Trump Media’s Q1 loss widens to $406 million on bitcoin, CRO markdowns

    May 9, 2026

    Bitcoin Miners Bag Revenue: 3,400 BTC Stream Out Of Reserves Since April

    May 9, 2026

    It is likely to be too late for bitcoin’s quantum migration, Mission Eleven report argues

    May 9, 2026

    CryptoVideos.net is your premier destination for all things cryptocurrency. Our platform provides the latest updates in crypto news, expert price analysis, and valuable insights from top crypto influencers to keep you informed and ahead in the fast-paced world of digital assets. Whether you’re an experienced trader, investor, or just starting in the crypto space, our comprehensive collection of videos and articles covers trending topics, market forecasts, blockchain technology, and more. We aim to simplify complex market movements and provide a trustworthy, user-friendly resource for anyone looking to deepen their understanding of the crypto industry. Stay tuned to CryptoVideos.net to make informed decisions and keep up with emerging trends in the world of cryptocurrency.

    Top Insights

    Coinbase Pushes For US Bitcoin Reserve To Strengthen Financial system

    January 19, 2025

    Why a Binance Clone Script is the Greatest Technique for Making a Profitable Crypto Change

    February 3, 2025

    Charles Hoskinson Slams Trump Meme Coin For Politicizing Crypto

    December 19, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    • Home
    • Privacy Policy
    • Contact us
    © 2026 CryptoVideos. Designed by MAXBIT.

    Type above and press Enter to search. Press Esc to cancel.