Close Menu
Cryprovideos
    What's Hot

    AAVE Value Holds Above $298 As Protocol Hits $3 Trillion Deposits Milestone

    September 16, 2025

    Why Micropayments? The Web Was Meant To Present Worth To Customers, Not Spy On Them

    September 16, 2025

    Bitcoin Treasury Grows As Capital B Makes Strategic Acquisition: Bullish Market Outlook Nonetheless Lingers | Bitcoinist.com

    September 16, 2025
    Facebook X (Twitter) Instagram
    Cryprovideos
    • Home
    • Crypto News
    • Bitcoin
    • Altcoins
    • Markets
    Cryprovideos
    Home»Altcoins»Solana PumpFun Bot Turns Out to Be Malware in Disguise
    Solana PumpFun Bot Turns Out to Be Malware in Disguise
    Altcoins

    Solana PumpFun Bot Turns Out to Be Malware in Disguise

    By Crypto EditorJuly 5, 2025No Comments2 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email


    A malicious open-source venture on GitHub disguised as a Solana buying and selling bot has compromised person wallets, in accordance with a July 2, 2025, report by cybersecurity agency SlowMist.

    The venture, referred to as “solana-pumpfun-bot”, was printed underneath the GitHub person zldp2002 and shortly gained traction in the neighborhood. However as a substitute of providing actual performance, the bot silently stole cryptocurrencies from customers’ wallets and funneled the funds to a platform referred to as FixedFloat.

    Pretend Bundle, Actual Injury

    SlowMist’s investigation revealed that the bot was constructed with Node.js and used a shady dependency named “crypto-layout-utils”, which isn’t listed in official NPM repositories. As soon as put in, this bundle silently scanned for personal keys and pockets recordsdata on the person’s machine and despatched them to an attacker-controlled server, githubshadow.xyz.

    The malware’s code was closely obfuscated, making it tough to detect. The attacker additionally forked the venture a number of instances utilizing pretend GitHub accounts, amplifying publicity. A few of these forks used an alternate malicious bundle, “bs58-encrypt-utils-1.0.3”.

    Assault Energetic Since Mid-June

    The assault seems to have been energetic since June 12, 2025, and was solely found after a sufferer contacted SlowMist a day after putting in the venture. Publish-exploit on-chain evaluation utilizing SlowMist’s MistTrack software confirmed the stolen funds have been routed to FixedFloat.

    Skilled Warning

    SlowMist strongly cautioned towards working GitHub-based open-source software program that interacts with wallets or non-public keys until completed in a extremely remoted atmosphere. The agency recommends avoiding suspicious or unverified packages, particularly in crypto bot frameworks and automation instruments.

    The case underscores the rising danger of social engineering and dependency hijacking in open-source crypto growth — and the significance of verifying each part earlier than execution.

    Solana PumpFun Bot Turns Out to Be Malware in Disguise
    Twitter

    Linkedin

    Kosta has been working within the crypto business for over 4 years. He strives to current completely different views on a given subject and enjoys the sector for its transparency and dynamism. In his work, he focuses on balanced protection of occasions and developments within the crypto house, offering data to his readers from a impartial perspective.

    Telegram



    Supply hyperlink

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related Posts

    Pi Coin Information: Why Pi Community Traders Are Switching To The Subsequent Large Factor In Crypto 'PayFi'

    September 16, 2025

    How one can Purchase Mom Iggy (MOTHER) Meme Coin With out KYC

    September 16, 2025

    Ethereum Basis launches $2M safety contest for Fusaka improve

    September 16, 2025

    First US Spot XRP ETF Debuts This Week: All You Want To Know

    September 16, 2025
    Latest Posts

    Bitcoin Treasury Grows As Capital B Makes Strategic Acquisition: Bullish Market Outlook Nonetheless Lingers | Bitcoinist.com

    September 16, 2025

    Bitcoin futures merchants de-risk for FOMC, however Coinbase premium reveals spot demand

    September 16, 2025

    US Lawmakers Meet Saylor, Lee on Strategic Bitcoin Reserve – Bitbo

    September 16, 2025

    Bitcoin Value Poised For Breakout As Volatility Hits Historic Lows

    September 16, 2025

    Bitcoin STH Whales Recuperate: Unrealized Income Return | Bitcoinist.com

    September 16, 2025

    Technique Inventory Struggles to Match Bitcoin’s Surge as Valuation Debate Intensifies

    September 16, 2025

    Bitcoin Threat Index Indicators Stability: All Eyes On Fed Resolution

    September 16, 2025

    Binance CEO Redefines Bitcoin in Simply 3 Phrases – U.Right this moment

    September 16, 2025

    CryptoVideos.net is your premier destination for all things cryptocurrency. Our platform provides the latest updates in crypto news, expert price analysis, and valuable insights from top crypto influencers to keep you informed and ahead in the fast-paced world of digital assets. Whether you’re an experienced trader, investor, or just starting in the crypto space, our comprehensive collection of videos and articles covers trending topics, market forecasts, blockchain technology, and more. We aim to simplify complex market movements and provide a trustworthy, user-friendly resource for anyone looking to deepen their understanding of the crypto industry. Stay tuned to CryptoVideos.net to make informed decisions and keep up with emerging trends in the world of cryptocurrency.

    Top Insights

    MIND of Pepe ICO Surpasses $9M, 18 Days Left – Greatest Crypto Presale to Purchase Now

    May 13, 2025

    Polymarket token launch rumors stoked by SEC submitting hinting at token rights

    September 16, 2025

    State-Led Crypto Adoption: Michigan Proposes Strategic Bitcoin Reserve

    February 15, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    • Home
    • Privacy Policy
    • Contact us
    © 2025 CryptoVideos. Designed by MAXBIT.

    Type above and press Enter to search. Press Esc to cancel.