Developers who specialize in writing smart (primarily Ethereum) contracts using the Solidity programming language have been targeted via malicious VS Code extensions that install malware that steals cryptocurrency wallet credentials. “Based on shared infrastructure and obfuscation characteristics, we attribute all three extensions to a single threat actor, which we track as MUT-9332, that was also behind a recently reported campaign to distribute a Monero cryptominer via backdoored VS Code extensions,” Datadog security researchers have shared. … More →
The post Data-stealing VS Code extensions removed from official Marketplace appeared first on Help Net Security.
http://news.poseidon-us.com/TKvZk6Like this:
Like Loading...
Related