BPOI Banner
Decrypt logo Decrypt logo

Crypto-Stealing Malware Spread Through Fake GitHub Repositories, Kaspersky Warns

Hackers are targeting software developers by spreading malware through fake GitHub repositories, according to new research.

A lot of code on the internet is open source, meaning anyone can use it. But Kaspersky’s Securelist says there’s been an uptick in cybercriminals uploading fake projects in an attempt to deceive victims.

It warns the threat actors involved “went to great lengths to make the repositories appear legitimate to potential targets.”

In one case, a bogus project for a Telegram bot that manages Bitcoin wallets included malware that could allow attackers to obtain a developer’s browsing history or crypto wallet data.

Other components included a clipboard hijacker that scoured the victim’s computer for wallet addresses—replacing them with ones controlled by the attackers.

As of November 2024, one such wallet had received a lump sum of about 5 BTC, worth about $443,000 at the time of writing.

Sensitive information obtained from hackers—which also includes passwords and banking details—is compressed and sent on to the hackers via Telegram.

Kaspersky says vigilance is needed, especially considering code-sharing platforms like GitHub are used by millions of developers around the world.

Such repositories are often used to help save time and complete projects faster by enabling builders to use code that already exists.

“For that reason, it is crucial to handle processing of third-party code very carefully. Before attempting to run such code or integrate it into an existing project, it is paramount to thoroughly check what actions it performs,” it added.

It’s believed that GitVenom’s impact has spread globally—with most of the infections concentrated in Russia, Brazil, and Turkey.

Crypto malware targets devs

This isn’t the only form of malware known to target software developers.

Just last week, Microsoft Intelligence warned that a new variant of XCSSET was doing the rounds that could steal crypto on Apple macOS devices.

That tends to be disseminated through infected Xcode projects, which consist of the files used to create apps for this operating system.

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.

Source link

Connor Sephton

https://decrypt.co/307806/crypto-stealing-malware-spread-through-fake-github-repositories-kaspersky-warns

2025-02-26 15:03:13

bitcoin
Bitcoin (BTC) $ 82,383.07 0.29%
ethereum
Ethereum (ETH) $ 1,805.99 1.22%
tether
Tether (USDT) $ 1.00 0.01%
xrp
XRP (XRP) $ 2.14 0.06%
bnb
BNB (BNB) $ 601.76 0.29%
solana
Solana (SOL) $ 124.67 0.15%
usd-coin
USDC (USDC) $ 1.00 0.01%
dogecoin
Dogecoin (DOGE) $ 0.166501 1.72%
cardano
Cardano (ADA) $ 0.660386 1.93%
tron
TRON (TRX) $ 0.231437 0.35%
staked-ether
Lido Staked Ether (STETH) $ 1,804.25 1.31%
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 82,128.00 0.46%
the-open-network
Toncoin (TON) $ 3.90 5.44%
chainlink
Chainlink (LINK) $ 13.39 1.14%
leo-token
LEO Token (LEO) $ 9.11 5.20%
stellar
Stellar (XLM) $ 0.266792 0.25%
avalanche-2
Avalanche (AVAX) $ 18.87 3.93%
wrapped-steth
Wrapped stETH (WSTETH) $ 2,160.21 1.12%
usds
USDS (USDS) $ 1.00 0.01%
sui
Sui (SUI) $ 2.35 1.52%
shiba-inu
Shiba Inu (SHIB) $ 0.000012 1.88%
hedera-hashgraph
Hedera (HBAR) $ 0.167806 2.43%
litecoin
Litecoin (LTC) $ 86.01 0.63%
mantra-dao
MANTRA (OM) $ 6.25 0.87%
polkadot
Polkadot (DOT) $ 4.04 0.28%
bitcoin-cash
Bitcoin Cash (BCH) $ 299.00 1.35%
bitget-token
Bitget Token (BGB) $ 4.59 0.89%
ethena-usde
Ethena USDe (USDE) $ 1.00 0.02%
pi-network
Pi Network (PI) $ 0.774972 3.71%
weth
WETH (WETH) $ 1,805.69 1.26%
binance-bridged-usdt-bnb-smart-chain
Binance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00 0.09%
hyperliquid
Hyperliquid (HYPE) $ 12.45 2.73%
wrapped-eeth
Wrapped eETH (WEETH) $ 1,917.12 1.34%
whitebit
WhiteBIT Coin (WBT) $ 28.25 0.24%
monero
Monero (XMR) $ 218.15 1.33%
uniswap
Uniswap (UNI) $ 5.87 1.54%
dai
Dai (DAI) $ 0.999679 0.04%
aptos
Aptos (APT) $ 5.29 1.29%
near
NEAR Protocol (NEAR) $ 2.59 0.97%
susds
sUSDS (SUSDS) $ 1.05 0.10%
pepe
Pepe (PEPE) $ 0.000007 3.88%
okb
OKB (OKB) $ 48.36 0.18%
crypto-com-chain
Cronos (CRO) $ 0.101899 0.94%
gatechain-token
Gate (GT) $ 22.29 0.32%
coinbase-wrapped-btc
Coinbase Wrapped BTC (CBBTC) $ 82,301.05 0.40%
mantle
Mantle (MNT) $ 0.793269 1.64%
first-digital-usd
First Digital USD (FDUSD) $ 0.999266 0.03%
internet-computer
Internet Computer (ICP) $ 5.27 1.47%
ethereum-classic
Ethereum Classic (ETC) $ 16.48 0.70%
ondo-finance
Ondo (ONDO) $ 0.790118 1.45%
bitcoin
Bitcoin (BTC) $ 82,383.07 0.29%
ethereum
Ethereum (ETH) $ 1,805.99 1.22%
tether
Tether (USDT) $ 1.00 0.01%
xrp
XRP (XRP) $ 2.14 0.06%
bnb
BNB (BNB) $ 601.76 0.29%
solana
Solana (SOL) $ 124.67 0.15%
usd-coin
USDC (USDC) $ 1.00 0.01%
dogecoin
Dogecoin (DOGE) $ 0.166501 1.72%
cardano
Cardano (ADA) $ 0.660386 1.93%
tron
TRON (TRX) $ 0.231437 0.35%
staked-ether
Lido Staked Ether (STETH) $ 1,804.25 1.31%
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 82,128.00 0.46%
the-open-network
Toncoin (TON) $ 3.90 5.44%
chainlink
Chainlink (LINK) $ 13.39 1.14%
leo-token
LEO Token (LEO) $ 9.11 5.20%
stellar
Stellar (XLM) $ 0.266792 0.25%
avalanche-2
Avalanche (AVAX) $ 18.87 3.93%
wrapped-steth
Wrapped stETH (WSTETH) $ 2,160.21 1.12%
usds
USDS (USDS) $ 1.00 0.01%
sui
Sui (SUI) $ 2.35 1.52%
shiba-inu
Shiba Inu (SHIB) $ 0.000012 1.88%
hedera-hashgraph
Hedera (HBAR) $ 0.167806 2.43%
litecoin
Litecoin (LTC) $ 86.01 0.63%
mantra-dao
MANTRA (OM) $ 6.25 0.87%
polkadot
Polkadot (DOT) $ 4.04 0.28%
bitcoin-cash
Bitcoin Cash (BCH) $ 299.00 1.35%
bitget-token
Bitget Token (BGB) $ 4.59 0.89%
ethena-usde
Ethena USDe (USDE) $ 1.00 0.02%
pi-network
Pi Network (PI) $ 0.774972 3.71%
weth
WETH (WETH) $ 1,805.69 1.26%
binance-bridged-usdt-bnb-smart-chain
Binance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00 0.09%
hyperliquid
Hyperliquid (HYPE) $ 12.45 2.73%
wrapped-eeth
Wrapped eETH (WEETH) $ 1,917.12 1.34%
whitebit
WhiteBIT Coin (WBT) $ 28.25 0.24%
monero
Monero (XMR) $ 218.15 1.33%
uniswap
Uniswap (UNI) $ 5.87 1.54%
dai
Dai (DAI) $ 0.999679 0.04%
aptos
Aptos (APT) $ 5.29 1.29%
near
NEAR Protocol (NEAR) $ 2.59 0.97%
susds
sUSDS (SUSDS) $ 1.05 0.10%
pepe
Pepe (PEPE) $ 0.000007 3.88%
okb
OKB (OKB) $ 48.36 0.18%
crypto-com-chain
Cronos (CRO) $ 0.101899 0.94%
gatechain-token
Gate (GT) $ 22.29 0.32%
coinbase-wrapped-btc
Coinbase Wrapped BTC (CBBTC) $ 82,301.05 0.40%
mantle
Mantle (MNT) $ 0.793269 1.64%
first-digital-usd
First Digital USD (FDUSD) $ 0.999266 0.03%
internet-computer
Internet Computer (ICP) $ 5.27 1.47%
ethereum-classic
Ethereum Classic (ETC) $ 16.48 0.70%
ondo-finance
Ondo (ONDO) $ 0.790118 1.45%