Close Menu
ApeWatcher News
  • Home
  • Advertise
  • Headlines
  • Crypto
    • News
    • Bitcoin
    • Ethereum
    • Altcoin
    • View All
  • DeFi
  • NFT
  • Metaverse
  • Guides
  • Rates
  • Videos
  • Listing Platform
  • BSC
  • ETH
  • Listing Platform
  • BSC
  • ETH
What's Hot

Coinbase (COIN) Buying Deribit for $2.9B a ‘Legitimate Threat’ for Peers, Wall Street Analysts Say

May 8, 2025

Bitcoin Price Watch: On the Verge of History With Only 7.44% Left to Break All-Time High

May 8, 2025

Bitcoin options highlight BTC’s potential to hit new all-time highs

May 8, 2025
X (Twitter) Telegram
  • Listing Platform
  • Home
  • BSC
  • ETH
Advertise
X (Twitter) Telegram
ApeWatcher News
  • Headlines
  • Crypto
    1. News
    2. Bitcoin
    3. Ethereum
    4. Altcoin
    5. View All

    Coinbase (COIN) Buying Deribit for $2.9B a ‘Legitimate Threat’ for Peers, Wall Street Analysts Say

    May 8, 2025

    Bitcoin Price Watch: On the Verge of History With Only 7.44% Left to Break All-Time High

    May 8, 2025

    Bitcoin options highlight BTC’s potential to hit new all-time highs

    May 8, 2025

    Former FTX exec’s wife says gov’t ‘induced a guilty plea’

    May 8, 2025

    Bitcoin options highlight BTC’s potential to hit new all-time highs

    May 8, 2025

    Bitcoin rallies above $101,000 as US state level strategic reserves and mass adoption accelerate

    May 8, 2025

    Trader Says Bitcoin on Cusp of Breaking Out of Bearish Market Structure, Outlines Path to New Multi-Month High

    May 8, 2025

    Rich Dad Poor Dad Author Predicts Largest-Ever Market Crash, Says Bitcoin and Gold Will Protect Against Inflation

    May 8, 2025

    Are layer 2s good for Ethereum, or are they ‘extractive?’

    May 8, 2025

    Ethereum price finally ‘breaking out,’ data suggests — Is $3K ETH next?

    May 8, 2025

    Ethereum EIP-7702 wallets roll out

    May 8, 2025

    Ethereum Pectra upgrade adds new features — How long before ETH price reacts?

    May 7, 2025

    SEC considers easing rules around tokenized securities

    May 8, 2025

    Bitcoin price reclaims $100K for first time since January

    May 8, 2025

    Sweat wallet adds AI assistant and expands to multichain DeFi

    May 8, 2025

    Stripe rolls out stablecoin accounts in over 100 countries

    May 7, 2025

    Coinbase (COIN) Buying Deribit for $2.9B a ‘Legitimate Threat’ for Peers, Wall Street Analysts Say

    May 8, 2025

    Bitcoin Price Watch: On the Verge of History With Only 7.44% Left to Break All-Time High

    May 8, 2025

    Bitcoin options highlight BTC’s potential to hit new all-time highs

    May 8, 2025

    Former FTX exec’s wife says gov’t ‘induced a guilty plea’

    May 8, 2025
  • DeFi
  • NFT
  • Metaverse
  • Guides
  • Videos

    Crypto Boom Incoming? Coinbase Report Signals Major Bull Run

    May 8, 2025

    Bitcoin is going to $200 trillion: Why You NEED To Invest In Crypto in 2025!

    May 8, 2025

    How I Would Invest $20k In Crypto TODAY (Turn $20k Into $200k)

    May 7, 2025

    Fed's $35B Bond Buy: QE is HERE! Bullish Summer Incoming?!

    May 7, 2025

    New Hampshire Goes All In On Bitcoin: Live Free or Die!

    May 7, 2025
ApeWatcher News
Home » Bitcoin News: Hackers Are Stealing BTC from Malicious GitHub Code Bases
Bitcoin News: Hackers Are Stealing BTC from Malicious GitHub Code Bases
News

Bitcoin News: Hackers Are Stealing BTC from Malicious GitHub Code Bases

CoindeskBy CoindeskFebruary 26, 20250 ViewsNo Comments
Share
Facebook Twitter LinkedIn Pinterest Email

The GitHub code you use to build a trendy application or patch existing bugs might just be used to steal your bitcoin (BTC) or other crypto holdings, according to a Kaspersky report.

GitHub is popular tool among developers of all types, but even more so among crypto-focused projects, where a simple application may generate millions of dollars in revenue.

The report warned users of a “GitVenom” campaign that’s been active for at least two years but is steadily on the rise, involving planting malicious code in fake projects on the popular code repository platform.

The attack starts with seemingly legitimate GitHub projects — like making Telegram bots for managing bitcoin wallets or tools for computer games.

Each comes with a polished README file, often AI-generated, to build trust. But the code itself is a Trojan horse: For Python-based projects, attackers hide nefarious script after a bizarre string of 2,000 tabs, which decrypts and executes a malicious payload.

For JavaScript, a rogue function is embedded in the main file, triggering the launch attack. Once activated, the malware pulls additional tools from a separate hacker-controlled GitHub repository.

(A tab organizes code, making it readable by aligning lines. The payload is the core part of a program that does the actual work — or harm, in malware’s case.)

Once the system is infected, various other programs kick in to execute the exploit. A Node.js stealer harvests passwords, crypto wallet details, and browsing history, then bundles and sends them via Telegram. Remote access trojans like AsyncRAT and Quasar take over the victim’s device, logging keystrokes and capturing screenshots.

A “clipper” also swaps copied wallet addresses with the hackers’ own, redirecting funds. One such wallet netted 5 BTC — worth $485,000 at the time — in November alone.

Active for at least two years, GitVenom has hit users hardest in Russia, Brazil, and Turkey, though its reach is global, per Kaspersky.

The attackers keep it stealthy by mimicking active development and varying their coding tactics to evade antivirus software.

How can users protect themselves? By scrutinizing any code before running it, verifying the project’s authenticity, and being suspicious of overly polished READMEs or inconsistent commit histories.

Because researchers don’t expect these attacks to stop anytime soon: “We expect these attempts to continue in the future, possibly with small changes in the TTPs,” Kaspersky concluded in its post.



Read the full article here

Follow us on Google News to get the latest Updates

 
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Coinbase (COIN) Buying Deribit for $2.9B a ‘Legitimate Threat’ for Peers, Wall Street Analysts Say

May 8, 2025

Bitcoin Price Watch: On the Verge of History With Only 7.44% Left to Break All-Time High

May 8, 2025

Bitcoin options highlight BTC’s potential to hit new all-time highs

May 8, 2025

Former FTX exec’s wife says gov’t ‘induced a guilty plea’

May 8, 2025

Senate Votes Against Advancing Stablecoin Bill, Delaying Process as Trump Concerns Fester

May 8, 2025

Celsius Boss Falls: Alex Mashinsky Sentenced to 12 Years for $7B Fraud

May 8, 2025
Add A Comment
Leave A Reply Cancel Reply

Top Articles

Coinbase (COIN) Buying Deribit for $2.9B a ‘Legitimate Threat’ for Peers, Wall Street Analysts Say

May 8, 2025

Bitcoin Price Watch: On the Verge of History With Only 7.44% Left to Break All-Time High

May 8, 2025

Bitcoin options highlight BTC’s potential to hit new all-time highs

May 8, 2025
ApeWatcher News
X (Twitter) Telegram
  • Privacy Policy
  • Sources
  • Terms and Conditions
  • Contact
  • Advertise
© 2025 Ape Watcher News

Type above and press Enter to search. Press Esc to cancel.