Beli Kripto
Market
Spot
Futures
Finansial
Promosi
Selengkapnya
reward-centerPengguna Baru
Beranda FeedDetail Sekilas Info
SlowMist: TRAE Malicious Solidity Extension Exploits On-Chain Contract Dynamic Management C2 Configuration
  • ETH0%

BlockBeats News, July 20th, According to the security firm SlowMist, the malicious TRAE IDE extension juannegro.solidity disguised itself as a Solidity plugin and acted as a cross-platform malware delivery system. This extension would automatically execute upon IDE startup, establish persistence, and utilize an Ethereum smart contract to store and retrieve dynamic C2 configurations, allowing the attacker to update C2 endpoints and payloads without reissuing the extension. Although the extension has been removed from Open VSX, it was still available through the TRAE marketplace as of July 18th. Users who have installed it should immediately uninstall it and check if their systems have been compromised.

Sumber: BlockBeats

Disclaimer: Konten ini berasal dari pihak lain atau diterjemahkan oleh AI dari pihak lain. CoinEx tidak menjamin konten ini benar, asli, atau akurat, dan tidak memberikan saran investasi. Harga aset kripto sangat tidak stabil, jadi harap berhati-hati terhadap risiko yang ada.

Pencarian Teratas
  • Kripto
    Harga
    Perubahan 24J