Bitget App
Trade smarter
Open
HomepageSign up
Bitget>
News>
Crypto Stealing Solana Trading Bot on GitHub Exposed

Crypto Stealing Solana Trading Bot on GitHub Exposed

2025/07/05 00:15
By:
SOL+3.25%

A GitHub page pretending to be a real Solana trading bot was found to be hiding malware that steals crypto. The page was created by a user named “zldp2002” and looked like a real open-source tool. But when users ran it, their crypto got stolen.

The problem came to light after someone lost their funds. Blockchain security firm SlowMist looked into it and found the bot used strange coding patterns and had many fake stars and forks on GitHub to look trustworthy. For further context, all the code was uploaded around three weeks ago.

SlowMist found that the trading bot was built using Node.js and included a package named crypto-layout-utils. This package was already removed from the official Node.js (NPM) registry. Instead of using the official source, the attacker had users download it from a different GitHub page. This raised further suspicion.

When SlowMist experts scanned the package, they detected that it was highly obfuscated (made difficult on purpose) via a jsjiami.com webpage. Upon decoding, they discovered that the package scanned users’ local files. If it detected any wallet-related information or private keys, it would silently send the information to a remote server operated by the attacker.

The analysis also indicated that this was not the only malicious project. The hacker probably had multiple GitHub accounts for publishing similar spoofed projects. These projects were copied (forked) from actual ones and slightly modified to contain malware. Some used another malicious package named bs58-encrypt-utils-1.0.3, which was first introduced on June 12.

This case is part of a larger wave of cyberattacks on crypto users. Recently, hackers also targeted Firefox users with fake wallet extensions and used GitHub to spread harmful code.

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

Soros predicts an AI bubble: We live in a self-fulfilling market

The article uses Brian Armstrong's behavior during the Coinbase earnings call to vividly illustrate George Soros' "reflexivity theory," which posits that market prices can influence the actual value of assets. The article further explores how financial markets actively shape reality, using examples such as the corporate conglomerate boom, the 2008 financial crisis, and the current artificial intelligence bubble to explain the workings of feedback loops and their potential risks. Summary generated by Mars AI This summary was generated by the Mars AI model, and the accuracy and completeness of its content are still being iteratively improved.

MarsBit2025/11/05 15:06
In-depth Research Report on Perp DEX: Comprehensive Upgrade from Technological Breakthroughs to Ecosystem Competition

The Perp DEX sector has successfully passed the technology validation period and entered a new phase of ecosystem and model competition.

深潮2025/11/05 14:17
Space Review|Farewell to the Era of “Narrative Equals Hype”, TRON Rebuilds Market Confidence with Real Yields

As the crypto market shifts from “listening to stories” to “seeing results,” TRON demonstrates a feasible path through its solid ecosystem foundation and value circulation.

深潮2025/11/05 14:15

Trending news

More
1
Soros predicts an AI bubble: We live in a self-fulfilling market
2
In-depth Research Report on Perp DEX: Comprehensive Upgrade from Technological Breakthroughs to Ecosystem Competition

Crypto prices

More
Bitcoin
Bitcoin
BTC
$103,717.91
-0.19%
Ethereum
Ethereum
ETH
$3,387.43
-4.03%
Tether USDt
Tether USDt
USDT
$0.9999
+0.03%
XRP
XRP
XRP
$2.27
-1.49%
BNB
BNB
BNB
$961.94
+0.40%
Solana
Solana
SOL
$159.89
-2.00%
USDC
USDC
USDC
$0.9997
-0.01%
TRON
TRON
TRX
$0.2878
+1.40%
Dogecoin
Dogecoin
DOGE
$0.1666
+0.30%
Cardano
Cardano
ADA
$0.5461
-0.42%
How to buy BTC
Bitget lists BTC – Buy or sell BTC quickly on Bitget!
Trade now
Become a trader now?A welcome pack worth 6200 USDT for new users!
Sign up now
Trade smarter