Middle East Daily
    Hot News
    Business

    EDGE Group and Fincantieri Move to Jointly Develop Underwater Solutions

    Business

    CABSAT 2024 To Highlight Latest Innovations In Media And Entertainment Sectors, Promises To Transform Industry’s Future

    Business

    Panasonic Announces FY24 Business Strategy For Sustained Growth in Middle East and Africa 

    Important Pages:
    • Privacy Policy
    • Terms & Conditions
    Facebook Twitter Instagram Pinterest
    • Privacy Policy
    • Terms & Conditions
    Friday, March 20
    Facebook Twitter
    Middle East Daily
    • Home
    • News

      Kuwait shimmers in national colors; MoI at the ready

      Faraday Future Announces New FX Super One Deliveries in the Middle East as It Continues to Advance Towards the Region’s 2026 Delivery Goals

      Faraday Future Announces the FX Super One Roadmap for Mass Production, Sales, Delivery, Service and Ramp-Up and Its Entry into Embodied AI Robotics

      Faraday Future Exhibits at WETEX 2025 and Announces FX SuperOne Final Launch on October 28 in Dubai

      Al Jalila Foundation supports 60 organ transplant patients through “Your Donation Saves Lives” campaign

    • Business

      Air Travel Demand Will More Than Double by 2050

      Celebrate Eid Al Fitr with your beloved ones at Waldorf Astoria Kuwait

      KIB facilitates “Eidiya” access across branches and ATMs ahead of Eid Al Fitr

      KIB’s AGM approves 8% cash dividend and 5% bonus shares for the year 2025

      Celebrate Eid Al Fitr with shopping, cash rewards, and family fun at Mercato & Town Centre Jumeirah!

    • Technology

      FF Delivers FX Super One to UAE’s Infinite Glory and Noorizon, Deepening Local Ecosystem Integration and Advancing User Deliveries in the Middle East

      UGC-Driven Music Market in MENA Becomes Increasingly Diverse as TikTok Remains the Primary Launchpad for Viral Tracks, 0to8 Reports

      CedarBridge begins deploying third private equity fund across the GCC

      SBC Summit Malta Brings SEO Experts to Tackle Search in 2026

      SBC Summit Malta 2026 Rolls Out Dual-Structure Agenda Merging Strategy and Practice

    • Lifestyle

      Eqvilent Employee-Athlete Wins International Dressage Championship for UAE

      Emirates’ latest services and enhancements for customers with accessibility requirements

      Dubai’s rise as the global capital of branded residences: Documented by Provident

      Joel Corry and Imanbek to headline star-studded SBC Summit Opening Party

      Ultra comfort, from sleep to workout: Samsung Galaxy Watch8 Series now available for UAE pre-orders

    • Submit A Press Release
    Breaking News:
    • Air Travel Demand Will More Than Double by 2050
    • Celebrate Eid Al Fitr with your beloved ones at Waldorf Astoria Kuwait
    • KIB facilitates “Eidiya” access across branches and ATMs ahead of Eid Al Fitr
    • KIB’s AGM approves 8% cash dividend and 5% bonus shares for the year 2025
    • Celebrate Eid Al Fitr with shopping, cash rewards, and family fun at Mercato & Town Centre Jumeirah!
    • IATA Launches DG Digital to Fully Digitalize Dangerous Goods Declarations
    • Air Cargo Enable $157 Billion in Frontloaded Trade and Supported AI Growth in 2025
    • G-SHOCK Introduces the GA-2100K Series Inspired by the Energy of Nightlife
    Middle East Daily
    Home » Kaspersky uncovers $500K crypto heist through malicious packages
    Business

    Kaspersky uncovers $500K crypto heist through malicious packages

    Share
    Facebook Twitter LinkedIn Pinterest WhatsApp

    Kaspersky GReAT (Global Research and Analysis Team) experts have discovered open-source packages that download the Quasar backdoor and a stealer designed to exfiltrate cryptocurrency. The malicious packages are intended for the Cursor AI development environment, which is based on Visual Studio Code — a tool used for AI-assisted coding.

    The malicious open-source packages are extensions hosted in the Open VSX repository that claim to provide support for the Solidity programming language. However, in practice, they download and execute malicious code on users’ devices.

    During an incident response, a blockchain developer from Russia reached out to Kaspersky after installing one of these fake extensions on his computer, which allowed attackers to steal approximately $500,000 worth of crypto assets.

    The threat actor behind these packages managed to deceive the developer by making the malicious package rank higher than the legitimate one. The attacker achieved this by artificially inflating the malicious package’s downloads count to 54,000.

    Search results for the query “solidity”: the malicious extension (highlighted in red) and the legitimate one (highlighted in green).

    After installation, the victim gained no actual functionality from the extension. Instead, malicious ScreenConnect software was installed on the computer, granting threat actors remote access to the infected device. Using this access, they deployed the open-source Quasar backdoor along with a stealer that collects data from browsers, email clients, and crypto wallets. With these tools, the threat actors were able to obtain the developer’s wallet seed phrases and subsequently steal cryptocurrency from the accounts.

    After the malicious extension downloaded by the developer was discovered and removed from the repository, the threat actor republished it and artificially inflated its installation count to a higher number – 2 million, compared to 61,000 for the legitimate package. The extension was removed from the platform following a request from Kaspersky.

    “Spotting compromised open-source packages with the naked eye is becoming increasingly difficult. Threat actors are using increasingly creative tactics to deceive potential victims, even developers who have a strong understanding of cybersecurity risks — particularly those working in the blockchain development field. As we expect adversaries to continue targeting developers, it is recommended that even experienced IT professionals deploy dedicated security solutions to safeguard sensitive data and prevent financial losses,” commented Georgy Kucherin, Security Researcher with Kaspersky’s Global Research and Analysis Team.

    The threat actor behind the attack published not only malicious Solidity extensions but also another NPM package, solsafe, which also downloads ScreenConnect. A few months earlier, three additional malicious Visual Studio Code extensions were released — solaibot, among-eth, and blankebesxstnion — all of them have already been removed from the repository.

    To stay safe, Kaspersky recommends:

    • Use a solution for monitoring the used open-source components in order to detect the threats that might be hidden inside.
    • If you suspect that a threat actor may have gained access to your company’s infrastructure, we recommend using the Kaspersky Compromise Assessment service to uncover any past or ongoing attacks.
    • Verify package maintainers: check the credibility of the maintainer or organization behind the package. Look for consistent version history, documentation, and an active issue tracker.
    • Stay informed on emerging threats: subscribe to security bulletins and advisories related to the open-source ecosystem. The earlier you know about a threat, the faster you can respond.

    More information is available in a report on Securelist.com.

    About Kaspersky

    Kaspersky is a global cybersecurity and digital privacy company founded in 1997. With over a billion devices protected to date from emerging cyberthreats and targeted attacks, Kaspersky’s deep threat intelligence and security expertise is constantly transforming into innovative solutions and services to protect individuals, businesses, critical infrastructure, and governments around the globe. The company’s comprehensive security portfolio includes leading digital life protection for personal devices, specialized security products and services for companies, as well as Cyber Immune solutions to fight sophisticated and evolving digital threats. We help millions of individuals and over 200,000 corporate clients protect what matters most to them. Learn more at www.kaspersky.com.

    Share. Facebook Twitter Pinterest LinkedIn WhatsApp

    Related Posts

    Business

    Air Travel Demand Will More Than Double by 2050

    Business

    Celebrate Eid Al Fitr with your beloved ones at Waldorf Astoria Kuwait

    Business

    KIB facilitates “Eidiya” access across branches and ATMs ahead of Eid Al Fitr

    Business

    KIB’s AGM approves 8% cash dividend and 5% bonus shares for the year 2025

    Business

    Celebrate Eid Al Fitr with shopping, cash rewards, and family fun at Mercato & Town Centre Jumeirah!

    Business

    IATA Launches DG Digital to Fully Digitalize Dangerous Goods Declarations

    Business

    Air Cargo Enable $157 Billion in Frontloaded Trade and Supported AI Growth in 2025

    Business

    G-SHOCK Introduces the GA-2100K Series Inspired by the Energy of Nightlife

    Follow Us
    • Facebook
    • Twitter
    Top Posts
    Business

    MERED Reveals 2025 Buyer Insights on Dubai’s Evolving Premium Property Market

    Dubai, UAE: MERED, the award-winning international real estate developer, has released new buyer insights from ICONIC…

    Business

    METSAKUUR Inc. Accelerates Global Expansion at GITEX Global 2025

    Expands global partnerships by signing MOUs with Middle Eastern partners and advancing customized digital identity…

    Business

    Meraki Developers announces launch of The Haven III, an exclusive residential community in the heart of Majan, Dubailand

    Dubai, UAE: Meraki Developers, one of Dubai’s leading names in the real estate sector, has recently…

    Business

    Doer Market Expands to Accept Expert Blockchain and Crypto Service Providers

    Doer Market, the innovative online service marketplace for blockchain and Web 3.0 services, is excited…

    Business

    Mercato Unveils its Winter Spectacular: A Magical Festive Season!

    Mercato is welcoming visitors into a world of festive wonder with the launch of its highly anticipated Winter Spectacular, running from 11-25 December 2025. This year’s celebration transforms the mall into a charming Italian-inspired winter village, glowing with twinkling lights, joyful performances, and magical moments for the entire family. With enchanting décor, heartwarming entertainment, creative festive workshops, and delightful meet-and-greet experiences, Mercato promises an unforgettable holiday season for both residents and tourists. Guests can immerse themselves in daily celebrations (excluding Mondays, Tuesdays, and 24

    Welcome to Middle East Daily, your daily dose of news and insights from the heart of the Middle East. Explore the latest headlines, delve into thought-provoking analysis, and engage with stories that define our region's narrative.

    Facebook Twitter
    Categories
    • Business (603)
    • Lifestyle (126)
    • News (134)
    • Technology (97)
    Top Insights
    Business

    Du and China Mobile International explore 5G Advanced connectivity for metro projects

    News

    Declaration on longevity and precision medicine launched at Abu Dhabi Global Health Week

    © 2026 Middle East Daily.
    • Home
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.