Middle East Daily
    Hot News
    Business

    Burgan Bank Organizes “Values Unlocked”: An Interactive AR Team-Building Event

    Business

    Moro Hub Awards Green Certificate to united Arab Bank for its commitment to sustainable IT practices

    Business

    KIB launches new Western Union Cash Pickup Service through its Mobile App

    Important Pages:
    • Privacy Policy
    • Terms & Conditions
    Facebook Twitter Instagram Pinterest
    • Privacy Policy
    • Terms & Conditions
    Friday, July 10
    Facebook Twitter
    Middle East Daily
    • Home
    • News

      From Play-to-Earn to Player Ownership: GameChain Collective Drives the Next Gaming Evolution

      Tiësto to Headline INFINITY Lisbon at SBC Summit 2026

      Franc Vila Names Gulf Its Primary Market as Region’s Luxury Watch Sector Approaches $830 Million

      Kuwait shimmers in national colors; MoI at the ready

      Faraday Future Announces New FX Super One Deliveries in the Middle East as It Continues to Advance Towards the Region’s 2026 Delivery Goals

    • Business

      Thailand Introduces ‘Healing Is The New Luxury’ To Meet Growing GCC Demand For Wellness And Medical Travel

      Sharjah Chamber celebrates graduation of Strategic Business Leadership Programme– 4th Cohort 2026 participants

      Qatar Airways Returns to Farnborough International Airshow 2026

      مستشفى كينغز كوليدج لندن – دبي يوسّع برنامج زراعة الأعضاء بإطلاق مركز متخصص لزراعة الكلى

      The Weekly Insulin Revolution: How One Injection a Week Could Transform Diabetes Care Around the World

    • Technology

      Faraday Future Advances Middle East EAI Robotics Strategy Through Strategic Cooperation with Local UAE and GCC Ecosystem Partners

      SBC Summit to Examine What Effective Player Protection Looks Like in Practice

      From Play-to-Earn to Player Ownership: GameChain Collective Drives the Next Gaming Evolution

      CNTXT AI Acquires Actualize to Strengthen Arabic Voice AI for Enterprise and Government Across the GCC

      SBC Summit unveils new pass structure alongside standalone Affiliate Leaders Summit access

    • Lifestyle

      Dubai luxury real estate market strengthens across key price brackets

      Eqvilent Employee-Athlete Wins International Dressage Championship for UAE

      Emirates’ latest services and enhancements for customers with accessibility requirements

      Dubai’s rise as the global capital of branded residences: Documented by Provident

      Joel Corry and Imanbek to headline star-studded SBC Summit Opening Party

    • Submit A Press Release
    Breaking News:
    • Thailand Introduces ‘Healing Is The New Luxury’ To Meet Growing GCC Demand For Wellness And Medical Travel
    • Sharjah Chamber celebrates graduation of Strategic Business Leadership Programme– 4th Cohort 2026 participants
    • Qatar Airways Returns to Farnborough International Airshow 2026
    • مستشفى كينغز كوليدج لندن – دبي يوسّع برنامج زراعة الأعضاء بإطلاق مركز متخصص لزراعة الكلى
    • The Weekly Insulin Revolution: How One Injection a Week Could Transform Diabetes Care Around the World
    • DEWA and Dubai Taxi Company inaugurate Dubai’s first ultra-fast EV charging hub
    • Global Partnership Leader Jeson Zheng Highlights UAE’s Role as a Strategic Connector at WSIS Forum 2026 in Geneva
    • SBC Summit Gives Delegates Direct Access to Regulators Through New Regulatory Gaming Meetups
    Middle East Daily
    Home » Kaspersky uncovers $500K crypto heist through malicious packages
    Business

    Kaspersky uncovers $500K crypto heist through malicious packages

    Share
    Facebook Twitter LinkedIn Pinterest WhatsApp

    Kaspersky GReAT (Global Research and Analysis Team) experts have discovered open-source packages that download the Quasar backdoor and a stealer designed to exfiltrate cryptocurrency. The malicious packages are intended for the Cursor AI development environment, which is based on Visual Studio Code — a tool used for AI-assisted coding.

    The malicious open-source packages are extensions hosted in the Open VSX repository that claim to provide support for the Solidity programming language. However, in practice, they download and execute malicious code on users’ devices.

    During an incident response, a blockchain developer from Russia reached out to Kaspersky after installing one of these fake extensions on his computer, which allowed attackers to steal approximately $500,000 worth of crypto assets.

    The threat actor behind these packages managed to deceive the developer by making the malicious package rank higher than the legitimate one. The attacker achieved this by artificially inflating the malicious package’s downloads count to 54,000.

    Search results for the query “solidity”: the malicious extension (highlighted in red) and the legitimate one (highlighted in green).

    After installation, the victim gained no actual functionality from the extension. Instead, malicious ScreenConnect software was installed on the computer, granting threat actors remote access to the infected device. Using this access, they deployed the open-source Quasar backdoor along with a stealer that collects data from browsers, email clients, and crypto wallets. With these tools, the threat actors were able to obtain the developer’s wallet seed phrases and subsequently steal cryptocurrency from the accounts.

    After the malicious extension downloaded by the developer was discovered and removed from the repository, the threat actor republished it and artificially inflated its installation count to a higher number – 2 million, compared to 61,000 for the legitimate package. The extension was removed from the platform following a request from Kaspersky.

    “Spotting compromised open-source packages with the naked eye is becoming increasingly difficult. Threat actors are using increasingly creative tactics to deceive potential victims, even developers who have a strong understanding of cybersecurity risks — particularly those working in the blockchain development field. As we expect adversaries to continue targeting developers, it is recommended that even experienced IT professionals deploy dedicated security solutions to safeguard sensitive data and prevent financial losses,” commented Georgy Kucherin, Security Researcher with Kaspersky’s Global Research and Analysis Team.

    The threat actor behind the attack published not only malicious Solidity extensions but also another NPM package, solsafe, which also downloads ScreenConnect. A few months earlier, three additional malicious Visual Studio Code extensions were released — solaibot, among-eth, and blankebesxstnion — all of them have already been removed from the repository.

    To stay safe, Kaspersky recommends:

    • Use a solution for monitoring the used open-source components in order to detect the threats that might be hidden inside.
    • If you suspect that a threat actor may have gained access to your company’s infrastructure, we recommend using the Kaspersky Compromise Assessment service to uncover any past or ongoing attacks.
    • Verify package maintainers: check the credibility of the maintainer or organization behind the package. Look for consistent version history, documentation, and an active issue tracker.
    • Stay informed on emerging threats: subscribe to security bulletins and advisories related to the open-source ecosystem. The earlier you know about a threat, the faster you can respond.

    More information is available in a report on Securelist.com.

    About Kaspersky

    Kaspersky is a global cybersecurity and digital privacy company founded in 1997. With over a billion devices protected to date from emerging cyberthreats and targeted attacks, Kaspersky’s deep threat intelligence and security expertise is constantly transforming into innovative solutions and services to protect individuals, businesses, critical infrastructure, and governments around the globe. The company’s comprehensive security portfolio includes leading digital life protection for personal devices, specialized security products and services for companies, as well as Cyber Immune solutions to fight sophisticated and evolving digital threats. We help millions of individuals and over 200,000 corporate clients protect what matters most to them. Learn more at www.kaspersky.com.

    Share. Facebook Twitter Pinterest LinkedIn WhatsApp

    Related Posts

    Business

    Thailand Introduces ‘Healing Is The New Luxury’ To Meet Growing GCC Demand For Wellness And Medical Travel

    Business

    Sharjah Chamber celebrates graduation of Strategic Business Leadership Programme– 4th Cohort 2026 participants

    Business

    Qatar Airways Returns to Farnborough International Airshow 2026

    Business

    مستشفى كينغز كوليدج لندن – دبي يوسّع برنامج زراعة الأعضاء بإطلاق مركز متخصص لزراعة الكلى

    Business

    The Weekly Insulin Revolution: How One Injection a Week Could Transform Diabetes Care Around the World

    Business

    DEWA and Dubai Taxi Company inaugurate Dubai’s first ultra-fast EV charging hub

    Business

    Global Partnership Leader Jeson Zheng Highlights UAE’s Role as a Strategic Connector at WSIS Forum 2026 in Geneva

    Business

    SBC Summit Gives Delegates Direct Access to Regulators Through New Regulatory Gaming Meetups

    Follow Us
    • Facebook
    • Twitter
    Top Posts
    Business

    Bigo Live named official streaming partner of the Esports World Cup 2025

    Dubai, UAE – Bigo Live, the global livestreaming platform, is proud to return as the official…

    Business

    Kuwait’s Motery raises undisclosed seed round

    Motery, an innovative fintech application revolutionizing the automotive purchasing landscape, is proud to announce the…

    Business

    Museum of the Future hosts Audi’s iconic S1 e-tron quattro Hoonitron – a race car like no other

    Audi Middle East has announced the first-ever arrival of the brand’s unique and iconic S1…

    Technology

    Fanera: Revolutionizing Football Fan Engagement in KSA with Web 3.0

    Riyadh, KSA – Fanera, a pioneering sports-tech startup, is set to transform the football fan…

    Business

    Saudi Ministry Boosts International Cooperation for Hajj Compliance

    RIYADH, May 3, 2026 — The Saudi Ministry of Hajj and Umrah is continuing its intensive coordination with international Hajj affairs offices to promote awareness of official procedures. The goal is to ensure that essential guidance and instructional messages reach pilgrims in their home countries well before they arrive in the Kingdom. These international efforts aim to establish the Hajj permit as the only safe and legitimate pathway for the pilgrimage. By adhering to these regulations, pilgrims ensure their journey is organized from its very first stages. The permit guarantees access to comprehensive field and logistical service

    Welcome to Middle East Daily, your daily dose of news and insights from the heart of the Middle East. Explore the latest headlines, delve into thought-provoking analysis, and engage with stories that define our region's narrative.

    Facebook Twitter
    Categories
    • Business (811)
    • Lifestyle (127)
    • News (137)
    • Technology (113)
    Top Insights
    Business

    Waldorf Astoria Kuwait Reinforces Its Global Standing by Retaining the Forbes Five Star Rating for the Third Consecutive Year

    Business

    Etihad Salam joins Saudi Arabia Quantum Network Consortium to advance quantum-secure communication

    © 2026 Middle East Daily.
    • Home
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.