CyberSecurity News
Solidity Pro VS Code Extensions Steal Crypto Wallets, API Keys, and Credentials
AI summary
Cybersecurity researchers have identified a malicious VS Code extension called Solidity Pro that steals crypto wallets, API keys, and credentials. The extension, also known by names such as helper-beeps.solidity-pro and web3devtoolsx.solidity-pro, has been observed delivering a browser wallet and credential stealer. These extensions are no longer available on Open VSX, but a related GitHub repository exists. The malicious extension poses a threat to users' sensitive information. Researchers have flagged the extension to raise awareness about the potential security risk. The removal of the extensions from Open VSX indicates a response to the discovered malicious activity.
This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.

