CONTACT FOR ADS

BTCinsider – Bitcoin, Blockchain & DeFi News
  • BOOKMARKS
  • Crypto
    • Bitcoin
    • Ethereum
    • Forex
    • Tether
    CryptoShow More
    Why Is Bitcoin Holding Steady as XRP, Solana, Dogecoin Waver?
    Why Is Bitcoin Holding Steady as XRP, Solana, Dogecoin Waver?
    24.07.2025
    Are Things Getting Too Frothy for Ethereum, XRP and Other Top Altcoins?
    Are Things Getting Too Frothy for Ethereum, XRP and Other Top Altcoins?
    24.07.2025
    Stablecoin Owners Outnumber Solana Holders: Reown Survey
    Stablecoin Owners Outnumber Solana Holders: Reown Survey
    23.07.2025
    XRP Now Larger Than PepsiCo, Uber, Blackrock—And Is Closing in on McDonald’s
    XRP Now Larger Than PepsiCo, Uber, Blackrock—And Is Closing in on McDonald’s
    23.07.2025
    DOJ Blames Court Error After Trump-Linked Crypto Scam Docket Briefly Sealed
    DOJ Blames Court Error After Trump-Linked Crypto Scam Docket Briefly Sealed
    23.07.2025
  • DeFi
  • Market
    • Binance
    • Business
    • Investor
    • Money
    • Trading
    MarketShow More
    XRP price drops 19% but analysts say it’s a ‘healthy correction’
    XRP price drops 19% but analysts say it’s a ‘healthy correction’
    24.07.2025
    BlackRock Ethereum ETF becomes 3rd-fastest to hit $10B in assets
    BlackRock Ethereum ETF becomes 3rd-fastest to hit $10B in assets
    24.07.2025
    Solana unveils 2027 roadmap to lead internet capital markets
    Solana unveils 2027 roadmap to lead internet capital markets
    24.07.2025
    Franklin Templeton to bring BENJI platform to VeChain for enterprise payments
    Franklin Templeton to bring BENJI platform to VeChain for enterprise payments
    24.07.2025
    How traditional financial tools are making crypto investing more accessible
    How traditional financial tools are making crypto investing more accessible
    24.07.2025
  • News
    • Mining
    • NFT
    • Stocks
    • Web3
    • Tech
    NewsShow More
    US appeals court overturns Yuga Labs’ $9M win against Ryder Ripps
    US appeals court overturns Yuga Labs’ $9M win against Ryder Ripps
    24.07.2025
    Judge allows controversial testimony in Roman Storm trial
    Judge allows controversial testimony in Roman Storm trial
    24.07.2025
    'Tokyo Beast' Speedruns Crypto Game Cycle, Shutting Down Just a Month After Launch
    ‘Tokyo Beast’ Speedruns Crypto Game Cycle, Shutting Down Just a Month After Launch
    23.07.2025
    Ozzy Osbourne’s passing sparks 400% surge in CryptoBatz NFTs
    Ozzy Osbourne’s passing sparks 400% surge in CryptoBatz NFTs
    23.07.2025
    Senate Banking Committee unveils draft market structure bill
    Senate Banking Committee unveils draft market structure bill
    23.07.2025
  • Contact Us
Reading: Malicious Pull Request Inserted Into Ethereum Code Extension: Research
Share
  • bitcoinBitcoin(BTC)$119,151.99
  • ethereumEthereum(ETH)$3,730.81
  • rippleXRP(XRP)$3.22
  • tetherTether USDt(USDT)$1.00
  • binancecoinBNB(BNB)$777.77
  • solanaSolana(SOL)$188.27
  • usd-coinUSDC(USDC)$1.00
  • dogecoinDogecoin(DOGE)$0.239853
  • tronTRON(TRX)$0.313869
  • cardanoCardano(ADA)$0.82
Font ResizerAa
BTCinsider – Bitcoin, Blockchain & DeFi NewsBTCinsider – Bitcoin, Blockchain & DeFi News
  • Home
  • Crypto
  • Market
  • News
  • Tech
  • Contact
Search
  • Home
  • Market
    • Business
    • Investor
  • Tech
  • News
    • Web3
    • NFT
  • DeFi
  • Crypto
Have an existing account? Sign In
Follow US
© All Rights Reserved.
Tech

Malicious Pull Request Inserted Into Ethereum Code Extension: Research

Roman Hasley
Last updated: 24.07.2025 7:04 PM
Roman Hasley
Published: 24.07.2025
Share
Malicious Pull Request Inserted Into Ethereum Code Extension: Research

In brief

  • A hacker compromised the ETHCode toolkit update with malicious code.
  • Cybersecurity analysis confirms no tokens stolen, but widespread distribution to developers is possible.
  • Industry experts warn against blind trust in open source tooling.

Hacker Buries Malicious Code in Ethereum Development Toolkit

A sophisticated attack has compromised the update for commonly used open-source Ethereum toolkit ETHCode. Researchers at ReversingLabs discovered two malicious lines of code inserted into a legitimate update.

Contents
In briefHacker Buries Malicious Code in Ethereum Development ToolkitChipping Away at Open Source Security

The compromised code, contained within a 4,000-line update request adding testing capabilities, was contributed by a previously unknown GitHub user named “Airez299”. Despite scrutiny by ReversingLabs and the creators of ETHCode, the malicious lines were approved for inclusion.

The first malicious line attempted to conceal its presence by mimicking a pre-existing file structure. The second line acts as an activator. ReversingLabs analysis indicates the code ultimately aims to create an automated function, likely a PowerShell script, downloading and executing malware from a public file-hosting service.

While ReversingLabs investigation suggests the malware’s purpose may involve crypto theft or contract tampering, there is currently no confirmed evidence it has been executed successfully. However, ETHCode’s popularity means such a vulnerability could potentially affect thousands of developer systems following an automatic update.

Chipping Away at Open Source Security

Ethereum developer Zak Cole highlights how this incident exemplifies emerging security challenges in the crypto ecosystem. “There’s too much code and not enough eyes on it,” Cole states, adding that greater toolchain standardization is increasing the attack surface. Many developers casually add open-source packages without proper security reviews.

This incident follows several high-profile examples including a Solana web3.js exploit from last year and a Ledger breach earlier focusing on Connect Kit exploits.

Despite these risks, ReversingLabs researcher Petar Kirhmajer notes successful attempts are rare. Nevertheless, security researchers universally recommend vigilant practices:

  1. Verify contributor identities and histories
  2. Thoroughly review code changes, especially new packages
  3. Regularly scan dependency trees
  4. Leverage security scanning tools
  5. Maintain strict separation between development and wallet execution environments

Proactive security measures become increasingly vital as automated dependency management simplifies development processes, experts warn.

The Protocol: Vitalik Buterin’s Latest Proposal – Transaction Gas Cap
Symbiotic Launches ‘Relay’ to Bring Secure Staking Across Chains
Polyhedra Blames Liquidity Attacks for Sudden 80% Price Drop in ZKJ, Promises Buyback
Crypto Exchange Bullish Teams Up With Solana for Institutional Stablecoin Push
BNB Smart Chain block times fall to 0.8 secs amid Maxwell upgrade

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.

By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Telegram Email Copy Link Print
Share
Previous Article Why Is Bitcoin Holding Steady as XRP, Solana, Dogecoin Waver? Why Is Bitcoin Holding Steady as XRP, Solana, Dogecoin Waver?
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Subscribe to our newslettern

Get Newest Articles Instantly!

- Advertisement -
Ad image
Popular News
Malicious Pull Request Inserted Into Ethereum Code Extension: Research
Malicious Pull Request Inserted Into Ethereum Code Extension: Research
'Dogecoin Millionaire' Is Now a Pepe Millionaire—And He’s Stacking These Meme Coins Next
‘Dogecoin Millionaire’ Is Now a Pepe Millionaire—And He’s Stacking These Meme Coins Next
Performance Art Duo Operator 'Make Movement Collectible' With NFTs
Performance Art Duo Operator ‘Make Movement Collectible’ With NFTs

You Might Also Like

Saving Your Wallet Details, Seed Phrase as a Photo on Your Phone? This Trojan May Be Targeting You
Tech

Saving Your Wallet Details, Seed Phrase as a Photo on Your Phone? This Trojan May Be Targeting You

24.06.2025
Is Free Will an Illusion? Quantum Experiments Aim to Find Out
Tech

Is Free Will an Illusion? Quantum Experiments Aim to Find Out

10.06.2025
Bitcoin DeFi Project BOB Launches BitVM Bridge Testnet
Tech

Bitcoin DeFi Project BOB Launches BitVM Bridge Testnet

02.07.2025
How the ‘SparkKitty’ Trojan Is Stealing Crypto Wallet Data From Phones
Tech

How the ‘SparkKitty’ Trojan Is Stealing Crypto Wallet Data From Phones

15.07.2025

Follow Us on Socials

We use social media to react to breaking news, update supporters and share information

BTCinsider – Bitcoin, Blockchain & DeFi News

With 20 million users, we are the #1 global business blockchain and cryptocurrency news network.

Subscribe to our newsletter

You can be the first to find out the latest news and tips about trading, markets...

Ad image
© All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?

Not a member? Sign Up