شراء العملة
الأسواق
فوري
العقود
الأرباح
الأنشطة
المزيد
reward-centerمنطقة المبتدئين
الصفحة الرئيسية للتغذيةتفاصيل الفلاش
SlowMist: TRAE Malicious Solidity Extension Exploits On-Chain Contract Dynamic Management C2 Configuration
  • ETH0%

BlockBeats News, July 20th, According to the security firm SlowMist, the malicious TRAE IDE extension juannegro.solidity disguised itself as a Solidity plugin and acted as a cross-platform malware delivery system. This extension would automatically execute upon IDE startup, establish persistence, and utilize an Ethereum smart contract to store and retrieve dynamic C2 configurations, allowing the attacker to update C2 endpoints and payloads without reissuing the extension. Although the extension has been removed from Open VSX, it was still available through the TRAE marketplace as of July 18th. Users who have installed it should immediately uninstall it and check if their systems have been compromised.

المصدر:BlockBeats

إخلاء المسؤولية: يتم الحصول على المحتوى الحالي من وجهات نظر خارجية أو تتم ترجمته مباشرة بواسطة الذكاء الاصطناعي من وجهات نظر خارجية. لا تضمن CoinEx صحة المحتوى ودقته وأصالته، ولا تشكل أي نصيحة استثمارية من CoinEx. أسعار العملات المشفرة متقلبة للغاية، يرجى الانتباه إلى المخاطر المحتملة.

عمليات البحث الساخنة
  • العملات
    السعر
    التغيرات في 24 ساعة