• Latest
  • All
  • Breaking
  • Announcements
  • Learn
  • Analysis
  • Current events
Hackers Are Using Fake GitHub Code to Steal Your Bitcoin: Kaspersky

Hackers Are Using Fake GitHub Code to Steal Your Bitcoin: Kaspersky

February 26, 2025

Announcement on Removal of Spot Trading Pairs APT/USDT, TNSR/USDT, W/USDT, etc.

March 3, 2026

Announcement on Wallet Maintenance and Upgrade

February 28, 2026

Celebrate the New Year with 8V New Year Earn!

February 13, 2026

Announcement on TRON (TRX) Network Upgrade

February 10, 2026

Partial Futures Features Maintenance

February 2, 2026

Announcement on Delisting of VET (VeChain)

January 29, 2026

Announcement on Delisting of VTHO (VeThor Token)

January 29, 2026

Announcement on the Removal of the QTUM/USDT Trading Pair

January 26, 2026

Announcement on TRON (TRX) network upgrade

January 23, 2026
[Action required] Your RSS.app Trial has Expired.

[Action required] Your RSS.app Trial has Expired.

January 19, 2026
Binance Australia Restores Direct Bank and PayID Transfers for User

Binance Australia Restores Direct Bank and PayID Transfers for User

January 19, 2026
Trove Investors Seek Refunds After Perps Pivot to Solana

Trove Investors Seek Refunds After Perps Pivot to Solana

January 19, 2026
Wednesday, March 4, 2026
8V Crypto Academy
8V Academy - 8V.com - Your Cryptocurrency Gateway
  • About 8V
    • 8V Exchange
    • 8V Blog
  • Market Beat
    • Today Real-time Market Data
    • Web3
    • Breaking
    • Tokens
    • Markets
    • Compliance
    • Exchanges
    • Tech
    • GameFi
    • NFT
    • Defi
    • Miscellaneous
  • Platform
    • 8V Announcements
    • Events
      • Current Events
      • Closed Events
    • Product
      • 8V Overview
      • Assets
      • Exchange
        • Spot Trading
        • Futures Trading
        • Leverage Trading
      • Copy Trading
      • Earn
        • Fixed
        • Flexible
      • Cryptocurrency Debit Card
      • Buy Crypto Instantly
      • Strategy Trading
    • Trading Fees and Limits
    • 8V Exchange API
    • Referral Scheme
    • Bug Bounty
    • FAQ
      • 8V Cryptocurrency Card
      • Account Functions
      • Deposits & Withdrawals
      • Contract Related
      • 8V LaunchX Protocol
      • Others
  • Academy
    • How To Buy Crypto
    • Learning Center
    • Analysis Center
    • Crypto Glossary
  • Business
    • Coin Listing Request
    • Crypto Trader Application
    • Partnerships
  • Policy
    • Privacy Policy
    • Service Agreement
    • Disclaimer
    • Compliance Notice
  • English
    • English
    • 中文 (台灣)
    • 中文 (中国)
  • Login
  • Register
No Result
View All Result
  • About 8V
    • 8V Exchange
    • 8V Blog
  • Market Beat
    • Today Real-time Market Data
    • Web3
    • Breaking
    • Tokens
    • Markets
    • Compliance
    • Exchanges
    • Tech
    • GameFi
    • NFT
    • Defi
    • Miscellaneous
  • Platform
    • 8V Announcements
    • Events
      • Current Events
      • Closed Events
    • Product
      • 8V Overview
      • Assets
      • Exchange
        • Spot Trading
        • Futures Trading
        • Leverage Trading
      • Copy Trading
      • Earn
        • Fixed
        • Flexible
      • Cryptocurrency Debit Card
      • Buy Crypto Instantly
      • Strategy Trading
    • Trading Fees and Limits
    • 8V Exchange API
    • Referral Scheme
    • Bug Bounty
    • FAQ
      • 8V Cryptocurrency Card
      • Account Functions
      • Deposits & Withdrawals
      • Contract Related
      • 8V LaunchX Protocol
      • Others
  • Academy
    • How To Buy Crypto
    • Learning Center
    • Analysis Center
    • Crypto Glossary
  • Business
    • Coin Listing Request
    • Crypto Trader Application
    • Partnerships
  • Policy
    • Privacy Policy
    • Service Agreement
    • Disclaimer
    • Compliance Notice
  • English
    • English
    • 中文 (台灣)
    • 中文 (中国)
  • Login
  • Register
No Result
View All Result
8V Crypto Academy
No Result
View All Result

8V Crypto Academy » Hackers Are Using Fake GitHub Code to Steal Your Bitcoin: Kaspersky

Hackers Are Using Fake GitHub Code to Steal Your Bitcoin: Kaspersky

February 26, 2025
in Breaking, News
Reading Time: 10 mins read
A A

BTC

$88,698.89

–

2.88%

ETH

$2,488.23

+

0.31%

USDT

$0.9997

–

0.07%

XRP

RelatedPosts

[Action required] Your RSS.app Trial has Expired.

Binance Australia Restores Direct Bank and PayID Transfers for User

Trove Investors Seek Refunds After Perps Pivot to Solana

Nasdaq Tells Canaan to Boost Share Price or Face Delisting

$2.2912

+

1.63%

BNB

$621.65

+

2.77%

SOL

$141.58

+

2.35%

USDC

$1.0007

+

0.01%

DOGE

$0.2106

+

0.62%

ADA

$0.6843

+

1.39%

TRX

$0.2290

–

1.86%

WBTC

$88,626.92

–

2.93%

LINK

$15.28

+

3.20%

SUI

$3.0039

+

7.71%

AVAX

$22.07

+

2.72%

XLM

$0.2934

+

0.43%

LTC

$118.23

+

5.36%

TON

$3.5665

+

3.76%

SHIB

$0.0₄1424

+

3.76%

LEO

$9.0151

+

2.69%

HBAR

$0.1958

+

3.77%

Logo

Tech

Share this article

The attack starts with seemingly legitimate GitHub projects — like making Telegram bots for managing bitcoin wallets or tools for computer games.

By Shaurya Malwa|Edited by Parikshit Mishra

Feb 26, 2025, 6:29 a.m. UTC

hacker (Unsplash)

What to know:

  • A Kaspersky report from Monday warned users of a “GitVenom” campaign that’s been active for at least two years but is steadily on the rise.
  • The attack starts with seemingly legitimate GitHub projects — like making Telegram bots for managing bitcoin wallets or tools for computer games.
  • One such attack ending up draining a developer’s bitcoin wallet for over $400,000 worth of the token in November.

The GitHub code you use to build a trendy application or patch existing bugs might just be used to steal your bitcoin (BTC) or other crypto holdings, according to a Kaspersky report.

GitHub is popular tool among developers of all types, but even more so among crypto-focused projects, where a simple application may generate millions of dollars in revenue.

STORY CONTINUES BELOW

Don’t miss another story.Subscribe to the The Protocol Newsletter today.See all newslettersBy signing up, you will receive emails about CoinDesk products and you agree to ourterms of useandprivacy policy.

The report warned users of a “GitVenom” campaign that’s been active for at least two years but is steadily on the rise, involving planting malicious code in fake projects on the popular code repository platform.

The attack starts with seemingly legitimate GitHub projects — like making Telegram bots for managing bitcoin wallets or tools for computer games.

Each comes with a polished README file, often AI-generated, to build trust. But the code itself is a Trojan horse: For Python-based projects, attackers hide nefarious script after a bizarre string of 2,000 tabs, which decrypts and executes a malicious payload.

For JavaScript, a rogue function is embedded in the main file, triggering the launch attack. Once activated, the malware pulls additional tools from a separate hacker-controlled GitHub repository.

(A tab organizes code, making it readable by aligning lines. The payload is the core part of a program that does the actual work — or harm, in malware’s case.)

Once the system is infected, various other programs kick in to execute the exploit. A Node.js stealer harvests passwords, crypto wallet details, and browsing history, then bundles and sends them via Telegram. Remote access trojans like AsyncRAT and Quasar take over the victim’s device, logging keystrokes and capturing screenshots.

A “clipper” also swaps copied wallet addresses with the hackers’ own, redirecting funds. One such wallet netted 5 BTC — worth $485,000 at the time — in November alone.

Active for at least two years, GitVenom has hit users hardest in Russia, Brazil, and Turkey, though its reach is global, per Kaspersky.

The attackers keep it stealthy by mimicking active development and varying their coding tactics to evade antivirus software.

How can users protect themselves? By scrutinizing any code before running it, verifying the project’s authenticity, and being suspicious of overly polished READMEs or inconsistent commit histories.

Because researchers don’t expect these attacks to stop anytime soon: “We expect these attempts to continue in the future, possibly with small changes in the TTPs,” Kaspersky concluded in its post.

Shaurya is the Co-Leader of the CoinDesk tokens and data team in Asia with a focus on crypto derivatives, DeFi, market microstructure, and protocol analysis.
Shaurya holds over $1,000 in BTC, ETH, SOL, AVAX, SUSHI, CRV, NEAR, YFI, YFII, SHIB, DOGE, USDT, USDC, BNB, MANA, MLN, LINK, XMR, ALGO, VET, CAKE, AAVE, COMP, ROOK, TRX, SNX, RUNE, FTM, ZIL, KSM, ENJ, CKB, JOE, GHST, PERP, BTRFLY, OHM, BANANA, ROME, BURGER, SPIRIT, and ORCA.
He provides over $1,000 to liquidity pools on Compound, Curve, SushiSwap, PancakeSwap, BurgerSwap, Orca, AnySwap, SpiritSwap, Rook Protocol, Yearn Finance, Synthetix, Harvest, Redacted Cartel, OlympusDAO, Rome, Trader Joe, and SUN.

Shaurya Malwa


Contact

  • Contact Us
  • Accessibility
  • Advertise
  • Sitemap
  • System Status

DISCLOSURE & POLICES

CoinDesk is an award-winning media outlet that covers the cryptocurrency industry. Its journalists abide by a strict set of editorial policies. CoinDesk has adopted a set of principles aimed at ensuring the integrity, editorial independence and freedom from bias of its publications. CoinDesk is part of the Bullish group, which owns and invests in digital asset businesses and digital assets. CoinDesk employees, including journalists, may receive Bullish group equity-based compensation. Bullish was incubated by technology investor Block.one.

EthicsPrivacyTerms of UseCookie ConsentDo Not Sell My Info


© 2025 CoinDesk, Inc.

 

Previous Post

XRP, BNB Edge Higher as Bitcoin Bulls Eye $90K After Tuesday Bloodbath

Next Post

Bybit Declares ‘War on Lazarus’ as It Crowdsources Effort to Freeze Stolen Funds

Related Posts

[Action required] Your RSS.app Trial has Expired.
Breaking

[Action required] Your RSS.app Trial has Expired.

January 19, 2026
Binance Australia Restores Direct Bank and PayID Transfers for User
Breaking

Binance Australia Restores Direct Bank and PayID Transfers for User

January 19, 2026
Trove Investors Seek Refunds After Perps Pivot to Solana
Breaking

Trove Investors Seek Refunds After Perps Pivot to Solana

January 19, 2026
Nasdaq Tells Canaan to Boost Share Price or Face Delisting
Breaking

Nasdaq Tells Canaan to Boost Share Price or Face Delisting

January 19, 2026
Saylor Hints Strategy May Buy Even More Bitcoin After $1.25 billion Splurge
Breaking

Saylor Hints Strategy May Buy Even More Bitcoin After $1.25 billion Splurge

January 19, 2026
Bitcoin Drops $3,500 As EU Threatens Trump Tariff Retaliation
Breaking

Bitcoin Drops $3,500 As EU Threatens Trump Tariff Retaliation

January 19, 2026
Next Post

Bybit Declares ‘War on Lazarus’ as It Crowdsources Effort to Freeze Stolen Funds

No Result
View All Result
深入分析 穩定幣脫鉤 DeFi USDX事件
Analysis

In-depth analysis of the stablecoin depeg from DeFi and the USDX event

by 8V
November 10, 2025
0

Last week's stablecoin depegging once again shook the decentralized finance (DeFi) world, with USDX, a synthetic stablecoin issued by Stable...

Read moreDetails
$60 Million Mistake, $19 Billion Nightmare: How Oracle Broke the Crypto Market

$60 Million Mistake, $19 Billion Nightmare: How Oracle Broke the Crypto Market

October 21, 2025
8V深度分析Aave V3借贷机制、流动性和风险管理

8V in-depth analysis – the Aave V3 lending e-mode mechanism

September 30, 2025
Polymarket和8V交易所對加密貨幣產業的意義

The Significance of Polymarket and 8V Exchange

September 16, 2025
Q4 Crypto Investment Strategy - 8V Crypto Academy

Q4 Crypto Investment Strategy

August 19, 2025
8v.com - download APP 8v.com - download APP 8v.com - download APP
  • About 8V
  • Download APP
  • Announcements
  • Breaking News
  • RSS Feeds
  • FAQ
  • Service Agreement
  • Privacy Policy
  • Disclaimer

© 2025 8V.com - 8V Crypto Academy - Empower your crypto journey! 8V.com

No Result
View All Result
  • About 8V
    • 8V Exchange
    • 8V Blog
  • Market Beat
    • Today Real-time Market Data
    • Web3
    • Breaking
    • Tokens
    • Markets
    • Compliance
    • Exchanges
    • Tech
    • GameFi
    • NFT
    • Defi
    • Miscellaneous
  • Platform
    • 8V Announcements
    • Events
      • Current Events
      • Closed Events
    • Product
      • 8V Overview
      • Assets
      • Exchange
      • Copy Trading
      • Earn
      • Cryptocurrency Debit Card
      • Buy Crypto Instantly
      • Strategy Trading
    • Trading Fees and Limits
    • 8V Exchange API
    • Referral Scheme
    • Bug Bounty
    • FAQ
      • 8V Cryptocurrency Card
      • Account Functions
      • Deposits & Withdrawals
      • Contract Related
      • 8V LaunchX Protocol
      • Others
  • Academy
    • How To Buy Crypto
    • Learning Center
    • Analysis Center
    • Crypto Glossary
  • Business
    • Coin Listing Request
    • Crypto Trader Application
    • Partnerships
  • Policy
    • Privacy Policy
    • Service Agreement
    • Disclaimer
    • Compliance Notice
  • English
    • English
    • 中文 (台灣)
    • 中文 (中国)
  • Login
  • Register

© 2025 8V.com - 8V Crypto Academy - Empower your crypto journey! 8V.com