Golden Finance reported that Ethereum core developer Zak Cole stated in a post on X platform on Tuesday that he became a victim of a malicious artificial intelligence extension from Cursor AI, through which the attacker gained access to his Hot Wallet within three days and ultimately transferred the funds.
The developer installed a plugin called "contractshark.solidity-lang", which seemed legitimate - complete with a professional icon, descriptive text, and over 54,000 downloads - but secretly stole his private keys. Cole stated that this plugin "read my .env file" and sent the private keys to the attacker's server, allowing the attacker to access his Hot Wallet for three days before transferring funds on August 10.
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
Reward
like
2
Repost
Share
Comment
0/400
ThirteenBurrowsOfTheCunning
· 08-13 15:17
And then? Is it just left unresolved? No plan at all?
The cryptocurrency wallet of Ethereum core developers has been stolen by a malicious artificial intelligence extension.
Golden Finance reported that Ethereum core developer Zak Cole stated in a post on X platform on Tuesday that he became a victim of a malicious artificial intelligence extension from Cursor AI, through which the attacker gained access to his Hot Wallet within three days and ultimately transferred the funds. The developer installed a plugin called "contractshark.solidity-lang", which seemed legitimate - complete with a professional icon, descriptive text, and over 54,000 downloads - but secretly stole his private keys. Cole stated that this plugin "read my .env file" and sent the private keys to the attacker's server, allowing the attacker to access his Hot Wallet for three days before transferring funds on August 10.