ZUBIQO.
AI & MLCryptoFinanceBig TechAI Models
CybersecurityGamingEVs & Clean EnergyRoboticsAerospaceBiotech & Health
Enterprise
ZUBIQO.

High-magnitude intelligence briefs for the tech and finance sectors. Zero fluff. Maximum signal.

[email protected]
X (Twitter)ThreadsTelegramBlueskyMastodon

Sections

  • AI & ML
  • Crypto
  • Finance
  • Big Tech
  • Cybersecurity
  • Gaming
  • EVs & Clean Energy
  • Robotics
  • Aerospace
  • Biotech & Health

Publication

  • About Us
  • Editorial Ethics
  • Partner With Us
  • Contact Us

Tools

  • AI Models Pricing

Legal

  • Privacy Policy
  • Terms of Service
  • Fair Use & DMCA

Disclaimer:Zubiqo Intelligence operates as a technology-enabled news and research publication under human editorial oversight. The news briefs, market analysis, "Magnitude Scores", and "Community Sentiment" metrics provided on this platform are strictly for informational and educational purposes only. They do not constitute financial, legal, investment, or trading advice. Cryptocurrencies and financial markets are highly volatile; always conduct your own research and consult with a licensed professional before making any investment decisions. By using this site, you agree to our Terms of Service.

© 2026 Zubiqo Intelligence. All rights reserved.

CybersecurityMAG 7Bearish
•
2026-08-10•1 min read

Malicious VS Code Extension "Solidity Pro" Caught Stealing Crypto Wallets

Zubiqo Take
QuoteThreads

"Trusting automated marketplace scanners doesn't work when attackers just sleep their payloads for a few days to bypass the sandbox they are tested in."

Malicious VS Code Extension "Solidity Pro" Caught Stealing Crypto Wallets
📷 Image Source: The Hacker News

Executive Summary

  • •The "Solidity Pro" extension shifted to a full-blown information stealer in version 3.0.0, capturing browser profiles, SSH keys, and Telegram bot tokens.
  • •The malware bypassed marketplace reviews and static scanning by using heavy obfuscation and a delayed activation timer it relies on.
  • •Cybersecurity firm Yeeth Security linked the activity to WhiteCobra, a threat cluster previously caught distributing Lumma Stealer through VS Code.

Community Sentiment

1-Tap Vote

Key Developments & Data

A malicious Microsoft $MSFT VS Code extension actively steals crypto wallets and developer credentials. The "Solidity Pro" extension shifted to a full-blown information stealer in version 3.0.0, capturing browser profiles, SSH keys, and Telegram bot tokens. The malware bypassed marketplace reviews and static scanning by using heavy obfuscation and a delayed activation timer it relies on. Cybersecurity firm Yeeth Security linked the activity to WhiteCobra, a threat cluster previously caught distributing Lumma Stealer through VS Code. "By the time the malicious branch runs, the user has already decided the extension is useful, and automated scanners that only observe the package for minutes have moved on." — Yeeth Security
Zubiqo Intelligence Briefing

Get the unfiltered signal before markets open.

Top tech breakthroughs, venture funding, and market moves—synthesized into a 2-minute morning read. Zero PR fluff.

✓ 100% Free•✓ 1-click unsubscribe•✓ No spam ever

Zubiqo Strategic Assessment

Primary Impact

Crypto developers and organizations relying on open-source VS Code extensions for smart contract deployment.

Strategic Shift

The weaponization of developer tooling environments via delayed-activation payloads to evade automated marketplace security checks.

The Ripple Effect

Microsoft will likely implement mandatory runtime behavioral monitoring for all VS Code extensions interacting with clipboard or network APIs.

This intelligence assessment is generated by Zubiqo's AI for informational purposes only.

Intelligence Quality Rating

Grade this brief: Slide & release to submit rating, or tap a preset.

🔥High Impact75%
Slide & release to voteImmune to accidental scroll
#vscode#crypto#malware#security
Read original on The Hacker News
Zubiqo MethodologyVerified Signal

Synthesized across 1,500+ daily market sources with human editorial oversight under Zubiqo's standards.

Event Magnitude7 / 10
Share

Read Next

Canonical Forces 2-Week Ubuntu Patch Cycle to Survive AI Bug Flood
Cybersecurity

Canonical Forces 2-Week Ubuntu Patch Cycle to Survive AI Bug Flood

OpenAI Grants Ukraine Access to Daybreak Cyber-Defense AI Tool
Cybersecurity

OpenAI Grants Ukraine Access to Daybreak Cyber-Defense AI Tool

Stay on the wire

Breaking tech, AI, and market intelligence the moment it happens. Zero fluff.

Live Broadcasts
TelegramXThreadsBlueskyMastodon
FBI Probes Alleged ShinyHunters Hack Compromising Employee Data
Cybersecurity

FBI Probes Alleged ShinyHunters Hack Compromising Employee Data

F5 BIG-IP Zero-Day: Critical RCE Flaw Exploited in the Wild
Cybersecurity

F5 BIG-IP Zero-Day: Critical RCE Flaw Exploited in the Wild

Zubiqo Methodology

Verified Signal

Synthesized across 1,500+ daily market sources with human editorial oversight under Zubiqo's standards.

Event Magnitude7 / 10

Related Briefs

Cybersecurity

Canonical Forces 2-Week Ubuntu Patch Cycle to Survive AI Bug Flood

Sep 24
Cybersecurity

OpenAI Grants Ukraine Access to Daybreak Cyber-Defense AI Tool

Sep 24
Cybersecurity

FBI Probes Alleged ShinyHunters Hack Compromising Employee Data

Sep 24
Cybersecurity

F5 BIG-IP Zero-Day: Critical RCE Flaw Exploited in the Wild

Sep 23