BlockNews
FOLLOW ON X
  • BITCOIN
  • CRYPTO
    • ETHEREUM
    • RIPPLE XRP
    • SOLANA
    • CARDANO
    • BINANCE BNB
    • DOGECOIN
    • TRON
    • SUI
    • CHAINLINK
    • LITECOIN
  • FINANCE
  • POLITICS
  • MEMECOINS
  • NFT
  • OPINION
No Result
View All Result
BlockNews
  • BITCOIN
  • CRYPTO
    • ETHEREUM
    • RIPPLE XRP
    • SOLANA
    • CARDANO
    • BINANCE BNB
    • DOGECOIN
    • TRON
    • SUI
    • CHAINLINK
    • LITECOIN
  • FINANCE
  • POLITICS
  • MEMECOINS
  • NFT
  • OPINION
No Result
View All Result
BlockNews
Home CRYPTO

Ethereum Core Dev’s Wallet Drained by Rogue AI Tool in Brazen Supply Chain Attack

Rhod Tipay by Rhod Tipay
August 14, 2025
in CRYPTO, ETHEREUM, FINANCE, OPINION
Share on XShare in TelegramShare on Reddit
  • Ethereum core developer Zak Cole had his hot wallet drained after installing a malicious AI coding extension that stole his private key.
  • The fake plugin, “contractshark.solidity-lang,” appeared legitimate with 54K downloads but secretly exfiltrated keys to an attacker’s server.
  • The incident underscores the growing threat of sophisticated wallet drainers targeting both crypto investors and developers.

Even the most seasoned builders aren’t immune to slick, malicious code. Ethereum core developer Zak Cole learned that the hard way last week after installing what looked like a legitimate AI coding extension — only to discover it was a wallet drainer in disguise. The tool, “contractshark.solidity-lang,” came dressed up with a professional logo, polished copy, and over 54,000 downloads, but hidden under the veneer was a script that quietly stole his private key.

3/ What ACTUALLY Happened:

Aug 7, 11:02 – Installed extension
Aug 7, 11:03 – Opened my project
Aug 7, 11:05 – Extension silently read my .env file
Aug 7, 11:06 – Sent my private key to attacker's server
Aug 10 – Wallet drained

3 days of access.

— zak.eth (@0xzak) August 12, 2025

How the Attack Played Out

Cole said the plugin accessed his .env file, grabbed the key, and sent it to a remote server controlled by the attacker. For three days, the exploiter had open access to one of his hot wallets, eventually draining the funds on Sunday. Fortunately, the damage was limited — just a few hundred dollars worth of ETH — because Cole isolates small testing wallets from his primary holdings, which are kept on hardware devices. “In 10+ years, I have never lost a single wei to hackers. Then I rushed to ship a contract last week,” he wrote, underscoring how speed and convenience can cloud even an expert’s guard.

A Growing Threat in Crypto Development

Wallet drainers aren’t new, but they’re evolving. By blending into trusted development ecosystems and using polished branding, these malicious tools are catching even the most security-conscious users off guard. This wasn’t a clumsy phishing link — it was a stealthy supply chain compromise that lived inside an everyday coding workflow. And it’s far from an isolated case.

The Bigger Picture

Last year, a fake WalletConnect Protocol app lingered on Google Play for over five months before being removed — during which time it siphoned more than $70,000 in digital assets from unsuspecting users. The message for developers and investors alike is clear: every install, every extension, every dependency carries risk. In crypto, the most dangerous exploit might be the one you willingly invite into your own tools.

Disclaimer: BlockNews provides independent reporting on crypto, blockchain, and digital finance. All content is for informational purposes only and does not constitute financial advice. Readers should do their own research before making investment decisions. Some articles may use AI tools to assist in drafting, but every piece is reviewed and edited by our editorial team of experienced crypto writers and analysts before publication.
Tags: cryptoethFinanceopinion
Tweet1ShareShare
Rhod Tipay

Rhod Tipay

Rhod Tipay is an editor and moderator at BlockNews with more than five years of experience in the Web3 industry. A graduate of De La Salle University, he began his career as a social media marketing specialist before moving into blockchain-focused editorial work. At BlockNews, Rhod oversees content moderation and editorial quality, ensuring that reporting meets professional and ethical standards. His expertise in trading and community engagement, combined with a deep understanding of crypto culture, allows him to provide readers with credible insights into the fast-changing blockchain space.

DON'T MISS THESE! HOT OFF THE PRESS

Strategy Buys $1.3B More Bitcoin – Here Is Why the MSTR BTC Bet Keeps Growing
BITCOIN

Strategy Buys $1.3B More Bitcoin – Here Is Why the MSTR BTC Bet Keeps Growing

March 9, 2026
Bank of Canada’s Tokenized Bond Trial Quietly Signals Where Global Finance Is Headed Next
CRYPTO

Bank of Canada’s Tokenized Bond Trial Quietly Signals Where Global Finance Is Headed Next

March 9, 2026
Shiba Inu Investor Growth Slows – Here Is Why SHIB Adoption Is Stalling
CRYPTO

Shiba Inu Investor Growth Slows – Here Is Why SHIB Adoption Is Stalling

March 9, 2026
Banks Need the Digital Asset Clarity Act More Than Crypto — And Wall Street Knows It
CRYPTO

Banks Need the Digital Asset Clarity Act More Than Crypto — And Wall Street Knows It

March 9, 2026
Nasdaq’s 24/7 Tokenized Stock Plan With Kraken Signals the Slow Death of Wall Street’s 9-to-5
CRYPTO

Nasdaq’s 24/7 Tokenized Stock Plan With Kraken Signals the Slow Death of Wall Street’s 9-to-5

March 9, 2026
Ripple UK License Boosts XRP Exposure – Here Is Why Price May Stay Slow
CRYPTO

Ripple UK License Boosts XRP Exposure – Here Is Why Price May Stay Slow

March 9, 2026
Load More

Related News

Strategy Buys $1.3B More Bitcoin – Here Is Why the MSTR BTC Bet Keeps Growing

Strategy Buys $1.3B More Bitcoin – Here Is Why the MSTR BTC Bet Keeps Growing

March 9, 2026
Bank of Canada’s Tokenized Bond Trial Quietly Signals Where Global Finance Is Headed Next

Bank of Canada’s Tokenized Bond Trial Quietly Signals Where Global Finance Is Headed Next

March 9, 2026
Shiba Inu Investor Growth Slows – Here Is Why SHIB Adoption Is Stalling

Shiba Inu Investor Growth Slows – Here Is Why SHIB Adoption Is Stalling

March 9, 2026
Banks Need the Digital Asset Clarity Act More Than Crypto — And Wall Street Knows It

Banks Need the Digital Asset Clarity Act More Than Crypto — And Wall Street Knows It

March 9, 2026
Nasdaq’s 24/7 Tokenized Stock Plan With Kraken Signals the Slow Death of Wall Street’s 9-to-5

Nasdaq’s 24/7 Tokenized Stock Plan With Kraken Signals the Slow Death of Wall Street’s 9-to-5

March 9, 2026
Twitter Telegram Threads

BLOCKNEWS.COM

BlockNews is your premier source for real-time cryptocurrency, blockchain, political and financial market news.

Stay ahead of the herd with BlockNews

RESOURCES

  • About Us
  • Contact Us
  • Editorial Policies
  • Terms and Conditions
  • Privacy Policy
  • Sitemap

DISCLOSURES AND POLICIES

BlockNews provides independent reporting on crypto, blockchain, and digital finance. Content is for informational purposes only and does not constitute financial advice. Sponsored material is always disclosed. By using this site, you agree to our Terms and Conditions and Privacy Policy.

© 2025 BlockNews

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • HOME
  • BITCOIN
  • CRYPTO
    • ETHEREUM
    • RIPPLE XRP
    • SOLANA
    • CARDANO
    • BINANCE BNB
    • DOGECOIN
    • TRON
    • LITECOIN
    • CHAINLINK
    • SUI
  • MEMECOINS
  • POLITICS
  • FINANCE
  • NFT
  • DEFI
  • GUIDES

© 2025 BlockNews