Slow Mist Warns of Malicious Extension in TRAE IDE Plugin Market

By: rootdata|2026/07/20 08:35:10

Slow Mist has reported that a malicious extension named juannegro.solidity has been discovered in the plugin market of the AI code editor TRAE. This extension disguises itself as a legitimate Solidity plugin but is actually a cross-platform malware delivery tool. Once installed, it can establish a persistent presence on the device and accept remote control commands, posing a threat to developers' private keys, wallets, and on-chain assets. Attackers utilize Ethereum smart contracts to dynamically store and update the addresses of remote control servers, allowing them to switch attack endpoints at any time without needing to republish the extension, thereby enhancing its concealment. Although the extension has been removed from Open VSX, it was still accessible through the TRAE plugin market as of July 18. Slow Mist advises users who have installed juannegro.solidity to uninstall it immediately and check their systems for potential intrusions.

-- Price

--

Disclaimer: This content is provided for general branding and informational purposes only and doesn't constitute financial, investment, legal, or tax advice. Any events, rewards, online events, or related information mentioned herein should not be considered a recommendation, solicitation, or invitation to purchase, sell, trade, or otherwise deal in any crypto assets or to use any services. Crypto assets are highly volatile and may result in loss. WEEX services and online events may not be available in all regions and are subject to applicable laws, regulations, and eligibility requirements. You are responsible for ensuring that your use of WEEX services complies with local laws and for carefully assessing the risks before participating in any crypto-related activities.

You may also like

iconiconiconiconiconiconicon
Customer Support:@weikecs
Business Cooperation:@weikecs
Quant Trading & MM:bd@weex.com
VIP Program:support@weex.com