Tech & Science

Hack Drains $155K from Solana Wallets via Backdoor Code in Web3.js Library

27
Security Risk - Hack - Threat

A recent hack has drained approximately $155,000 from digital wallets linked to the Solana blockchain.

The attack was carried out through a backdoor slipped into the Web3.js open-source library, which is maintained by Solana.

According to Solscan.io, a site tracking Solana transactions, the wallet address involved in the theft received about 674.8 SOL, translating to the stolen funds. Some users have reported losing large amounts, with one individual claiming to have lost $20,000.

The backdoor is believed to have resulted from a social engineering or phishing attack targeting maintainers of the Web3.js library. Security firm Socket pointed out that an “addToQueue” function was inserted into version 1.95.7 of the library, allowing the exfiltration of private keys from affected apps.

Christophe Tafani-Dereeper, a security researcher, confirmed that the code used the sol-rpc[.]xyz domain as a command and control server, which was hosted behind Cloudflare at the time.

GitHub’s Advisory Database has since warned all affected users to immediately rotate their private keys and remove the compromised package.

It also stated that any computer running the backdoored code should be considered fully compromised, with no guarantees that removing the package will eliminate all malicious software.

Written by
Sazid Kabir

I've loved music and writing all my life. That's why I started this blog. In my spare time, I make music and run this blog for fellow music fans.

Stay updated with nomusica.com. Add us to your preferred sources to see our latest updates first.

Related Articles

The moon moves in front of the sun in a rare "ring of fire" solar eclipse as seen from Singapore on December 26, 2019.
Tech & Science

Jan. 18 New Moon Marks Start of Lunar Year and Ramadan Timing

A new moon on Sunday, January 18, 2026, marks more than just...

The moon moves in front of the sun in a rare "ring of fire" solar eclipse as seen from Singapore on December 26, 2019.
Tech & Science

Annular Solar Eclipse: Where and When to See the 2026 ‘Ring of Fire’

On Tuesday, February 17, 2026, a rare annular solar eclipse, also called...

GRU Moon Hotel
Tech & Science

You Could Soon Walk on the Moon and Stay at a Five-Star Hotel

GRU Space, a California startup backed by Y Combinator and Nvidia, has...

ChatGPT 5
AITech & Science

You May Start Seeing Ads on ChatGPT, Here’s Why

OpenAI announced that it will start showing ads to users on ChatGPT’s...