Fake Windsurf extension uses Solana to steal dev data

Bitdefender researchers have identified a malicious extension that targeted the Windsurf integrated development environment (IDE) and used the Solana blockchain to deliver malware designed to steal developer credentials. The extension posed as a tool for R language development in Visual Studio Code-compatible environments. The sample Bitdefender analysed was named reditorsupporter.r-vscode-2.8.8-universal and closely resembled the legitimate … Read more

Fake Claude AI ads spread malware to target developers

Bitdefender has identified a malware campaign that uses Google Ads to distribute fake downloads of Anthropic’s Claude AI coding tool, with developers among the main targets. The activity centres on sponsored search results that appear when users search for terms such as “Claude code” and related developer tools. Attackers buy ads that mimic legitimate software … Read more

Subscription & ‘mystery box’ scams surge with new tactics

Bitdefender researchers have identified a marked increase in subscription-based and ‘mystery box’ frauds involving hundreds of deceptive yet highly convincing websites targeting online consumers. According to Bitdefender, cybercriminals have adopted new strategies and technological sophistication, directing considerable resources into producing websites that closely resemble legitimate retailers to lure victims. These fraudulent websites present a wide … Read more

Bitdefender uncovers massive Google Play Store ad fraud

Bitdefender’s security team has identified a significant ad fraud campaign involving hundreds of malicious applications available on the Google Play Store, resulting in over 60 million downloads globally, including users in Australia. The fraudulent apps, which include QR scanners, expense trackers, and health apps, engage in nefarious activities by displaying unsolicited ads and conducting phishing … Read more