Buy Crypto
Markets
Spot
Futures
Earn
Promotion
More
reward-centerNewcomer Zone
Feed HomeFlash details
Security Firm Cryptocurrency Theft Tool TrapDoor Targets Top Three Code Repositories, 34 Malicious Packages Detected

BlockBeats News, May 25th, according to the security company Socket Security, a cryptocurrency theft activity named TrapDoor is conducting a supply chain attack in package repositories such as npm, PyPI, and Crates.io. Currently, 34 malicious packages and 384 versions and builds have been identified, with the attackers continuously pushing new versions across the ecosystems.

The article states that TrapDoor mainly targets developers in the cryptocurrency, AI, and security fields, capable of stealing wallets, SSH keys, cloud credentials, GitHub tokens, browser data, environment variables, and API keys.

Source: BlockBeats

Disclaimer: The current content is sourced from third-party perspectives or directly translated by AI from third-party perspectives. CoinEx does not guarantee the authenticity, accuracy, and originality of the content, and it does not constitute any investment advice from CoinEx. The prices of cryptocurrencies are highly volatile, please be aware of the potential risks.

Hot
  • Coins
    Price
    24H Change