#cryptocurrency-malware

[ follow ]
Information security
fromArs Technica
3 days ago

Software packages with more than 2 billion weekly downloads hit in supply-chain attack

Malicious npm packages injected browser code to monitor crypto transfers and replace wallet addresses, while multiple supply-chain attacks exfiltrated authentication secrets across package ecosystems.
Information security
fromBitcoin Magazine
3 days ago

NPM Attack: Javascript Library Compromise Goes After Bitcoin Wallets

Compromised NPM account pushed malware that locates cryptocurrency wallets, modifies transaction-signing functions, and swaps recipient addresses to steal funds.
[ Load more ]