Wu Shuo learned that the Socket research team published a report revealing their discovery of an active cryptographic stealer supply chain attack called TrapDoor, which spans npm, PyPI, and Crates.io, involving over 34 malicious packages and more than 384 related versions and artifacts, targeting developers in crypto, DeFi, Solana, Sui, Move, and AI. Socket stated that the malicious packages can steal developer keys, crypto wallets, SSH keys, cloud credentials, browser data, environment variables, and API keys, and operate through methods such as npm's postinstall hooks, executing remote JavaScript during PyPI imports, and build scripts on Crates.io.

SOL-0.54%
SUI-1.97%
MOVE-0.66%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned