SlowMist warns that MistEye has detected cross-repository supply chain attacks targeting developers, with malicious packages published to npm, PyPI, and over 34 malicious packages and 384 related versions, targeting the Crypto, DeFi, Solana, Sui/Move, and AI developer communities. Attackers may steal sensitive information such as wallets, SSH keys, GitHub/AWS tokens, and achieve persistent control through methods like Git hooks, SSH, systemd, and others. SlowMist recommends immediately removing the affected packages and rotating credentials.

SOL-0.36%
SUI0.78%
MOVE0.31%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned