34 malicious package lurking code repositories, AI and DeFi developers, hurry and conduct self-inspections

View Original
CoinNetwork
CryptoWorld News reports that according to SlowMist, a new "Trapdoor" virus is threatening Solana, DeFi, and AI developers. The virus injects over 34 malicious packages and 384 related versions into the largest code repositories, targeting creators of Web3 and AI products. This incident occurs against the backdrop of the DeFi industry suffering $635 million in losses in April. SlowMist analysis shows that attackers have shifted their strategy from attacking protected servers to secretly infiltrating engineers' personal devices. The malware aims to fully control developers' workstations, steal crypto wallets, cloud tokens, and access keys, and send them to addresses controlled by the attackers. SlowMist recommends teams immediately remove affected packages, isolate infected systems, and initiate a three-phase recovery protocol.
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned