Compromised dYdX npm and PyPI Packages Deliver Wallet Stealers and RAT Malware (thehackernews.com)
0xBASE INTEL BRIEF
- Attackers use typosquatting and account compromise on npm and PyPI.
- Malware targets cryptocurrency wallets and installs RATs.
- Developers urged to verify package integrity.
"Sophisticated attackers are exploiting developer trust in package registries to inject wallet-stealing and RAT malware via typosquatting and account compromises targeting dYdX-related packages."
no comments yet.