Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
News Injective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm Packages
The Hacker News
1 month ago

Injective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm Packages

By info@thehackernews.com (The Hacker News)

Unknown threat actors compromised the Injective Labs SDK project's GitHub repository and leveraged it to publish a malicious package on the npm registry to steal cryptocurrency wallet private keys and mnemonic seed phrases. The compromised version, @injectivelabs/sdk-ts@1.20.21, came embedded with fake telemetry functionality that exfiltrated data from cryptocurrency wallets. The version was

More from The Hacker News

Leaving Threaticon

This link opens an external site that isn't part of the platform.