Close Menu
Altcoin ObserverAltcoin Observer
  • Regulation
  • Bitcoin
  • Altcoins
  • Market
  • Analysis
  • DeFi
  • Security
  • Ethereum
Categories
  • Altcoins (3,578)
  • Analysis (3,685)
  • Bitcoin (4,310)
  • Blockchain (2,157)
  • DeFi (2,623)
  • Ethereum (2,758)
  • Event (119)
  • Exclusive Deep Dive (1)
  • Landscape Ads (2)
  • Market (2,714)
  • Press Releases (12)
  • Reddit (2,847)
  • Regulation (2,474)
  • Security (3,997)
  • Thought Leadership (3)
  • Videos (44)
Hand picked
  • Bitcoin Is Currently Cheaper Than 90% of Its History, Says Lawrence Lepard, Author of Big Print
  • California DFAL clock is ticking: XRP price is at stake
  • Everyone Expects XRP to Crash Further: Is Ripple About to Surprise the Market?
  • Bitcoin Falls Below $60,000 as Dollar Strength Weakens Crypto Demand
  • Kraken and Maple close historic on-chain warehouse for digital asset-backed loans
We are social
  • Facebook
  • Twitter
  • Instagram
  • YouTube
Facebook X (Twitter) Instagram
  • About us
  • Disclaimer
  • Terms of service
  • Privacy policy
  • Contact us
Facebook X (Twitter) Instagram YouTube LinkedIn
Altcoin ObserverAltcoin Observer
  • Regulation
  • Bitcoin
  • Altcoins
  • Market
  • Analysis
  • DeFi
  • Security
  • Ethereum
Events
Altcoin ObserverAltcoin Observer
Home»Blockchain»The malicious NPM packages use Ethereum blockchain for the delivery of malicious software
Blockchain

The malicious NPM packages use Ethereum blockchain for the delivery of malicious software

September 4, 2025No Comments
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
4050956 0 93667700 1756933422 shutterstock 712558591 100963102 orig.jpg
Share
Facebook Twitter LinkedIn Pinterest Email


NPM as a layer of obfuscation for the GitHub campaign

Deslab reversion researchers colortoolsv2 And mimelib2 This used Ethereum intelligent contracts for the delivery of malware in July. But little efforts were devoted to that these packages are legitimate and attractive for developers to include in their projects, which is generally the objective of supply chain attacks with NPM VOYOUS plans.

THE colortoolsv2 Package – and the mimelib2 Whoever replaced it later – only contained the files necessary to implement malware. As the researchers discovered it later, this was due to the fact that they were part of a wider coordinated campaign, the objective of which was to encourage users to execute the code from false GitHub standards which would then download the NPM packages automatically in the form of dependencies.

The Snape Github standards claimed to be for automated cryptocurrency trading robots and were designed to appear legitimate. They seemed to have several active contributors, thousands of code of code and several stars, but these were all faked with SOCCPPPET accounts created roughly at the same time as the NPM packages appeared.



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleBitcoin, Ethereum open to open interest are near ATH levels, what happened the last time?
Next Article Which holds Dex and resolve it

Related Posts

Blockchain

Japanese securities giant to issue $65 million worth of XRP-paying blockchain bonds – DL News

February 23, 2026
Blockchain

What is the .brave Blockchain domain and how it works

February 22, 2026
Blockchain

Why President Trump’s latest crypto scandal could be a disaster for the blockchain industry

February 22, 2026
Add A Comment
Leave A Reply Cancel Reply

Single Page Post
Share
  • Facebook
  • Twitter
  • Instagram
  • YouTube
Featured Content
Event

Dutch Blockchain Week 2026 strengthens position as Europe’s leading B2B blockchain event week

April 14, 2026

Amsterdam, April 2026 – Dutch Blockchain Week 2026 is rapidly evolving into one of Europe’s…

Event

Global Games Show Riyadh: The Ultimate Creator & Influencer Hub

March 31, 2026

The fast-evolving gaming ecosystem of Riyadh is powered by solid national investment, a flourishing esports…

1 2 3 … 82 Next
  • Facebook
  • Twitter
  • Instagram
  • YouTube

California DFAL clock is ticking: XRP price is at stake

June 28, 2026

Injective Prices Rebound, But Top Traders Remain Short: Is $7 Still Possible for INJ?

June 28, 2026

Major Whale Shorts $4.92 Million in ZEC – Can Zcash Rebound to $520?

June 28, 2026
Facebook X (Twitter) Instagram LinkedIn
  • About us
  • Disclaimer
  • Terms of service
  • Privacy policy
  • Contact us
© 2026 Altcoin Observer. all rights reserved by Tech Team.

Type above and press Enter to search. Press Esc to cancel.

bitcoin
Bitcoin (BTC) $ 59,599.00
ethereum
Ethereum (ETH) $ 1,569.02
tether
Tether (USDT) $ 0.998655
bnb
BNB (BNB) $ 551.54
usd-coin
USDC (USDC) $ 0.999767
xrp
XRP (XRP) $ 1.05
solana
Solana (SOL) $ 71.36
tron
TRON (TRX) $ 0.323087
figure-heloc
Figure Heloc (FIGR_HELOC) $ 1.04
staked-ether
Lido Staked Ether (STETH) $ 2,265.05