@anon
sign up
@anon
sign up
pull down to refresh
Official NPM package for XRP infected with crypto stealing backdoor
www.aikido.dev/blog/xrp-supplychain-attack-official-npm-package-infected-with-crypto-stealing-backdoor
12 sats
\
0 comments
\
@carter
22 Apr
security
related
Malicious npm Packages Found Using Image Files to Hide Backdoor Code
thehackernews.com/2024/07/malicious-npm-packages-found-using.html?m=1
23 sats
\
0 comments
\
@ch0k1
19 Jul 2024
news
Bogus npm Packages Used to Trick Software Developers into Installing Malware
thehackernews.com/2024/04/bogus-npm-packages-used-to-trick.html?m=1
42 sats
\
1 comment
\
@ch0k1
28 Apr 2024
security
NPM hack was mentioned multiple times on SN before yesterday
130 sats
\
4 comments
\
@nolem
9 Sep
bitdevs
Malicious npm Packages Infect 3,200+ Cursor Users With Backdoor
thehackernews.com/2025/05/malicious-npm-packages-infect-3200.html
24 sats
\
0 comments
\
@ch0k1
11 May
news
North Korean Hackers Targeting Developers with Malicious npm Packages
thehackernews.com/2024/02/north-korean-hackers-targeting.html
23 sats
\
0 comments
\
@doofus
28 Feb 2024
security
Finding packages affected by xz vuln on Nix
3045 sats
\
6 comments
\
@jurraca
30 Mar 2024
NixOS
Malicious Microsoft VSCode extensions target devs, crypto community
www.bleepingcomputer.com/news/security/malicious-microsoft-vscode-extensions-target-devs-crypto-community/
30 sats
\
0 comments
\
@ch0k1
18 Dec 2024
security
Backdoor Slipped Into Popular Code Library, Drains ~$155k From SOL Wallets
arstechnica.com/information-technology/2024/12/backdoor-slips-into-popular-code-library-drains-155k-from-digital-wallets/
81 sats
\
0 comments
\
@0xbitcoiner
5 Dec 2024
security
Malicious PyPi package steals Discord auth tokens from devs
www.bleepingcomputer.com/news/security/malicious-pypi-package-steals-discord-auth-tokens-from-devs/
59 sats
\
0 comments
\
@ch0k1
18 Jan
security
GitHub MCP Server Vulnerability Let Attackers Access Private Repositories
cybersecuritynews.com/github-mcp-server-vulnerability/amp/
11 sats
\
0 comments
\
@ch0k1
31 May
security
We Just Found Malicious Code in the Popular NPM Package
jdstaerk.substack.com/p/we-just-found-malicious-code-in-the
1397 sats
\
18 comments
\
@kristapsk
8 Sep
security
Self Propagating NPM Malware Compromises over 40 Packages
www.stepsecurity.io/blog/ctrl-tinycolor-and-40-npm-packages-compromised
100 sats
\
0 comments
\
@hn
16 Sep
tech
Self-Replicating Worm Hits 180+ Software Packages
krebsonsecurity.com/2025/09/self-replicating-worm-hits-180-software-packages/
50 sats
\
0 comments
\
@ch0k1
16 Sep
news
NPM debug and chalk packages compromised
www.aikido.dev/blog/npm-debug-and-chalk-packages-compromised
233 sats
\
0 comments
\
@hn
8 Sep
tech
Open-Source Xeno RAT Trojan Emerges as a Potent Threat on GitHub
thehackernews.com/2024/02/open-source-xeno-rat-trojan-emerges-as.html
23 sats
\
1 comment
\
@doofus
28 Feb 2024
security
Tinycolor npm Package Compromised in (another) Supply Chain Attack
socket.dev/blog/tinycolor-supply-chain-attack-affects-40-packages
953 sats
\
3 comments
\
@aljaz
16 Sep
security
Backdoor Found in XZ Tools Used by Most Linux Distros
www.nobsbitcoin.com/backdoor-in-xz-tools-used-by-most-linux-distros/
96 sats
\
0 comments
\
@BitcoinIsTheFuture
29 Mar 2024
econ
ONGOING HACK: Do not move any bitcoin on-chain right now.
100 sats
\
8 comments
\
@NEEDcreations
8 Sep
bitcoin
Cracked software beats gold: new macOS backdoor stealing cryptowallets
securelist.com/new-macos-backdoor-crypto-stealer/111778/
62 sats
\
1 comment
\
@beorange
25 Jan 2024
security
How to Verify the Impact of the Recent NPM Attack on My Wallets?
400 sats
\
29 comments
\
@spiderman
11 Sep
bitcoin
Snyk security researcher deploys malicious NPM packages targeting Cursor.com
sourcecodered.com/snyk-malicious-npm-package/
34 sats
\
0 comments
\
@hn
14 Jan
tech
more