• About Us
  • Careers
  • Contact
No Result
View All Result
Wednesday, July 30, 2025
DeFi Planet
  • News
    • People
    • Business
    • Crime
    • Regulation
    • Crypto
    • CBDC
  • Markets
    • Bitcoin
    • Ethereum
    • Stablecoins
    • Altcoins
    • Crypto ETFs
    • Memecoins
  • Policy
  • Articles
    • Press Releases
    • Opinion
    • Explainers
    • Guest Post
    • Sponsored
  • Directory
    • Companies
    • People
    • Products
    • Wallets
  • Multimedia
    • Videos
    • Podcasts
  • Learn
    • DeFi Basics
    • Tutorials
    • Reviews
    • Blockchain Fundamentals
  • Research
    • Case Studies
  • Explore
    • DeFi
    • Crypto Gaming
    • NFT
    • DAO
    • Metaverses
    • Glossary
  • Jobs
  • Markets Pro
    • DeFi Planet Pro
    • Spend Crypto
    • Swap Crypto
    • Coin Prices
    • Crypto Exchanges
    • Crypto Analyzer
  • News
    • People
    • Business
    • Crime
    • Regulation
    • Crypto
    • CBDC
  • Markets
    • Bitcoin
    • Ethereum
    • Stablecoins
    • Altcoins
    • Crypto ETFs
    • Memecoins
  • Policy
  • Articles
    • Press Releases
    • Opinion
    • Explainers
    • Guest Post
    • Sponsored
  • Directory
    • Companies
    • People
    • Products
    • Wallets
  • Multimedia
    • Videos
    • Podcasts
  • Learn
    • DeFi Basics
    • Tutorials
    • Reviews
    • Blockchain Fundamentals
  • Research
    • Case Studies
  • Explore
    • DeFi
    • Crypto Gaming
    • NFT
    • DAO
    • Metaverses
    • Glossary
  • Jobs
  • Markets Pro
    • DeFi Planet Pro
    • Spend Crypto
    • Swap Crypto
    • Coin Prices
    • Crypto Exchanges
    • Crypto Analyzer
No Result
View All Result
DeFi Planet
No Result
View All Result
Home News Crime

Malware Targets Ethereum, XRP, Solana Users Through NPM Supply Chain Attack

14 April 2025
in Crime, News
Reading Time: 3 mins read
109 4
Malware Targets Ethereum, XRP, Solana Users Through NPM Supply Chain Attack

Source: The Hacker News

Cybersecurity experts have sounded the alarm on a new malware campaign targeting users of popular crypto wallets like Atomic and Exodus, with Ethereum, XRP, and Solana assets in the crosshairs.

According to researchers at ReversingLabs, the campaign exploits software supply chains by sneaking malicious code into seemingly harmless npm (Node Package Manager) packages used by developers. One of the key culprits identified is a package named “pdf-to-office,” which, despite appearing legitimate, harbours hidden code designed to compromise crypto wallet applications.

The attack occurs when developers unknowingly integrate the trojanized package into their projects. Once installed, the malware springs into action—scanning the infected system for crypto wallets and injecting code capable of silently hijacking transactions. Victims remain unaware as the malware replaces recipient wallet addresses with attacker-controlled ones while maintaining a normal-looking user interface.

ReversingLabs’ technical breakdown reveals a sophisticated, multi-stage attack strategy. The malware uses advanced obfuscation methods to bypass security scans and then locates application paths for crypto wallets. It extracts and repackages the application files after injecting its malicious payload, ensuring the altered software behaves as expected while concealing its true intent.

The malware’s ability to tamper with transactions involving Ethereum, Tron-based USDT, XRP, and Solana is particularly alarming. The attacker’s addresses are hidden using base64 encoding, allowing the malware to decode and insert them just as a user sends funds—without triggering red flags in the wallet’s interface.

The consequences are dire: transactions appear routine, but users later discover on the blockchain that their crypto assets were rerouted to unfamiliar addresses. This latest scheme highlights an escalating trend in software supply chain attacks aimed at draining funds from unsuspecting crypto holders.

Security researchers urge developers and users alike to remain vigilant, double-check installed npm packages, and monitor blockchain transactions to verify fund movements.

Meanwhile, Microsoft identified a new remote access trojan (RAT) to steal cryptocurrency from users by targeting 20 different wallet extensions on Google Chrome.

 

If you want to read more news articles like this, visit DeFi Planet and follow us on Twitter, LinkedIn, Facebook, Instagram, and CoinMarketCap Community.

“Take control of your crypto portfolio with MARKETS PRO, DeFi Planet’s suite of analytics tools.”

Don't miss out!

Subscribe To Our Newsletter

Receive top education news, lesson ideas, teaching tips and more!
Invalid email address
Give it a try. You can unsubscribe at any time.
Thanks for subscribing!
Tags: ReversingLabs
Share66Tweet41Share11
Favour Okosodo

Favour Okosodo

Experienced web content writer with a strong command of SEO, specializing in creating concise, engaging content that drives traffic and enhances conversions across diverse industries.

Related Posts

source: reuters.com
News

JD.com Registers Stablecoin Entities Ahead of Hong Kong’s New Regulations

29 July 2025
source: navigator-insurance.com
News

Hong Kong Finalizes Stablecoin Regulations, Sets August 1 as Launch Date for New Framework

29 July 2025
source: altcoinbuzz.io
News

FIS Partners with Circle to Enable USDC Payments for Financial Institutions

29 July 2025
source: news.bitcoin.com
Crypto

PayPal Pushes Crypto Payments Mainstream with Lower Costs and Global Reach

29 July 2025

Featured Posts

Web3 in 2025: Where We Are, What’s Next, and What the Data Says

Web3 in 2025: Where We Are, What’s Next, and What the Data Says

byOlayinka Sodiq
21 July 2025
0

Which Pays Better Right Now: DeFi’s High-Yield Pairs or Traditional Finance’s Cash Vehicles?

Which Pays Better Right Now: DeFi’s High-Yield Pairs or Traditional Finance’s Cash Vehicles?

byOlayinka Sodiq
6 July 2025
0

The Future of Crypto Could Be Institutional—And That’s Not a Bad Thing

The Future of Crypto Could Be Institutional—And That’s Not a Bad Thing

byOlajumoke Oyaleke
30 June 2025
0

What Is a Rebase Token and How Does It Work?

What Is a Rebase Token and How Does It Work?

byOlajumoke Oyaleke
28 June 2025
0

Smart Contracts on Ethereum, Solana, vs. Other Blockchains

Smart Contracts on Ethereum, Solana, vs. Other Blockchains

byOlajumoke Oyaleke
26 June 2025
0

Read More

Chain of Thoughts

The Game-changing Triumvirate: Blockchain, Data Science, and Artificial Intelligence

The Game-changing Triumvirate: Blockchain, Data Science, and Artificial Intelligence

byOlu Omoyele
30 June 2025
0

...

Are Stablecoins Bank Deposits?

Are Stablecoins Bank Deposits?

byOlu Omoyele
31 May 2025
0

...

DAOs and the Coordination of Human Endeavour

DAOs and The Coordination of Human Endeavour

byOlu Omoyele
27 April 2025
0

...

Should DeFi Be Regulated?

Should DeFi Be Regulated?

byOlu Omoyele
27 March 2025
0

...

Markets Update

Your Weekend Crypto Roundup | July 2025 (Week 4)

5 days ago

Your Weekend Crypto Roundup | July 2025 (Week 3)

2 weeks ago

Account Abstraction Adoption: Are Users Ready for Smart Wallets?

2 weeks ago

The Role of Real-World Assets (RWAs) in the Next DeFi Boom

2 weeks ago

Stablecoins in 2025: Still Depegging or Finally Stable?

2 weeks ago

Your Weekend Crypto Roundup | July 2025 (Week 2)

3 weeks ago
Read More

Events

Rare Evo 2025
Rare Evo 2025
6 Aug 25
Las Vegas
CBDC Conference
CBDC Conference
9 Sep 25
Nassau

Spotlight

All about Ethereum
All about Algorand
All about Bitcoin
All about Gora

Press Releases

Blockchain for Good Alliance Leads Global Digital Cooperation at UN IGF 2025

bychainwire
29 July 2025
0

Queens Park Rangers and TokenFi Announces New Partnership

bychainwire
29 July 2025
0

Shinkai Launches v1.0: Onchain AI Agents Go Live with USDC & Coinbase x402

bychainwire
29 July 2025
0

DeepSnitch Introduces Five Specialized AI Agents as Token Presale Goes Live

bychainwire
29 July 2025
0

PowerBank’s 3.79 MW Geddes Solar Project Goes Live, Powering New Bitcoin Treasury Strategy

bychainwire
29 July 2025
0

Read More

ADVERTISING

ABOUT

TEAM

CAREERS

CONTACT

TERMS & CONDITIONS

PRIVACY POLICY

© Copyright 2025 DeFi Planet

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Please enter and activate your license key for Cryptocurrency Widgets PRO plugin for unrestricted and full access of all premium features.

Add New Playlist

No Result
View All Result
  • News
    • People
    • Business
    • Crime
    • Regulation
    • Crypto
    • CBDC
  • Markets
    • Bitcoin
    • Ethereum
    • Stablecoins
    • Altcoins
    • Crypto ETFs
    • Memecoins
  • Policy
  • Articles
    • Press Releases
    • Opinion
    • Explainers
    • Guest Post
    • Sponsored
  • Directory
    • Companies
    • People
    • Products
    • Wallets
  • Multimedia
    • Videos
    • Podcasts
  • Learn
    • DeFi Basics
    • Tutorials
    • Reviews
    • Blockchain Fundamentals
  • Research
    • Case Studies
  • Explore
    • DeFi
    • Crypto Gaming
    • NFT
    • DAO
    • Metaverses
    • Glossary
  • Jobs
  • Markets Pro
    • DeFi Planet Pro
    • Spend Crypto
    • Swap Crypto
    • Coin Prices
    • Crypto Exchanges
    • Crypto Analyzer

© Copyright 2024 DeFi Planet   |   Terms & Conditions   |   Privacy Policy

-
00:00
00:00

Queue

Update Required Flash plugin
-
00:00
00:00