• About Us
  • Careers
  • Contact
No Result
View All Result
Thursday, May 8, 2025
DeFi Planet
  • News
    • People
    • Business
    • Crime
    • Regulation
    • Crypto
    • CBDC
  • Markets
    • Bitcoin
    • Ethereum
    • Stablecoins
    • Altcoins
    • Crypto ETFs
    • Memecoins
  • Policy
  • Articles
    • Press Releases
    • Opinion
    • Explainers
    • Guest Post
    • Sponsored
  • Directory
    • Companies
    • People
    • Products
    • Wallets
  • Multimedia
    • Videos
    • Podcasts
  • Learn
    • DeFi Basics
    • Tutorials
    • Reviews
    • Blockchain Fundamentals
  • Research
    • Case Studies
  • Explore
    • DeFi
    • Crypto Gaming
    • NFT
    • DAO
    • Metaverses
  • Jobs
  • Markets Pro
    • DeFi Planet Pro
    • Spend Crypto
    • Swap Crypto
    • Coin Prices
    • Crypto Exchanges
    • Crypto Analyzer
  • News
    • People
    • Business
    • Crime
    • Regulation
    • Crypto
    • CBDC
  • Markets
    • Bitcoin
    • Ethereum
    • Stablecoins
    • Altcoins
    • Crypto ETFs
    • Memecoins
  • Policy
  • Articles
    • Press Releases
    • Opinion
    • Explainers
    • Guest Post
    • Sponsored
  • Directory
    • Companies
    • People
    • Products
    • Wallets
  • Multimedia
    • Videos
    • Podcasts
  • Learn
    • DeFi Basics
    • Tutorials
    • Reviews
    • Blockchain Fundamentals
  • Research
    • Case Studies
  • Explore
    • DeFi
    • Crypto Gaming
    • NFT
    • DAO
    • Metaverses
  • Jobs
  • Markets Pro
    • DeFi Planet Pro
    • Spend Crypto
    • Swap Crypto
    • Coin Prices
    • Crypto Exchanges
    • Crypto Analyzer
No Result
View All Result
DeFi Planet
No Result
View All Result

Malware Targets Ethereum, XRP, Solana Users Through NPM Supply Chain Attack

14 April 2025
in Crime, News
Reading Time: 3 mins read
109 3
Home News Crime

Cybersecurity experts have sounded the alarm on a new malware campaign targeting users of popular crypto wallets like Atomic and Exodus, with Ethereum, XRP, and Solana assets in the crosshairs.

According to researchers at ReversingLabs, the campaign exploits software supply chains by sneaking malicious code into seemingly harmless npm (Node Package Manager) packages used by developers. One of the key culprits identified is a package named “pdf-to-office,” which, despite appearing legitimate, harbours hidden code designed to compromise crypto wallet applications.

The attack occurs when developers unknowingly integrate the trojanized package into their projects. Once installed, the malware springs into action—scanning the infected system for crypto wallets and injecting code capable of silently hijacking transactions. Victims remain unaware as the malware replaces recipient wallet addresses with attacker-controlled ones while maintaining a normal-looking user interface.

ReversingLabs’ technical breakdown reveals a sophisticated, multi-stage attack strategy. The malware uses advanced obfuscation methods to bypass security scans and then locates application paths for crypto wallets. It extracts and repackages the application files after injecting its malicious payload, ensuring the altered software behaves as expected while concealing its true intent.

The malware’s ability to tamper with transactions involving Ethereum, Tron-based USDT, XRP, and Solana is particularly alarming. The attacker’s addresses are hidden using base64 encoding, allowing the malware to decode and insert them just as a user sends funds—without triggering red flags in the wallet’s interface.

The consequences are dire: transactions appear routine, but users later discover on the blockchain that their crypto assets were rerouted to unfamiliar addresses. This latest scheme highlights an escalating trend in software supply chain attacks aimed at draining funds from unsuspecting crypto holders.

Security researchers urge developers and users alike to remain vigilant, double-check installed npm packages, and monitor blockchain transactions to verify fund movements.

Meanwhile, Microsoft identified a new remote access trojan (RAT) to steal cryptocurrency from users by targeting 20 different wallet extensions on Google Chrome.

 

If you want to read more news articles like this, visit DeFi Planet and follow us on Twitter, LinkedIn, Facebook, Instagram, and CoinMarketCap Community.

“Take control of your crypto portfolio with MARKETS PRO, DeFi Planet’s suite of analytics tools.”

Don't miss out!

Subscribe To Our Newsletter

Receive top education news, lesson ideas, teaching tips and more!
Invalid email address
Give it a try. You can unsubscribe at any time.
Thanks for subscribing!
Tags: ReversingLabs
Share66Tweet41Share11
Previous Post

First Digital Labs Defends FDUSD Backing Amid Fraud Allegations from Justin Sun

Next Post

Chinese Fraudsters Launder $6M in USDT, Victimizing Thousands of Indians in Crypto Scam

Favour Okosodo

Favour Okosodo

Experienced web content writer with a strong command of SEO, specializing in creating concise, engaging content that drives traffic and enhances conversions across diverse industries.

Related Posts

Texas House Panel Advances Bill to Establish State-Backed Bitcoin Reserve
Crypto

Texas House Panel Advances Bill to Establish State-Backed Bitcoin Reserve

8 May 2025
Stablecoins Represent 50% of South Korea's Crypto Outflows in Q1
News

Stablecoins Represent 50% of South Korea’s Crypto Outflows in Q1

8 May 2025
Binance's Proof of Reserves Confirms 100%+ Backing for Major Tokens
Crypto

Binance’s Proof of Reserves Confirms 100%+ Backing for Major Tokens

8 May 2025
Stripe Launches Stablecoin-Based Accounts Across 100+ Countries Amid Rising Global Demand
Crypto

Stripe Launches Stablecoin-Based Accounts Across 100+ Countries Amid Rising Global Demand

8 May 2025

Featured Posts

source: buddyxtheme.com

Best AI-Powered Tools for Managing Crypto Portfolios

byOlayinka Sodiq
26 January 2025
0

Is Mass Adoption of Cryptocurrency Achievable, or Will It Remain a Niche Technology?

byOlajumoke Oyaleke
19 January 2025
0

source: casinosblockchain.io

Does Cryptocurrency Encourage a Gambling Mentality in Investments?

byOlajumoke Oyaleke
18 January 2025
0

Bitcoin and Wealth Inequality Who Truly Benefits from Perpetual Price Increases

Bitcoin and Wealth Inequality: Who Truly Benefits from Perpetual Price Increases?

byOlayinka Sodiqand1 others
5 January 2025
0

Exploring the Role of AI in Enhancing DeFi Security

Exploring the Role of AI in Enhancing DeFi Security

byOlayinka Sodiq
1 October 2024
0

Read More

Chain of Thoughts

DAOs and the Coordination of Human Endeavour

DAOs and The Coordination of Human Endeavour

byOlu Omoyele
27 April 2025
0

...

Should DeFi Be Regulated?

Should DeFi Be Regulated?

byOlu Omoyele
27 March 2025
0

...

Is Tokenization All That It’s Cracked Up To Be?

Is Tokenization All That It’s Cracked Up To Be?

byOlu Omoyele
26 February 2025
0

...

We Must Balance Innovation and Regulation for Crypto to Really Thrive

We Must Balance Innovation and Regulation for Crypto to Really Thrive

byOlu Omoyele
29 January 2025
0

...

Markets Update

Your Weekend Crypto Roundup | April 2025 (Week 4)

2 weeks ago

Ukraine Proposes 18% Tax on Earnings, What Does It Mean for the Broader Crypto Market?

2 weeks ago

Bitcoin’s Wild Week: Market Volatility, Key Levels, and Predictions. Can It Smash the $100K Resistance in 2025?

2 weeks ago

Why Conor McGregor’s REAL Token Failed

2 weeks ago

Trump’s Tariff Talk Tanked the Crypto Market — So Why Did Suspending Them Spark a Rally?

2 weeks ago

March’s Crypto Winners and Losers – What to Expect in April

3 weeks ago
Read More

Events

Next Block Expo
Next Block Expo
19 May 25
Warszawa

Spotlight

All about Ethereum
All about Algorand
All about Bitcoin
All about Gora

Press Releases

Flipster Makes Esports Debut as Official Crypto Exchange Partner of TALON’s Dota 2 Team, Powering a New Era of Fan Engagement

bychainwire
8 May 2025
0

Bybit Bounces Back: Kaiko Validates Fast Liquidity Recovery Post-$1.5B Hack

bychainwire
7 May 2025
0

ProMeet Unveils the Promeeters Program to Boost Influencer Impact and Long-Term Earnings

bychainwire
6 May 2025
0

Casper 2.0 Goes Live on Mainnet, Positioning Casper Network for the Real-World Asset Era

bychainwire
6 May 2025
0

MultiBank Group to tokenize $3 billion in real estate assets with MAG as it readies to launch $MBG

bychainwire
6 May 2025
0

Read More

ADVERTISING

ABOUT

TEAM

CAREERS

CONTACT

TERMS & CONDITIONS

PRIVACY POLICY

© Copyright 2025 DeFi Planet

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

No Result
View All Result
  • News
    • People
    • Business
    • Crime
    • Regulation
    • Crypto
    • CBDC
  • Markets
    • Bitcoin
    • Ethereum
    • Stablecoins
    • Altcoins
    • Crypto ETFs
    • Memecoins
  • Policy
  • Articles
    • Press Releases
    • Opinion
    • Explainers
    • Guest Post
    • Sponsored
  • Directory
    • Companies
    • People
    • Products
    • Wallets
  • Multimedia
    • Videos
    • Podcasts
  • Learn
    • DeFi Basics
    • Tutorials
    • Reviews
    • Blockchain Fundamentals
  • Research
    • Case Studies
  • Explore
    • DeFi
    • Crypto Gaming
    • NFT
    • DAO
    • Metaverses
  • Jobs
  • Markets Pro
    • DeFi Planet Pro
    • Spend Crypto
    • Swap Crypto
    • Coin Prices
    • Crypto Exchanges
    • Crypto Analyzer

© Copyright 2024 DeFi Planet   |   Terms & Conditions   |   Privacy Policy

-
00:00
00:00

Queue

Update Required Flash plugin
-
00:00
00:00