Source |
The Hacker News |
Identifiant |
8619354 |
Date de publication |
2024-12-04 15:18:00 (vue: 2024-12-04 10:08:14) |
Titre |
Researchers Uncover Backdoor in Solana\\'s Popular Web3.js npm Library |
Texte |
Cybersecurity researchers are alerting to a software supply chain attack targeting the popular @solana/web3.js npm library that involved pushing two malicious versions capable of harvesting users\' private keys with an aim to drain their cryptocurrency wallets.
The attack has been detected in versions 1.95.6 and 1.95.7. Both these versions are no longer available for download from the npm
Cybersecurity researchers are alerting to a software supply chain attack targeting the popular @solana/web3.js npm library that involved pushing two malicious versions capable of harvesting users\' private keys with an aim to drain their cryptocurrency wallets.
The attack has been detected in versions 1.95.6 and 1.95.7. Both these versions are no longer available for download from the npm |
Notes |
★★
|
Envoyé |
Oui |
Condensat |
@solana/web3 aim alerting are attack available backdoor been both capable chain cryptocurrency cybersecurity detected download drain from harvesting has involved keys library longer malicious npm popular private pushing researchers software solana supply targeting these two uncover users versions wallets web3 |
Tags |
|
Stories |
|
Move |
|