Malicious npm Package Targets Atomic Wallet, Exodus Users by Swapping Crypto Addresses

Threat actors are continuing to upload malicious packages to the npm registry so as to tamper with already-installed local versions of legitimate libraries to execute malicious code in what’s seen as a sneakier attempt to stage a software supply chain attack.
The newly discovered package, named pdf-to-office, masquerades as a utility for converting PDF files to Microsoft Word documents. But, in

Total
0
Shares
Leave a Reply

Your email address will not be published. Required fields are marked *

Previous Post

PlayPraetor Reloaded: CTM360 Uncovers a Play Masquerading Party

Next Post

OttoKit WordPress Plugin Admin Creation Vulnerability Under Active Exploitation

Related Posts
Total
0
Share