A new set of four malicious packages has been identified in the npm package registry, designed to steal cryptocurrency wallet credentials from Ethereum developers. These packages disguise themselves as legitimate cryptographic utilities and Flashbots MEV infrastructure, while covertly exfiltrating private keys and mnemonic seeds to a Telegram bot controlled by the attacker.
Loading PerspectiveSplit analysis...
