Sonatype has identified multiple npm cryptocurrency packages, latest versions of which have been hijacked and altered to steal sensitive information such as environment variables from the target victims.

Multiple crypto packages hijacked, turned into info-stealers

*** This is a Security Bloggers Network syndicated blog from 2024 Sonatype Blog authored by Ax Sharma. Read the original post at: https://www.sonatype.com/blog/multiple-crypto-packages-hijacked-turned-into-info-stealers

Multiple crypto packages hijacked, turned into info-stealers

Multiple crypto packages hijacked, turned into info-stealers