Tools

News

Notícias

Classificados

Cursos

Broker

IPv4:

IPv6:

 

UpOrDown
Ping
MTR
Smokeping
MTU Detect
Portscan
DNS
HTTP/SSL
My IP
IP Calc
IP Extractor
Uptime Monitor

Malicious Packages Drain dYdX Wallets

Image © Arstechnica
Security researchers have found npm and PyPI packages tied to dYdX were compromised, exfiltrating seed phrases and device fingerprints.

Security researchers have found that open-source packages published on npm and PyPI for the dYdX ecosystem were altered to include code that steals wallet credentials from developers and backend systems, and in some cases backdoors devices.

Infected packages include npm’s @dydxprotocol/v4-client-js (versions 3.4.1, 1.22.1, 1.15.2, 1.0.31) and PyPI’s dydx-v4-client (1.1.5post1).

The malware was embedded in legitimate packages. When a seed phrase is processed, the code exfiltrates it along with a device fingerprint to a domain that mimics the legitimate dYdX site, dydx.priceoracle.site, via typosquatting.

The fingerprint enables attackers to correlate stolen credentials across victims and compromises, threatening any application that depends on the compromised versions and exposing both developers testing with real credentials and production end users to wallet theft.

Socket notes the incident is at least the third targeting of dYdX, following a 2022 npm supply-chain breach and a 2024 DNS hijack that redirected users to a malicious site attempting to sign transactions. The researchers warned that the attack demonstrates a persistent pattern of adversaries abusing trusted distribution channels to reach JavaScript and Python developers. Users are urged to audit dependencies and remove affected versions.

 

Arstechnica

Notícias relacionadas

Semicondutores: vendas globais chegam a 1 trilhão em 2026
NGMN propõe simplificar redes 5G para reduzir custos
Roblox: Regulação de dados de crianças no Brasil
Oi atrai interessados em ativos de telefonia fixa
IA e criptografia pós-quântica ditam cibersegurança 2026
Golpes Digitais no Carnaval 2026

O ISP.Tools sobrevive graças aos anúncios.

Considere desativar seu bloqueador de anúncios.
Prometemos não ser intrusivos.

Consentimento para cookies

Utilizamos cookies para melhorar a sua experiência no nosso site.

Ao utilizar o nosso site, você concorda com o uso de cookies. Saiba mais