T1036.005 17
- Two Malicious Rust Crates Impersonate Popular Logger to Steal Wallet Keys
- Wallet-Draining npm Package Impersonates Nodemailer to Hijack Crypto Transactions
- Surveillance Malware Hidden in npm and PyPI Packages Targets Developers with Keyloggers, Webcam Capture, and Credential Theft
- Malicious Ruby Gems Exfiltrate Telegram Tokens and Messages Following Vietnam Ban
- Monkey-Patched PyPI Packages Use Transitive Dependencies to Steal Solana Private Keys
- Typosquatted Go Packages Deliver Malware Loader Targeting Linux and macOS Systems
- Go Supply Chain Attack: Malicious Package Exploits Go Module Proxy Caching for Persistence
- North Korean APT Lazarus Targets Developers with Malicious npm Package
- Gmail For Exfiltration: Malicious npm Packages Target Solana Private Keys and Drain Victims' Wallets
- Weaponizing OAST: How Malicious Packages Exploit npm, PyPI, and RubyGems for Data Exfiltration and Recon
- Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
- Skuld Infostealer Returns to npm with Fake Windows Utilities and Malicious Solara Development Packages
- Malicious Maven Package Impersonating 'XZ for Java' Library Introduces Backdoor Allowing Remote Code Execution
- Typosquatting Cryptographic Libraries: Malicious npm Packages Threaten Crypto Developers with Keylogging and Wallet Theft
- Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
- Roblox Developers Targeted with npm Packages Infected with Skuld Infostealer and Blank Grabber
- Typosquatting on PyPI: Malicious Package Mimics Popular 'browser-cookie3' Library to Steal Sensitive Data