Deceptive npm Package Aims at Atomic Wallet, Exodus Users by Interchanging Crypto Addresses

Perpetrators persist in uploading deceptive packages to the npm registry to manipulate existing local copies of authentic libraries to run harmful code in a more clandestine effort to orchestrate a software supply chain breach.

Perpetrators persist in uploading deceptive packages to the npm registry to manipulate existing local copies of authentic libraries to run harmful code in a more clandestine effort to orchestrate a software supply chain breach. The recently uncovered package, called pdf-to-office, disguises itself as a tool for transforming PDF files into Microsoft Word documents. However, in

About Author

Subscribe To InfoSec Today News

You have successfully subscribed to the newsletter

There was an error while trying to send your request. Please try again.

World Wide Crypto will use the information you provide on this form to be in touch with you and to provide updates and marketing.