National Cyber Warfare Foundation (NCWF)

Malicious npm Packages Impersonate Flashbots, Steal Ethereum Wallet Keys


0 user ratings
2025-09-06 07:55:38
milo
Blue Team (CND)
A new set of four malicious packages have been discovered in the npm package registry with capabilities to steal cryptocurrency wallet credentials from Ethereum developers.
"The packages masquerade as legitimate cryptographic utilities and Flashbots MEV infrastructure while secretly exfiltrating private keys and mnemonic seeds to a Telegram bot controlled by the threat actor," Socket researcher



Source: TheHackerNews
Source Link: https://thehackernews.com/2025/09/malicious-npm-packages-impersonate.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.