Investigators at Soclet have discovered a new supply attack targeting crypto developers using npm, PyPI, and Crates.io packages. The campaign, dubbed Trapdoor, focuses on stealing crypto wallet keys and other secrets from developers in the crypto space. Supply Chain Attack Scheme Trapdoor Targets Developers For Maximum Performance While some malware campaigns target everyday crypto users, […]
The attackers behind TrapDoor went after more than wallets and passwords — they embedded hidden instructions inside packages designed to manipulate AI coding assistants. Related Reading: Bitcoin Pizza Day: A $41 Experiment Now Worth Billions According to security firm Socket, the goal was to trick tools like Claude and Cursor into running what appeared to […]
Hackers secretly targeted crypto and AI developers using TrapDoor malware, stealing wallets, credentials, SSH keys, and sensitive company network access data. A sneaky cyberattack is targeting software developers. Specifically, it is dedicated to individuals who are involved in cryptocurrency and AI. The attack was discovered on Friday by a company called Socket. They then published […]
The post Hackers Secretly Target Crypto Developers With Dangerous TrapDoor Malware appeared first on Live Bitcoin News.
The post Cryptocurrency and AI Developers Face New Cybersecurity Threat appeared on BitcoinEthereumNews.com.
A new malware campaign dubbed TrapDoor has been identified by cybersecurity firm Socket, posing a significant threat to developers in the fields of cryptocurrency and artificial intelligence. This extensive operation involves the distribution of malicious packages across popular developer platforms, targeting software developers by infiltrating 34 distinct packages and 384 versions on leading platforms such […] Continue Reading:Cryptocurrency and AI Developers Face New Cybersecurity Threat Source: https://en.bitcoinhaber.net/cryptocurrency-and-ai-developers-face-new-cybersecurity-threat
The malware spread through npm, PyPI, and Rust packages in coordinated waves. It steals crypto wallets, SSH keys, and cloud developer credentials. AI coding tools were also targeted through malicious config files. A coordinated malware campaign known as TrapDoor has hit software ecosystems widely used by crypto and blockchain developers. Security researchers identified dozens of […]
The post TrapDoor attack targets crypto wallets, AWS keys and GitHub tokens appeared first on CoinJournal.
TrapDoor malware has emerged as a new threat to crypto and AI developers after researchers uncovered a supply chain attack designed to steal wallet data, API keys, cloud credentials, and SSH access through poisoned developer packages. According to a report…
Perplexity has open-sourced Bumblebee, an internal security tool it uses to protect the developer systems behind its search product, Comet, and Computer. Bumblebee is a read-only inventory collector for macOS and Linux developer endpoints. It scans npm, PyPI, Go modules, MCP configs, editor extensions, and browser extensions — without invoking any package manager or running any code.
The post Perplexity Open-Sources Bumblebee: A Read-Only Supply-Chain Scanner for Developer Endpoints appeared first on MarkTechPost.
GitHub's instability threatens crypto project timelines, potentially impacting token valuations and prompting shifts to alternative platforms.
The post GitHub struggles for survival amid outages and leadership turmoil, and crypto developers are caught in the crossfire appeared first on Crypto Briefing.