TrapDoor Malware Campaign Targets Aptos, Solana, and Sui Developer Ecosystems

Compartir:
Researchers at Socket Security uncovered the TrapDoor malware campaign that distributed 34 malicious packages across npm, PyPI and Crates.io in over 384 versions using fake crypto developer libraries. The operation targeted developer tooling for Aptos, Sui and Solana to exfiltrate SSH keys, AWS tokens and wallet credentials, posing a significant security risk to crypto developer workflows, DeFi projects and exchange integrations.
- TrapDoor malware spread through fake crypto developer packages across registries.
- Attackers targeted SSH keys, AWS tokens, and wallet credentials in builds worldwide.
- Researchers linked coordinated uploads to Aptos, Sui, and Solana tooling ecosystems.
Researchers have uncovered a coordinated malware campaign that targets cryptocurrency developers through fake software packages spread across major coding registries. The operation, named TrapDoor, focused on developer environments connected to blockchain ecosystems such as Aptos, Sui, and Solana. Security analysts warned that the campaign aimed to steal sensitive credentials from machines used in crypto development workflows.
Researchers from Socket Security discovered more than 34 malicious packages distributed across npm, PyPI, and Crates.io. Altogether, the campaign involved more than 384 package versions. The att…
Read The Full Article TrapDoor Malware Campaign Targets Aptos, Solana, and Sui Developer Ecosystems On Coin Edition.
Leer más







