Injective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm Packages

Unknown threat actors compromised the Injective Labs SDK project’s GitHub repository and leveraged it to publish a malicious package on the npm registry to steal cryptocurrency wallet private keys and mnemonic seed phrases.

The compromised version, @injectivelabs/sdk-ts@1.20.21, came embedded with fake telemetry functionality that exfiltrated data from cryptocurrency wallets. The version was

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Attack Update: Top 5 Attack-IPs auf doode.info – 17.07.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 151.243.150.222 — 2813 requests (recent log) 144.76.19.72 — 735 requests (recent log) 89.167.35.212 — 696 requests (recent

Tailwind Labs is joining Shopify

Tailwind Labs is joining Shopify Source: Hacker News

Attack Update: Top 5 Attack-IPs auf doode.info – 02.10.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 193.32.162.135 — 974 requests (recent log) 89.167.35.212 — 219 requests (recent log) 45.148.10.238 — 185 requests (recent