Injective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm Packages

Unknown threat actors compromised the Injective Labs SDK project’s GitHub repository and leveraged it to publish a malicious package on the npm registry to steal cryptocurrency wallet private keys and mnemonic seed phrases.

The compromised version, @injectivelabs/sdk-ts@1.20.21, came embedded with fake telemetry functionality that exfiltrated data from cryptocurrency wallets. The version was

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

In praise of memcached

In praise of memcached Source: Hacker News

The Billable Usage API: programmatic cost visibility for Cloudflare

The Billable Usage API: programmatic cost visibility for Cloudflare Source: Hacker News

Attack Update: Top 5 Attack-IPs auf doode.info – 22.08.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 89.167.35.212 — 1038 requests (recent log) 195.178.110.247 — 360 requests (recent log) 216.73.216.128 — 185 requests (recent