Close Menu

    Subscribe to Updates

    What's Hot

    Success Story: Gabriele Morena Belli Valetta’s Learning Journey with 101 Blockchains

    June 3, 2026

    Microsoft Warns Crypto Wallets Face New npm Trojan Risk

    June 3, 2026

    CLARITY Act enters senate queue as 2026 crypto vote nears

    June 3, 2026
    Facebook X (Twitter) Instagram
    laicryptolaicrypto
    Demo
    • Ethereum
    • Crypto
    • Altcoins
    • Blockchain
    • Bitcoin
    • Lithosphere News Releases
    laicryptolaicrypto
    Home Microsoft Warns Crypto Wallets Face New npm Trojan Risk
    Crypto

    Microsoft Warns Crypto Wallets Face New npm Trojan Risk

    John SmithBy John SmithJune 3, 2026No Comments3 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email



    Microsoft has warned that attackers hid crypto-stealing malware inside public npm packages, creating a fresh risk for developers, crypto investors and wallet users.

    Summary

    • Microsoft says npm packages deploy RAT malware that quietly steals crypto wallet credentials from devices.
    • Attackers used Hugging Face repos to move stolen data while avoiding suspicious server traffic logs.
    • Crypto.news coverage links Microsoft’s warning to wider supply-chain attacks hitting developers and crypto wallet tools.

    Microsoft Flags Poisoned npm Packages

    Microsoft Threat Intelligence said two compromised npm packages, [email protected] and [email protected], were “abusing Hugging Face repos as exfiltration infrastructure.” The company said the packages deploy a remote access trojan, or RAT, that can collect keystrokes, screenshots and crypto wallet credentials.

    Npm is a public software registry used by JavaScript developers to build apps and web tools. When a developer installs a poisoned package, the malware can run quietly on the device and watch for sensitive files, passwords or wallet data.

    Hugging Face Route Raises Detection Risk

    The campaign stands out because attackers used Hugging Face, a trusted platform for artificial intelligence and machine learning projects, to move stolen data. That route can make the traffic look less suspicious than a direct link to an unknown criminal server.

    For crypto users, this creates a direct security concern. A developer machine may store browser wallets, private keys, seed phrase files, exchange API keys, GitHub tokens and cloud logins. If attackers collect those details, they can target wallets, code repositories and trading systems.

    Broader Developer Attacks

    Related crypto.news coverage shows that software supply-chain attacks remain a live problem for the crypto sector. A May 25 report said the TrapDoor malware campaign spread through more than 34 malicious packages across npm, PyPI and Rust ecosystems.

    That campaign targeted crypto and AI developers by stealing wallet data, API keys, cloud credentials and SSH access through fake developer tools. It also showed how attackers now target the people and systems used to build crypto apps, not only end users.

    Crypto.news also reported in March that Slow Fog had warned developers about malicious Axios releases. The poisoned versions pulled in plain-crypto-js malware and exposed crypto developers to cross-platform RATs and stolen credentials through npm.

    Cryptojacking Adds Another Microsoft Alert

    Microsoft’s warning follows another malware report from its security teams. On May 26, Microsoft said attackers used poisoned search results and some AI chatbot interactions to spread fake PC utility downloads that installed GPU mining malware.

    That campaign targeted users with powerful graphics cards, including gamers and hardware enthusiasts. Microsoft said the malware abused ScreenConnect, Microsoft .NET utilities and fake downloads for tools such as CrystalDiskInfo and HWMonitor to run crypto miners.

    The latest npm warning keeps attention on basic security steps. Developers should audit recent package installs, remove suspicious dependencies, rotate exposed credentials and check wallet activity. Crypto users should avoid storing seed phrases on connected devices and verify every wallet transaction before signing.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn WhatsApp Reddit Tumblr Email
    John Smith

    Related Posts

    CLARITY Act enters senate queue as 2026 crypto vote nears

    June 3, 2026

    Debt crisis fears put Bitcoin undervaluation back in focus

    June 3, 2026

    Stablecoin depeg fears push New York and EU regulators closer

    June 3, 2026
    Leave A Reply Cancel Reply

    Demo
    Don't Miss
    Blockchain

    Success Story: Gabriele Morena Belli Valetta’s Learning Journey with 101 Blockchains

    By Isabella TaylorJune 3, 20260

    About Gabriele Morena Belli Valetta Full Name: Gabriele Morena Belli Valetta Designation: Backup System Engineer…

    Microsoft Warns Crypto Wallets Face New npm Trojan Risk

    June 3, 2026

    CLARITY Act enters senate queue as 2026 crypto vote nears

    June 3, 2026

    Debt crisis fears put Bitcoin undervaluation back in focus

    June 3, 2026

    LAI Crypto is a user-friendly platform that empowers individuals to navigate the world of cryptocurrency trading and investment with ease and confidence.

    Our Posts
    • Altcoins (15)
    • Blockchain (24)
    • Crypto (724)
    • Ethereum (103)
    • Lithosphere News Releases (20)

    Subscribe to Updates

    • Twitter
    • Instagram
    • YouTube
    • LinkedIn

    Type above and press Enter to search. Press Esc to cancel.