Close Menu
CryptoDispatchDaily.comCryptoDispatchDaily.com
    What's Hot

    Worldcoin is Predicted to Drop to $0.245759 By Mar 26, 2026

    March 21, 2026

    Arbitrum price prediction 2026 – 2032: Will ARB reach $1?

    July 27, 2026

    UK FCA Warns Football Clubs Over Crypto Sponsorship Deals

    June 3, 2026
    Facebook X (Twitter) Instagram
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    Facebook X (Twitter) Instagram
    CryptoDispatchDaily.comCryptoDispatchDaily.com
    • News

      Schiff Dismisses Bitcoin’s $72k Surge as Treasury-Fueled Fakeout

      August 20, 2026

      Riot’s Anthropic Deal Shows Bitcoin Miners Are Moving Deeper Into AI Compute

      August 19, 2026

      Why OpenAI is building a ChatGPT model for teenagers

      August 18, 2026

      SafePal data breach exposes details of nearly 40,000 users

      August 16, 2026

      BIP-110 Breakaway Chain Faces a Long Fight to Survive

      August 15, 2026
    • Technology

      Bitcoin price breaks past $68K as $1B short squeeze hits

      August 20, 2026

      Robinhood Chain’s Stablecoins Just Crossed $650M. Here’s What’s Actually Driving It

      August 19, 2026

      Solana Price Tests Support as Tokenized T-Bills Beat Ethereum

      August 18, 2026

      Israel crypto broker Bits of Gold probes customer data breach

      August 17, 2026

      How Scammers Gatecrash Apple’s App Review While Real Crypto Teams Wait in Line

      August 16, 2026
    • Learn/Guide

      OTC Crypto Prefunding: What 100% Upfront Actually Costs

      July 29, 2026

      Wadoozie ($WADZ): The Ethereum Memecoin With a 48-State Tour and Hidden Token Rewards

      May 7, 2026

      How to Optimize Company Operational Costs: A Manual on Modern Payment Ecosystems

      March 6, 2026

      6 Best Citizenship by Investment Programs for 2026

      February 23, 2026

      Strategies to Conquering Risk in Crypto Trading

      February 18, 2026
    • Regulation

      No Unlocks, No Vesting, Millions Burned Monthly, So Why Is POL Still Stuck At $0.7B?

      August 20, 2026

      Jheioff Offers Six-Figure Bounty For Leads As Gate.io’s Promised Investigation Stalls

      August 19, 2026

      A Google-Approved Phishing Scam Is Targeting Ledger Wallet Users, Here’s How To Stay Safe

      August 17, 2026

      ZachXBT Exposed LAB Token’s Insider Playbook, Buyers Are Now Living It

      August 16, 2026

      DEX, Perpetuals, and Prediction Markets. Is KuCoin’s Web3 Wallet Actually Worth Using?

      August 15, 2026
    • Live Pricing Chart
    CryptoDispatchDaily.comCryptoDispatchDaily.com
    Home » Slow Fog warns devs over malicious axios malware campaign
    Technology

    Slow Fog warns devs over malicious axios malware campaign

    March 31, 20263 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Slow Fog warns devs over malicious axios malware campaign
    Share
    Facebook Twitter LinkedIn Pinterest Email



    Slow Fog flags malicious axios releases pulling in plain-crypto-js malware, exposing crypto developers to cross-platform RATs and stolen credentials via npm.

    Blockchain security firm Slow Fog has issued an urgent security reminder after newly published [email protected] and [email protected] releases pulled in a malicious dependency, [email protected], turning one of JavaScript’s most widely used HTTP clients into a supply chain weapon against crypto developers. Axios sees more than 80 million weekly downloads on npm, meaning even a short-lived compromise can ripple across wallet backends, trading bots, exchanges and DeFi infrastructure built on Node.js. In its advisory, Slow Fog warned that “users who installed [email protected] via npm install -g are potentially exposed,” recommending immediate credential rotation and thorough host-side investigation for signs of compromise.

    The attack hinges on a fake cryptography package, [email protected], which is silently added as a new dependency and used solely to execute an obfuscated postinstall script that drops a cross-platform remote access trojan targeting Windows, macOS and Linux systems.

    Security firm StepSecurity explained that “neither malicious version contains a single line of malicious code inside Axios itself,” and that instead “both inject a fake dependency, [email protected], whose only purpose is to run a postinstall script that deploys a cross-platform remote access trojan (RAT).” Socket’s research team noted that the malicious plain-crypto-js package was published just minutes before the compromised axios release, calling it a “coordinated supply chain attack” against the JavaScript ecosystem.

    According to StepSecurity, the malicious axios releases were pushed using stolen npm credentials belonging to primary maintainer “jasonsaayman,” allowing attackers to bypass the project’s usual GitHub-based release flow. “It’s a live supply chain compromise in [email protected], which newly depends on [email protected]—a package published hours earlier and identified as obfuscated malware that executes shell commands and erases traces,” security engineer Julian Harris wrote on LinkedIn. npm has now removed the malicious versions and reverted the axios resolution back to 1.14.0, but any environment that pulled 1.14.1 or 0.3.4 during the attack window remains at risk until secrets are rotated and systems are rebuilt.

    The compromise echoes earlier npm incidents that directly targeted crypto users, including a 2025 campaign in which 18 popular packages like chalk and debug silently swapped wallet addresses to steal funds, prompting Ledger CTO Charles Guillemet to warn that “the affected packages have already been downloaded over 1 billion times.” Researchers have also documented npm malware stealing keys from Ethereum, XRP and Solana wallets, and SlowMist has estimated that crypto hacks and frauds — including backdoored packages and AI-assisted supply chain attacks — caused more than $2.3 billion in losses in the first half of 2025 alone. For now, Slow Fog’s advice is blunt: downgrade axios to 1.14.0, audit dependencies for any trace of [email protected] or openclaw, and assume that any credentials touched by those environments are compromised.

    In a previous crypto.news story on JavaScript supply chain attacks, Ledger’s Guillemet warned that compromised npm packages with more than 2 billion weekly downloads posed a systemic risk to dApps and wallets built on Node.js. Another story detailed how North Korea’s Lazarus Group planted malicious npm packages to backdoor developer environments and target Solana and Exodus wallet users. A third crypto.news story on next-generation malware showed how backdoor supply chain attacks via npm and low-cost AI tools helped criminals remotely control over 4,200 developer machines and contributed to billions of dollars in crypto losses.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related Posts

    Bitcoin price breaks past $68K as $1B short squeeze hits

    August 20, 2026

    Robinhood Chain’s Stablecoins Just Crossed $650M. Here’s What’s Actually Driving It

    August 19, 2026

    Solana Price Tests Support as Tokenized T-Bills Beat Ethereum

    August 18, 2026

    Israel crypto broker Bits of Gold probes customer data breach

    August 17, 2026
    Top Posts

    66-Year-Old Retired Man Scammed in 3 Cryptocurrency Fraud Cases

    March 21, 2026

    Societe Generale-FORGE Launches EUR Coinvertible on XRP Ledger With Ripple Support

    February 19, 2026

    Stablecoin platform Bridge wins conditional approval for national trust bank charter

    February 18, 2026

    Welcome to CryptoDispatchDaily.com! Your go-to source for fast, reliable updates from the ever-evolving world of cryptocurrency. Whether it's Bitcoin, altcoins, blockchain breakthroughs, or DeFi trends, we bring you timely insights, expert analysis, and key developments shaping the future of digital finance. Stay ahead with real-time crypto news and in-depth coverage.

    Top Insights

    Schiff Dismisses Bitcoin’s $72k Surge as Treasury-Fueled Fakeout

    August 20, 2026

    Riot’s Anthropic Deal Shows Bitcoin Miners Are Moving Deeper Into AI Compute

    August 19, 2026

    Why OpenAI is building a ChatGPT model for teenagers

    August 18, 2026
    Advertisement
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    © 2026. Designed by CryptoDispatchDaily.com.

    Type above and press Enter to search. Press Esc to cancel.