掃碼下載
BTC $69,713.06 +3.14%
ETH $2,147.40 +3.91%
BNB $606.26 +2.23%
XRP $1.34 +2.76%
SOL $81.93 +2.35%
TRX $0.3156 -0.89%
DOGE $0.0916 +1.22%
ADA $0.2521 +3.49%
BCH $438.23 +2.94%
LINK $8.99 +4.02%
HYPE $37.18 +3.53%
AAVE $94.83 +2.80%
SUI $0.8964 +5.43%
XLM $0.1571 -1.23%
ZEC $255.89 +6.24%
BTC $69,713.06 +3.14%
ETH $2,147.40 +3.91%
BNB $606.26 +2.23%
XRP $1.34 +2.76%
SOL $81.93 +2.35%
TRX $0.3156 -0.89%
DOGE $0.0916 +1.22%
ADA $0.2521 +3.49%
BCH $438.23 +2.94%
LINK $8.99 +4.02%
HYPE $37.18 +3.53%
AAVE $94.83 +2.80%
SUI $0.8964 +5.43%
XLM $0.1571 -1.23%
ZEC $255.89 +6.24%

Socket 安全團隊發現惡意 npm 包,攻擊者試圖竊取錢包餘額 85% 的資產

2025-06-03 10:18:07
收藏

ChainCatcher 消息,Socket 安全研究團隊發現四個惡意 npm 包,針對幣安智能鏈(BSC)和以太坊(Ethereum)用戶的錢包實施攻擊。這些包分別為 pancakeuniswapvalidatorsutilssnipe(350 次下載)、pancakeswap-oracle-prediction(445 次下載)、ethereum-smart-contract(305 次下載)和 env-process(1,054 次下載),累計下載量已超過 2,100 次。

攻擊者通過混淆的 JavaScript 代碼計算目標錢包餘額的百分比,並嘗試將高達 85% 的資產轉移至其控制的錢包地址。

app_icon
ChainCatcher 與創新者共建Web3世界