logo

Malicious Claude-Generated Commit Targets Crypto Trading Tool

ID: 09e8fdf7-9e44-56a9-ad79-f9489b50599f

STIX ID: report--09e8fdf7-9e44-56a9-ad79-f9489b50599f

Feed Name: Cyber Press

Threat Score
88/100

Date Published: 2026-04-30

Date Updated: 2026-04-30

Author: Varshini

...
...

ReversingLabs discovered a supply-chain campaign dubbed PromptMink where a malicious npm package (@validate-sdk/v2) was introduced into an autonomous crypto trading agent, enabling theft of cryptocurrency wallet credentials, system data, project source code, and implantation of SSH keys for persistence. The attackers use a two-layer approach with clean bait packages that import the real payload and employ LLM Optimization (LLMO) tactics—crafting convincing documentation to trick AI coding assistants into recommending malicious dependencies; the activity is attributed to Famous Chollima and defenders are advised to run deep static analysis, enrich AI context with threat intelligence, integrate automated security checks, and manually review AI-generated dependency changes.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.