Poisoned Protocol: dYdX Supply Chain Attack Injects RATs into npm & PyPI
ID: 6cee67b6-1e37-5560-9d50-6d660a526e8e
STIX ID: report--6cee67b6-1e37-5560-9d50-6d660a526e8e
Feed Name: securityonline.info
Threat Score
A supply-chain attack compromised npm and PyPI dYdX client libraries, embedding a seed-phrase-stealing payload in the JavaScript package and a stealthy RAT with heavy obfuscation and persistence in the Python package; specific compromised versions and a typosquatting domain (dydx.priceoracle.site) were identified, and developers using these libraries should assume their environments may be fully compromised.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
