Cybersecurity firm SlowMist has detected a high-risk npm worm, dubbed "Mini Shai-Hulud," that is actively targeting cryptocurrency information. The worm spreads through projects like TanStack and UiPath by hijacking GitHub credentials to publish malicious packages. It is designed to steal CI/CD keys, cloud service credentials, and cryptocurrency wallet information.
SlowMist advises affected projects to inspect the router_init.js file for signs of compromise, rotate any exposed credentials, and maintain vigilance for suspicious activity. This proactive approach is crucial to mitigate the risks posed by this malicious software.
SlowMist Identifies High-Risk npm Worm Targeting Crypto Data
Disclaimer: The content provided on Phemex News is for informational purposes only. We do not guarantee the quality, accuracy, or completeness of the information sourced from third-party articles. The content on this page does not constitute financial or investment advice. We strongly encourage you to conduct you own research and consult with a qualified financial advisor before making any investment decisions.
