Cybercriminals Hijacking Popular Crypto Software To Steal Digital Assets From Wallets: Security Researchers
Security researchers are warning that threat actors are using less noticeable techniques to compromise and steal funds from crypto wallets.
Cybersecurity firm ReversingLabs says that cybercriminals are now uploading malicious packages to popular open-source software repositories such as the npm (Node Package Manager).
The objective is to inject malicious code into trusted local libraries without raising suspicion.
According to ReversingLabs, its research team has identified a new malware campaign targeting crypto users that uses what appears to be a legitimate npm package for converting PDF format files into Microsoft Office documents.
When executed, the pdf-to-office npm package will inject malicious code into…