Key Takeaways
- On May 22, Socket found Trapdoor malware infecting 34 developer packages to steal crypto wallets and keys.
- Spanning 384 versions, the campaign tricks AI tools and severely impacts the development market.
- After a similar September attack, Socket warns developers must next secure AI environments from crypto theft.
Supply Chain Attack Scheme Trapdoor Targets Developers For Maximum Performance
While some malware campaigns target everyday crypto users, others focus on developers, aiming to capture targets with a higher chance of holding large amounts of cryptocurrency and having access to broader resources.
Researchers at Socket, a company that specializes in preventing supply chain attacks, have identified a broad campaign…







