Solana private key exfiltration facilitated by illicit npm packages

Threat actor solana-web-stable-huks' "solana-transaction-toolkit" and "solana-stable-web-huks" packages not only compromised Solana private keys through Nodemailer but also enabled the automated transfer of 98% of the targeted cryptocurrency wallets' assets to an attacker-controlled Solana address, according to a Socket analysis.

Introduction to Malware Binary Triage (IMBT) Course

Looking to level up your skills? Get 10% off using coupon code: MWNEWS10 for any flavor.

Enroll Now and Save 10%: Coupon Code MWNEWS10

Note: Affiliate link – your enrollment helps support this platform at no extra cost to you.

Article Link: Solana private key exfiltration facilitated by illicit npm packages | SC Media