At least we didn’t have any major price movements off this, the market is definitely maturing.
coinfeeds-bot on
tldr; A widespread hacking exploit targeting JavaScript code packages managed to steal only $1,043 in cryptocurrency, despite its potential scale. Hackers used social engineering to compromise a GitHub account and added malicious code to popular packages, aiming to intercept crypto transactions. While 10% of cloud environments may contain the malicious code, quick detection limited the financial damage. The attack highlights the growing threat of supply chain attacks and the need for robust security measures in software development pipelines.
*This summary is auto generated by a bot and not meant to replace reading the original article. As always, DYOR.
rankinrez on
Yeah these guys were stupid and started trying to use this right away.
They got rumbled within an hour. If they’d kept things on the down low and waited they’d have git their malicious libraries included in many software builds and could have probably caused a lot of problems.
As it is they got rumbled so fast it never got used.
GBeastETH on
Yeah, but it pretty well killed Kiln’s entire staking business. They exited all their validators out of an abundance of caution.
Leave A Reply
Du musst angemeldet sein, um einen Kommentar abzugeben.
4 Kommentare
All of that panic for nothing.
At least we didn’t have any major price movements off this, the market is definitely maturing.
tldr; A widespread hacking exploit targeting JavaScript code packages managed to steal only $1,043 in cryptocurrency, despite its potential scale. Hackers used social engineering to compromise a GitHub account and added malicious code to popular packages, aiming to intercept crypto transactions. While 10% of cloud environments may contain the malicious code, quick detection limited the financial damage. The attack highlights the growing threat of supply chain attacks and the need for robust security measures in software development pipelines.
*This summary is auto generated by a bot and not meant to replace reading the original article. As always, DYOR.
Yeah these guys were stupid and started trying to use this right away.
They got rumbled within an hour. If they’d kept things on the down low and waited they’d have git their malicious libraries included in many software builds and could have probably caused a lot of problems.
As it is they got rumbled so fast it never got used.
Yeah, but it pretty well killed Kiln’s entire staking business. They exited all their validators out of an abundance of caution.