Close Menu
Invest Intellect
    Facebook X (Twitter) Instagram
    Invest Intellect
    Facebook X (Twitter) Instagram Pinterest
    • Home
    • Commodities
    • Cryptocurrency
    • Fintech
    • Investments
    • Precious Metal
    • Property
    • Stock Market
    Invest Intellect
    Home»Cryptocurrency»Malicious packages for dYdX cryptocurrency exchange empties user wallets
    Cryptocurrency

    Malicious packages for dYdX cryptocurrency exchange empties user wallets

    February 6, 20262 Mins Read


    Open source packages published on the npm and PyPI repositories were laced with code that stole wallet credentials from dYdX developers and backend systems and, in some cases, backdoored devices, researchers said.

    “Every application using the compromised npm versions is at risk ….” the researchers, from security firm Socket, said Friday. “Direct impact includes complete wallet compromise and irreversible cryptocurrency theft. The attack scope includes all applications depending on the compromised versions and both developers testing with real credentials and production end-users.”

    Packages that were infected were:

    npm (@dydxprotocol/v4-client-js):

    • 3.4.1
    • 1.22.1
    • 1.15.2
    • 1.0.31

    PyPI (dydx-v4-client):

    Perpetual trading, perpetual targeting

    dYdX is a decentralized derivatives exchange that supports hundreds of markets for “perpetual trading,” or the use of cryptocurrency to bet that the value of a derivative future will rise or fall. Socket said dYdX has processed over $1.5 trillion in trading volume over its lifetime, with an average trading volume of $200 million to $540 million and roughly $175 million in open interest. The exchange provides code libraries that allow third-party apps for trading bots, automated strategies, or backend services, all of which handle mnemonics or private keys for signing.

    The npm malware embedded a malicious function in the legitimate package. When a seed phrase that underpins wallet security was processed, the function exfiltrated it, along with a fingerprint of the device running the app. The fingerprint allowed the threat actor to correlate stolen credentials to track victims across multiple compromises. The domain receiving the seed was dydx[.]priceoracle[.]site, which mimics the legitimate dYdX service at dydx[.]xyz through typosquatting.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related Posts

    As crypto industry expands, U.S. slashes office examining dirty money safeguards of cryptocurrency exchanges

    Cryptocurrency

    Cryptocurrency Fuels Human Trafficking, Child Abuse, and Online Scams, Report Finds

    Cryptocurrency

    Police arrest three for cryptocurrency fraud

    Cryptocurrency

    Court acquits defendants in cryptocurrency mining case

    Cryptocurrency

    Top 5 Cloud Mining Platforms for Cryptocurrency in 2026 – Why HashBitcoin Stands Out

    Cryptocurrency

    Better Cryptocurrency to Buy Now and Hold for 10 Years: XRP vs. Bitcoin

    Cryptocurrency
    Leave A Reply Cancel Reply

    Top Picks
    Cryptocurrency

    A new era of digital currency at major banks

    Commodities

    ENPHASE ENERGY, INC. (NASDAQ: ENPH) DEADLINE ALERT:

    Commodities

    Top 30 Glam Metal Albums

    Editors Picks

    Where in NJ Can You Spend Crypto?

    August 14, 2024

    Cass County Sheriff’s Corner: Scammers are asking for payment by cryptocurrency – Pine and Lakes Echo Journal

    August 9, 2025

    Avoid These 3 Coca-Cola Brands Recalled for Metal Contamination

    October 22, 2025

    XAU/USD down but not out as Fed and tariff concerns linger

    August 26, 2025
    What's Hot

    Digital Currency Group to Pay $38M in US SEC Settlement

    January 17, 2025

    Trump Announces Trade Agreement With Britain — Commodities Roundup

    May 8, 2025

    FinTechOn 2024 Returns with Spotlight on Virtual Asset Regulations and Countering Fraud

    October 15, 2024
    Our Picks

    Intensifying farmland can sometimes be worse for biodiversity than agricultural expansion, study finds

    May 1, 2025

    BHP removes striking workers from world’s largest copper mine

    August 15, 2024

    Quiz calculates the ideal time to take a ‘micro-retirement’ from work

    September 15, 2025
    Weekly Top

    Stock Market Live February 17, 2026: S&P 500 (ETF) Fighting to Go Green Again

    February 17, 2026

    Fintech Sandbox Announces Global Startups Headlining Demo Day 12

    February 17, 2026

    Wolfden Highlights Potential Precious Metal Upside at Canoe Landing

    February 17, 2026
    Editor's Pick

    The Rise of Crypto ETFs: How to Invest in Digital Currency Without Buying Coins

    July 28, 2024

    Les actionnaires de MAG Silver approuvent l’acquisition par Pan American

    July 11, 2025

    Tanzania sells cashew on new commodities exchange 

    October 26, 2024
    © 2026 Invest Intellect
    • Contact us
    • Privacy Policy
    • Terms and Conditions

    Type above and press Enter to search. Press Esc to cancel.