• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

New Hacker Tactics: Malicious Packages in Ethereum Smart Contracts

user avatar

by Giorgi Kostiuk

3 days ago


Cybersecurity researchers from ReversingLabs have uncovered a new dangerous trend in cyber threats involving the use of Ethereum smart contracts to hide malware.

Discovery of Malicious Packages

Cybersecurity researchers at ReversingLabs discovered two fake JavaScript packages named 'colortoolsv2' and 'mimelib2' in the Node Package Manager (NPM). These packages, added in July, hide their malicious instructions within Ethereum smart contracts. According to ReversingLabs researcher Lucija Valentić, these packages act as downloaders, extracting command and control server addresses from the Ethereum blockchain.

New Attack Methods by Hackers

Hackers, including the North Korean-linked Lazarus Group, have previously used Ethereum smart contracts to disseminate malware. However, the new tactic involves hiding web addresses (URLs) within Ethereum smart contracts, directing victims to download malicious software. Valentić explained that this approach makes it harder for security systems to detect, as blockchain traffic appears legitimate, masking malicious activity.

Complications in Combating Malware

In 2024, security experts found 23 scams involving cryptocurrencies on open-source code platforms, where hackers concealed malware. According to Valentić, this new type of attack indicates that scams are becoming more sophisticated. Furthermore, in April, hackers created a fake GitHub project pretending to be a Solana trading bot, which secretly installed malware to steal cryptocurrency wallet information.

The discovered methods underline how quickly hackers are developing new approaches to bypass security systems, posing a threat not only to developers but also to end users of open-source code.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

Other news

Updates on Pi Network and Chainlink: A Look at Remittix's Growth Potential

chest

Review of news regarding Pi Network and Chainlink, and analysts' insights on the potential growth of Remittix in the crypto market.

user avatarGiorgi Kostiuk

Crypto Overview: Super Pepe, Solargy, and Little Pepe

chest

Exploring the cryptocurrency landscape: we analyze Super Pepe, Solargy, and Little Pepe to understand which investments might be the most promising.

user avatarGiorgi Kostiuk

Altcoin Season: Index Reaches 53/100, Market Activity Grows

chest

The Altcoin Index has surged to 53/100, indicating a possible transition to altcoin season in the cryptocurrency market.

user avatarGiorgi Kostiuk

Mitosis — an innovative blockchain for decentralized finance

chest

Mitosis introduces an innovative approach to DeFi, turning deposits into Hub Assets to enhance capital efficiency and participation.

user avatarGiorgi Kostiuk

Trump's Threat of Sanctions Could Impact Cryptocurrency Markets

chest

Expected US sanctions against Russia announced by Trump may influence financial markets and cryptocurrencies.

user avatarGiorgi Kostiuk

Geopolitical Factors and Their Impact on Cryptocurrencies: A Look at the Russia-U.S. Situation

chest

Geopolitical tensions and their effects on the cryptocurrency market. An overview of recent Trump statements and the situation between Russia and the US.

user avatarGiorgi Kostiuk

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.