Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Microsoft Warns Crypto Wallets Face New npm Trojan Risk

    June 3, 2026

    PayPal and Ripple stablecoins still sub-1% despite ‘stablecoin gold rush’

    June 3, 2026

    Democrats push Labor Department to scrap crypto 401(k) proposal

    June 3, 2026
    Facebook X (Twitter) Instagram YouTube
    X (Twitter) Instagram YouTube LinkedIn
    Block Hub News
    • Lithosphere News Releases
    • Altcoins
      • Bitcoin
      • Coinbase
      • Litecoin
    • Crypto
    • Ethereum
    • Blockchain
    Block Hub News
    You are at:Home » Microsoft Warns Crypto Wallets Face New npm Trojan Risk
    Crypto

    Microsoft Warns Crypto Wallets Face New npm Trojan Risk

    James WilsonBy James WilsonJune 3, 2026No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email



    Microsoft has warned that attackers hid crypto-stealing malware inside public npm packages, creating a fresh risk for developers, crypto investors and wallet users.

    Summary

    • Microsoft says npm packages deploy RAT malware that quietly steals crypto wallet credentials from devices.
    • Attackers used Hugging Face repos to move stolen data while avoiding suspicious server traffic logs.
    • Crypto.news coverage links Microsoft’s warning to wider supply-chain attacks hitting developers and crypto wallet tools.

    Microsoft Flags Poisoned npm Packages

    Microsoft Threat Intelligence said two compromised npm packages, [email protected] and [email protected], were “abusing Hugging Face repos as exfiltration infrastructure.” The company said the packages deploy a remote access trojan, or RAT, that can collect keystrokes, screenshots and crypto wallet credentials.

    Npm is a public software registry used by JavaScript developers to build apps and web tools. When a developer installs a poisoned package, the malware can run quietly on the device and watch for sensitive files, passwords or wallet data.

    Hugging Face Route Raises Detection Risk

    The campaign stands out because attackers used Hugging Face, a trusted platform for artificial intelligence and machine learning projects, to move stolen data. That route can make the traffic look less suspicious than a direct link to an unknown criminal server.

    For crypto users, this creates a direct security concern. A developer machine may store browser wallets, private keys, seed phrase files, exchange API keys, GitHub tokens and cloud logins. If attackers collect those details, they can target wallets, code repositories and trading systems.

    Broader Developer Attacks

    Related crypto.news coverage shows that software supply-chain attacks remain a live problem for the crypto sector. A May 25 report said the TrapDoor malware campaign spread through more than 34 malicious packages across npm, PyPI and Rust ecosystems.

    That campaign targeted crypto and AI developers by stealing wallet data, API keys, cloud credentials and SSH access through fake developer tools. It also showed how attackers now target the people and systems used to build crypto apps, not only end users.

    Crypto.news also reported in March that Slow Fog had warned developers about malicious Axios releases. The poisoned versions pulled in plain-crypto-js malware and exposed crypto developers to cross-platform RATs and stolen credentials through npm.

    Cryptojacking Adds Another Microsoft Alert

    Microsoft’s warning follows another malware report from its security teams. On May 26, Microsoft said attackers used poisoned search results and some AI chatbot interactions to spread fake PC utility downloads that installed GPU mining malware.

    That campaign targeted users with powerful graphics cards, including gamers and hardware enthusiasts. Microsoft said the malware abused ScreenConnect, Microsoft .NET utilities and fake downloads for tools such as CrystalDiskInfo and HWMonitor to run crypto miners.

    The latest npm warning keeps attention on basic security steps. Developers should audit recent package installs, remove suspicious dependencies, rotate exposed credentials and check wallet activity. Crypto users should avoid storing seed phrases on connected devices and verify every wallet transaction before signing.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticlePayPal and Ripple stablecoins still sub-1% despite ‘stablecoin gold rush’
    James Wilson

    Related Posts

    Democrats push Labor Department to scrap crypto 401(k) proposal

    June 3, 2026

    CLARITY Act enters senate queue as 2026 crypto vote nears

    June 3, 2026

    Debt crisis fears put Bitcoin undervaluation back in focus

    June 3, 2026
    Leave A Reply Cancel Reply

    Demo
    Latest Posts

    Microsoft Warns Crypto Wallets Face New npm Trojan Risk

    June 3, 20260 Views

    PayPal and Ripple stablecoins still sub-1% despite ‘stablecoin gold rush’

    June 3, 20260 Views

    Democrats push Labor Department to scrap crypto 401(k) proposal

    June 3, 20260 Views

    Elon Musk blames X outage on ‘massive cyberattack’ as bitcoin dips to $78K

    June 3, 20260 Views
    Don't Miss

    Ondo joins DTCC tokenization working group for U.S. markets

    By James WilsonMay 4, 2026

    DTCC has formed a tokenization working group for U.S. markets and tapped Ondo alongside BlackRock,…

    White House Accuses China of AI Theft

    April 25, 2026

    dLocal Launches Stablecoin Payments

    April 27, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    Demo
    X (Twitter) Instagram YouTube LinkedIn
    Our Picks

    Microsoft Warns Crypto Wallets Face New npm Trojan Risk

    June 3, 2026

    PayPal and Ripple stablecoins still sub-1% despite ‘stablecoin gold rush’

    June 3, 2026

    Democrats push Labor Department to scrap crypto 401(k) proposal

    June 3, 2026
    Most Popular

    Ondo joins DTCC tokenization working group for U.S. markets

    May 4, 20266 Views

    White House Accuses China of AI Theft

    April 25, 20266 Views

    dLocal Launches Stablecoin Payments

    April 27, 20265 Views
    © 2026 - 2026

    Type above and press Enter to search. Press Esc to cancel.