• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

New Hacker Tactics: Malicious Packages in Ethereum Smart Contracts

user avatar

by Giorgi Kostiuk

2 days ago


Cybersecurity researchers from ReversingLabs have uncovered a new dangerous trend in cyber threats involving the use of Ethereum smart contracts to hide malware.

Discovery of Malicious Packages

Cybersecurity researchers at ReversingLabs discovered two fake JavaScript packages named 'colortoolsv2' and 'mimelib2' in the Node Package Manager (NPM). These packages, added in July, hide their malicious instructions within Ethereum smart contracts. According to ReversingLabs researcher Lucija Valentić, these packages act as downloaders, extracting command and control server addresses from the Ethereum blockchain.

New Attack Methods by Hackers

Hackers, including the North Korean-linked Lazarus Group, have previously used Ethereum smart contracts to disseminate malware. However, the new tactic involves hiding web addresses (URLs) within Ethereum smart contracts, directing victims to download malicious software. Valentić explained that this approach makes it harder for security systems to detect, as blockchain traffic appears legitimate, masking malicious activity.

Complications in Combating Malware

In 2024, security experts found 23 scams involving cryptocurrencies on open-source code platforms, where hackers concealed malware. According to Valentić, this new type of attack indicates that scams are becoming more sophisticated. Furthermore, in April, hackers created a fake GitHub project pretending to be a Solana trading bot, which secretly installed malware to steal cryptocurrency wallet information.

The discovered methods underline how quickly hackers are developing new approaches to bypass security systems, posing a threat not only to developers but also to end users of open-source code.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

Other news

Ark Invest Strengthens Its Position in Ethereum with BMNR Share Purchase

chest

Ark Invest has acquired 388,045 shares of BMNR, enhancing its presence in the Ethereum market and showcasing institutional activity.

user avatarGiorgi Kostiuk

Faraday Future Announces $10 Billion Crypto Operations Plan

chest

Faraday Future has revealed its crypto strategy with a $10 billion allocation for 2025, becoming the first US vehicle manufacturer to adopt such an initiative.

user avatarGiorgi Kostiuk

Polygon Developer Accuses WLFI of Unjustified Wallet Freezes

chest

A Polygon developer accuses WLFI of freezing his wallet and withholding tokens without justification. WLFI cites security concerns in defense.

user avatarGiorgi Kostiuk

How to Invest $5,000 in Little Pepe and Hope for $5 Million

chest

A Ripple investor outlines a strategy to potentially turn $5,000 into $5 million, focusing on Little Pepe.

user avatarGiorgi Kostiuk

CryptoAppsy: App for Effective Cryptocurrency Price Monitoring

chest

CryptoAppsy is a no-registration app designed for convenient real-time cryptocurrency price tracking.

user avatarGiorgi Kostiuk

Review of Cryptocurrency Apps: CryptoAppsy and Its Functions

chest

CryptoAppsy offers real-time data processing for cryptocurrency analysis and portfolio management.

user avatarGiorgi Kostiuk

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.