• bitcoinBitcoin (BTC) $ 62,872.00
  • ethereumEthereum (ETH) $ 1,651.13
  • tetherTether (USDT) $ 0.998919
  • bnbBNB (BNB) $ 599.40
  • usd-coinUSDC (USDC) $ 0.999762
  • xrpXRP (XRP) $ 1.12
  • solanaSolana (SOL) $ 65.60
  • tronTRON (TRX) $ 0.321028
  • staked-etherLido Staked Ether (STETH) $ 2,265.05
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.03
  • dogecoinDogecoin (DOGE) $ 0.085212
  • hyperliquidHyperliquid (HYPE) $ 56.69
  • usdsUSDS (USDS) $ 0.999697
  • leo-tokenLEO Token (LEO) $ 9.49
  • rainRain (RAIN) $ 0.013141
  • wrapped-stethWrapped stETH (WSTETH) $ 2,779.67
  • zcashZcash (ZEC) $ 423.04
  • moneroMonero (XMR) $ 351.44
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 76,243.00
  • canton-networkCanton (CC) $ 0.166595
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.998762
  • stellarStellar (XLM) $ 0.186844
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 2,466.93
  • cardanoCardano (ADA) $ 0.166248
  • whitebitWhiteBIT Coin (WBT) $ 51.52
  • chainlinkChainlink (LINK) $ 7.78
  • wrapped-eethWrapped eETH (WEETH) $ 2,465.31
  • ethena-usdeEthena USDe (USDE) $ 0.998921
  • the-open-networkToncoin (TON) $ 1.62
  • susdssUSDS (SUSDS) $ 1.08
  • usd1-wlfiUSD1 (USD1) $ 0.998207
  • daiDai (DAI) $ 0.999778
  • bitcoin-cashBitcoin Cash (BCH) $ 200.47
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 76,366.00
  • memecoreMemeCore (M) $ 2.89
  • hedera-hashgraphHedera (HBAR) $ 0.078023
  • litecoinLitecoin (LTC) $ 42.44
  • wethWETH (WETH) $ 2,268.37
  • suiSui (SUI) $ 0.749862
  • hashnote-usycCircle USYC (USYC) $ 1.13
  • labLAB (LAB) $ 9.08
  • usdt0USDT0 (USDT0) $ 0.998824
  • paypal-usdPayPal USD (PYUSD) $ 1.00
  • avalanche-2Avalanche (AVAX) $ 6.57
  • shiba-inuShiba Inu (SHIB) $ 0.000005
  • crypto-com-chainCronos (CRO) $ 0.059822
  • audieraAudiera (BEAT) $ 9.25
  • global-dollarGlobal Dollar (USDG) $ 0.999853
  • nearNEAR Protocol (NEAR) $ 2.01
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.22
  • tether-goldTether Gold (XAUT) $ 4,067.69
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.13
  • bittensorBittensor (TAO) $ 208.26
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.058858
  • pax-goldPAX Gold (PAXG) $ 4,076.13
  • mantleMantle (MNT) $ 0.537604
  • ondo-financeOndo (ONDO) $ 0.350356
  • aster-2Aster (ASTER) $ 0.630870
  • ripple-usdRipple USD (RLUSD) $ 0.999996
  • little-pepe-5Little Pepe (LILPEPE) $ 2.16
  • worldcoin-wldWorldcoin (WLD) $ 0.485128
  • polkadotPolkadot (DOT) $ 0.946998
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.15
  • uniswapUniswap (UNI) $ 2.52
  • htx-daoHTX DAO (HTX) $ 0.000002
  • okbOKB (OKB) $ 71.13
  • falcon-financeFalcon USD (USDF) $ 0.994495
  • pi-networkPi Network (PI) $ 0.125748
  • skySky (SKY) $ 0.057540
  • usddUSDD (USDD) $ 0.998882
  • bfusdBFUSD (BFUSD) $ 0.998720
  • morphoMorpho (MORPHO) $ 1.98
  • internet-computerInternet Computer (ICP) $ 2.24
  • bitget-tokenBitget Token (BGB) $ 1.77
  • pepePepe (PEPE) $ 0.000003
  • ethereum-classicEthereum Classic (ETC) $ 7.14
  • usdtbUSDtb (USDTB) $ 0.999563
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.00
  • united-stablesUnited Stables (U) $ 0.999401
  • cosmosCosmos Hub (ATOM) $ 1.93
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.21
  • blockchain-capitalBlockchain Capital (BCAP) $ 106.96
  • aaveAave (AAVE) $ 63.27
  • jito-staked-solJito Staked SOL (JITOSOL) $ 124.46
  • dexeDeXe (DEXE) $ 20.64
  • quant-networkQuant (QNT) $ 65.04
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 2,404.69
  • superstate-short-duration-us-government-securities-fund-ustbInvesco Short Duration US Government Securities Fund (USTB) $ 11.11
  • kucoin-sharesKuCoin (KCS) $ 6.67
  • binance-peg-wethBinance-Peg WETH (WETH) $ 2,262.26
  • janus-henderson-anemoy-treasury-fundJanus Henderson Anemoy Treasury Fund (JTRSY) $ 1.11
  • rocket-pool-ethRocket Pool ETH (RETH) $ 2,631.35
  • kaspaKaspa (KAS) $ 0.030563
  • render-tokenRender (RENDER) $ 1.56
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999945
  • nexoNEXO (NEXO) $ 0.805096
  • stable-2​​Stable (STABLE) $ 0.034047
  • wbnbWrapped BNB (WBNB) $ 759.61
  • algorandAlgorand (ALGO) $ 0.087873
  • ignition-fbtcFunction FBTC (FBTC) $ 76,389.00
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.073427
  • ethenaEthena (ENA) $ 0.076119
  • bianrensheng币安人生 (BinanceLife) (币安人生) $ 0.693804
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.04
  • gatechain-tokenGate (GT) $ 6.42
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.11
  • justJUST (JST) $ 0.075322
  • venice-tokenVenice Token (VVV) $ 13.48
  • xdce-crowd-saleXDC Network (XDC) $ 0.030912
  • binance-staked-solBinance Staked SOL (BNSOL) $ 108.24
  • beldexBeldex (BDX) $ 0.079067
  • ghoGHO (GHO) $ 0.998816
  • filecoinFilecoin (FIL) $ 0.752151
  • flare-networksFlare (FLR) $ 0.006937
  • hash-2Provenance Blockchain (HASH) $ 0.010427
  • midnight-3Midnight (NIGHT) $ 0.033666
  • new-x-ceo-is-backNEW X CEO IS BACK (XFLOKI) $ 0.506041
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999720
  • usual-usdUsual USD (USD0) $ 0.998661
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 76,461.00
  • yldsYLDS (YLDS) $ 0.999842
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 76,491.00
  • aptosAptos (APT) $ 0.637089
  • injective-protocolInjective (INJ) $ 5.20
  • a7a5A7A5 (A7A5) $ 0.013217
  • clbtcclBTC (CLBTC) $ 76,920.00
  • jupiter-exchange-solanaJupiter (JUP) $ 0.155401
  • usxUSX (USX) $ 0.999320
  • arbitrumArbitrum (ARB) $ 0.081209
  • spiko-amundi-overnight-swap-fund-eurSpiko Amundi Overnight Swap Fund (EUR) (EURSAFO) $ 1.16
  • pump-funPump.fun (PUMP) $ 0.001438
  • ousgOndo Short-Term U.S. Government Bond Fund (OUSG) $ 115.53
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 2,419.84
  • true-usdTrueUSD (TUSD) $ 0.999108
  • pancakeswap-tokenPancakeSwap (CAKE) $ 1.30
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 33.97
  • dashDash (DASH) $ 34.83
  • tbtctBTC (TBTC) $ 70,942.00
  • euro-coinEURC (EURC) $ 1.15
  • wrappedm-by-m0WrappedM by M0 (WM) $ 1.00
  • kite-2Kite (KITE) $ 0.184349
  • siren-2Siren (SIREN) $ 0.584311
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.006685
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.185723
  • vechainVeChain (VET) $ 0.004812
  • official-trumpOfficial Trump (TRUMP) $ 1.72
  • c8ntinuumc8ntinuum (CTM) $ 0.087592
  • apxusdapxUSD (APXUSD) $ 0.961276
  • mantle-staked-etherMantle Staked Ether (METH) $ 2,455.82
  • hastra-primePRIME (PRIME) $ 1.04
  • curve-dao-tokenCurve DAO (CRV) $ 0.256652
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999983
  • velvetVelvet (VELVET) $ 0.925595
  • adi-tokenADI (ADI) $ 3.73
  • resolv-wstusrResolv wstUSR (WSTUSR) $ 1.13
  • cocaCOCA (COCA) $ 1.30
  • terra-lunaTerra Luna Classic (LUNC) $ 0.000070
  • bonkBonk (BONK) $ 0.000004
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.571013
  • doge-strategyDoge Strategy (DOGESTR) $ 0.288297
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 2,406.26
  • lighterLighter (LIT) $ 1.49
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 76,200.00
  • the9bitThe9bit (9BIT) $ 0.044747
  • ethgas-2ETHGas (GWEI) $ 0.167010
  • blockstackStacks (STX) $ 0.184319
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.997411
  • wrapped-flareWrapped Flare (WFLR) $ 0.009961
  • sun-tokenSun Token (SUN) $ 0.016998
  • sei-networkSei (SEI) $ 0.048513
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 2,266.86
  • aerodrome-financeAerodrome Finance (AERO) $ 0.342542
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.12
  • kinesis-goldKinesis Gold (KAU) $ 130.14
  • chilizChiliz (CHZ) $ 0.030034
  • humanityHumanity (H) $ 0.166623
  • celestiaCelestia (TIA) $ 0.324272
  • spx6900SPX6900 (SPX) $ 0.319020
  • binance-peg-xrpBinance-Peg XRP (XRP) $ 1.59
  • unibaseUnibase (UB) $ 0.117671
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 2,443.47
  • usdgoUSDGO (USDGO) $ 0.999782
  • pyth-networkPyth Network (PYTH) $ 0.036229
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 2,421.84
  • jito-governance-tokenJito (JTO) $ 0.561334
  • ether-fiEther.fi (ETHFI) $ 0.305427
  • noonNoon (NOON) $ 0.751949
  • sbtc-2sBTC (SBTC) $ 77,039.00
  • apenftAINFT (NFT) $ 0.00000027
  • bittorrentBitTorrent (BTT) $ 0.00000027
  • monadMonad (MON) $ 0.021871
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 115.56
  • tezosTezos (XTZ) $ 0.234561
  • savings-usddSavings USDD (SUSDD) $ 1.03
  • gnosisGnosis (GNO) $ 96.22
  • zebec-networkZebec Network (ZBCN) $ 0.002571
  • royal-dollarRoyal Dollar (RUSD) $ 0.999969
  • msolMarinade Staked SOL (MSOL) $ 133.18
  • olympusOlympus (OHM) $ 16.63

Hackers Use Fake LinkedIn Jobs to Steal Crypto Developer Code Pipelines

0 0


A previously undocumented threat actor is systematically targeting cryptocurrency developers through fake LinkedIn recruitment campaigns, installing custom malware on their computers and then using that access to compromise the company’s entire software development infrastructure.

Security firm Wiz has named the group JINX-0164 and has been tracking it since at least mid-2025. The group has conducted multiple successful intrusions against cryptocurrency organisations, in at least one case attempting a full supply chain attack by distributing malicious code through a widely used public package.

How the Attack Works

The attack follows a consistent pattern across every documented case:

  • A credible LinkedIn profile reaches out with a job opportunity or business proposal
  • The target is invited to a virtual meeting through what appears to be Microsoft Teams or a similar platform
  • The meeting link leads to a fake domain where a malicious file is downloaded under the guise of fixing an audio or technical problem
  • The file installs AUDIOFIX, a custom Python-based malware with full remote access capabilities
  • Attackers harvest passwords, SSH keys, browser credentials, cryptocurrency wallet extensions, AWS and cloud API keys, and active sessions from Discord, Slack, and Telegram
  • GitHub tokens extracted from the compromised machine are used to access internal code repositories
  • Malicious code is injected directly into the development pipeline, infecting every other developer who pulls from those repositories

The entire process from initial LinkedIn contact to full pipeline compromise took two weeks in one documented case.

The Supply Chain Attack

On April 7, 2026, JINX-0164 trojanised version 9.4.1 of the npm package @velora-dex/sdk, a widely used cryptocurrency SDK. Three lines of malicious code were appended to the package that silently downloaded a lightweight backdoor called MINIRAT whenever the package was imported by any developer.

The attack targeted npm credentials rather than the GitHub source code, meaning the repository appeared clean while the published package was compromised.

Related: FIFA World Cup 2026 Turns Into Crypto Prediction Battleground

Why Developers Are the Target

Developer machines hold credentials for every system the developer touches. Cloud infrastructure, code repositories, package managers, internal APIs. JINX-0164 showed almost no interest in traditional cloud resources after gaining access. Their focus was exclusively on code distribution systems and development infrastructure, the most efficient path to reaching thousands of end users through a single trusted package.

What to Watch For

Wiz identified several indicators that helped detect the attack including unverified commit badges on GitHub’s Vigilant Mode, mismatches between GPG key history and commit authors, and git push activities traced back to a single compromised endpoint through audit logs.

The group routes all activity through Mullvad, Astrill, and ExpressVPN to mask their origin. While no definitive attribution has been confirmed, Wiz noted tactical similarities to North Korean threat groups including UNC1069 and Sapphire Sleet, though no infrastructure overlap with known groups has been identified.

Related: Michael Saylor Outlines the Four Bitcoin Ideologies



Source link

Leave A Reply

Your email address will not be published.