• bitcoinBitcoin (BTC) $ 78,169.00
  • ethereumEthereum (ETH) $ 2,180.02
  • tetherTether (USDT) $ 0.999544
  • bnbBNB (BNB) $ 656.56
  • xrpXRP (XRP) $ 1.41
  • usd-coinUSDC (USDC) $ 0.999816
  • solanaSolana (SOL) $ 86.52
  • tronTRON (TRX) $ 0.354988
  • staked-etherLido Staked Ether (STETH) $ 2,265.05
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.04
  • dogecoinDogecoin (DOGE) $ 0.109477
  • whitebitWhiteBIT Coin (WBT) $ 57.61
  • usdsUSDS (USDS) $ 0.999771
  • hyperliquidHyperliquid (HYPE) $ 41.92
  • cardanoCardano (ADA) $ 0.254857
  • wrapped-stethWrapped stETH (WSTETH) $ 2,779.67
  • leo-tokenLEO Token (LEO) $ 9.91
  • zcashZcash (ZEC) $ 514.05
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 76,243.00
  • bitcoin-cashBitcoin Cash (BCH) $ 415.86
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.998762
  • moneroMonero (XMR) $ 386.30
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 2,466.93
  • chainlinkChainlink (LINK) $ 9.72
  • canton-networkCanton (CC) $ 0.151944
  • the-open-networkToncoin (TON) $ 1.91
  • wrapped-eethWrapped eETH (WEETH) $ 2,465.31
  • stellarStellar (XLM) $ 0.151977
  • usd1-wlfiUSD1 (USD1) $ 0.999888
  • susdssUSDS (SUSDS) $ 1.08
  • daiDai (DAI) $ 0.999507
  • ethena-usdeEthena USDe (USDE) $ 0.999599
  • litecoinLitecoin (LTC) $ 56.07
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 76,366.00
  • suiSui (SUI) $ 1.06
  • memecoreMemeCore (M) $ 3.14
  • avalanche-2Avalanche (AVAX) $ 9.30
  • wethWETH (WETH) $ 2,268.37
  • hedera-hashgraphHedera (HBAR) $ 0.091285
  • rainRain (RAIN) $ 0.007483
  • paypal-usdPayPal USD (PYUSD) $ 0.999821
  • usdt0USDT0 (USDT0) $ 0.998824
  • shiba-inuShiba Inu (SHIB) $ 0.000006
  • crypto-com-chainCronos (CRO) $ 0.071023
  • global-dollarGlobal Dollar (USDG) $ 0.999330
  • hashnote-usycCircle USYC (USYC) $ 1.12
  • tether-goldTether Gold (XAUT) $ 4,536.27
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • bittensorBittensor (TAO) $ 273.44
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.22
  • uniswapUniswap (UNI) $ 3.49
  • polkadotPolkadot (DOT) $ 1.27
  • pax-goldPAX Gold (PAXG) $ 4,535.84
  • mantleMantle (MNT) $ 0.644551
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.061202
  • nearNEAR Protocol (NEAR) $ 1.49
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.13
  • htx-daoHTX DAO (HTX) $ 0.000002
  • falcon-financeFalcon USD (USDF) $ 0.997842
  • okbOKB (OKB) $ 83.73
  • little-pepe-5Little Pepe (LILPEPE) $ 2.16
  • aster-2Aster (ASTER) $ 0.665740
  • pi-networkPi Network (PI) $ 0.160282
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.15
  • ondo-financeOndo (ONDO) $ 0.344397
  • skySky (SKY) $ 0.070099
  • pepePepe (PEPE) $ 0.000004
  • ripple-usdRipple USD (RLUSD) $ 0.999967
  • usddUSDD (USDD) $ 0.999387
  • internet-computerInternet Computer (ICP) $ 2.60
  • ethereum-classicEthereum Classic (ETC) $ 9.03
  • bitget-tokenBitget Token (BGB) $ 2.01
  • aaveAave (AAVE) $ 90.15
  • bfusdBFUSD (BFUSD) $ 0.999105
  • quant-networkQuant (QNT) $ 80.95
  • morphoMorpho (MORPHO) $ 1.78
  • kucoin-sharesKuCoin (KCS) $ 8.09
  • usdtbUSDtb (USDTB) $ 0.998862
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.00
  • janus-henderson-anemoy-treasury-fundJanus Henderson Anemoy Treasury Fund (JTRSY) $ 1.10
  • cosmosCosmos Hub (ATOM) $ 2.05
  • united-stablesUnited Stables (U) $ 0.999626
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.22
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 11.08
  • jito-staked-solJito Staked SOL (JITOSOL) $ 124.46
  • algorandAlgorand (ALGO) $ 0.110465
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.090897
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 2,404.69
  • ethenaEthena (ENA) $ 0.107013
  • blockchain-capitalBlockchain Capital (BCAP) $ 105.87
  • binance-peg-wethBinance-Peg WETH (WETH) $ 2,262.26
  • render-tokenRender (RENDER) $ 1.83
  • rocket-pool-ethRocket Pool ETH (RETH) $ 2,631.35
  • kaspaKaspa (KAS) $ 0.034136
  • nexoNEXO (NEXO) $ 0.871100
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999945
  • stable-2​​Stable (STABLE) $ 0.036060
  • worldcoin-wldWorldcoin (WLD) $ 0.240402
  • wbnbWrapped BNB (WBNB) $ 759.61
  • flare-networksFlare (FLR) $ 0.009226
  • ignition-fbtcFunction FBTC (FBTC) $ 76,389.00
  • justJUST (JST) $ 0.090872
  • aptosAptos (APT) $ 0.947547
  • gatechain-tokenGate (GT) $ 7.14
  • filecoinFilecoin (FIL) $ 0.972968
  • arbitrumArbitrum (ARB) $ 0.119564
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.11
  • jupiter-exchange-solanaJupiter (JUP) $ 0.198869
  • xdce-crowd-saleXDC Network (XDC) $ 0.031966
  • pump-funPump.fun (PUMP) $ 0.001745
  • binance-staked-solBinance Staked SOL (BNSOL) $ 108.24
  • venice-tokenVenice Token (VVV) $ 13.33
  • beldexBeldex (BDX) $ 0.078982
  • dexeDeXe (DEXE) $ 12.91
  • vechainVeChain (VET) $ 0.006828
  • ghoGHO (GHO) $ 0.999383
  • usual-usdUsual USD (USD0) $ 0.998114
  • new-x-ceo-is-backNEW X CEO IS BACK (XFLOKI) $ 0.506041
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999720
  • ousgOUSG (OUSG) $ 115.25
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 76,461.00
  • bonkBonk (BONK) $ 0.000006
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 76,491.00
  • hash-2Provenance Blockchain (HASH) $ 0.010300
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.008463
  • midnight-3Midnight (NIGHT) $ 0.031923
  • clbtcclBTC (CLBTC) $ 76,920.00
  • yldsYLDS (YLDS) $ 0.999802
  • dashDash (DASH) $ 41.28
  • official-trumpOfficial Trump (TRUMP) $ 2.17
  • a7a5A7A5 (A7A5) $ 0.013026
  • chilizChiliz (CHZ) $ 0.047974
  • true-usdTrueUSD (TUSD) $ 0.999442
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 2,419.84
  • kite-2Kite (KITE) $ 0.213805
  • pancakeswap-tokenPancakeSwap (CAKE) $ 1.47
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 33.97
  • apxusdapxUSD (APXUSD) $ 0.999694
  • tbtctBTC (TBTC) $ 70,942.00
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.723597
  • wrappedm-by-m0WrappedM by M0 (WM) $ 1.00
  • injective-protocolInjective (INJ) $ 4.75
  • terra-lunaTerra Luna Classic (LUNC) $ 0.000085
  • euro-coinEURC (EURC) $ 1.16
  • humanityHumanity (H) $ 0.244654
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.195595
  • blockstackStacks (STX) $ 0.239432
  • c8ntinuumc8ntinuum (CTM) $ 0.087592
  • edgexedgeX (EDGE) $ 1.24
  • mantle-staked-etherMantle Staked Ether (METH) $ 2,455.82
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.04
  • sei-networkSei (SEI) $ 0.062513
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999983
  • spiko-amundi-overnight-swap-fund-eurSpiko Amundi Overnight Swap Fund (EUR) (EURSAFO) $ 1.17
  • adi-tokenADI (ADI) $ 4.00
  • resolv-wstusrResolv wstUSR (WSTUSR) $ 1.13
  • cocaCOCA (COCA) $ 1.30
  • unibaseUnibase (UB) $ 0.165508
  • usdgoUSDGO (USDGO) $ 0.999827
  • build-onBUILDon (B) $ 0.396910
  • doge-strategyDoge Strategy (DOGESTR) $ 0.288297
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 2,406.26
  • bianrensheng币安人生 (BinanceLife) (币安人生) $ 0.393364
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 76,200.00
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.997771
  • aerodrome-financeAerodrome Finance (AERO) $ 0.417389
  • tezosTezos (XTZ) $ 0.357727
  • usxUSX (USX) $ 0.999599
  • wrapped-flareWrapped Flare (WFLR) $ 0.009961
  • sun-tokenSun Token (SUN) $ 0.019640
  • siren-2Siren (SIREN) $ 0.511460
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 2,266.86
  • curve-dao-tokenCurve DAO (CRV) $ 0.241921
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.12
  • celestiaCelestia (TIA) $ 0.398316
  • billions-networkBillions Network (BILL) $ 0.146179
  • spx6900SPX6900 (SPX) $ 0.376658
  • labLAB (LAB) $ 4.54
  • kinesis-goldKinesis Gold (KAU) $ 144.87
  • binance-peg-xrpBinance-Peg XRP (XRP) $ 1.59
  • conflux-tokenConflux (CFX) $ 0.064641
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 2,443.47
  • monadMonad (MON) $ 0.027903
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 2,421.84
  • layerzeroLayerZero (ZRO) $ 1.28
  • ether-fiEther.fi (ETHFI) $ 0.385794
  • noonNoon (NOON) $ 0.751949
  • sbtc-2sBTC (SBTC) $ 77,039.00
  • gnosisGnosis (GNO) $ 121.67
  • doublezeroDoubleZero (2Z) $ 0.091531
  • bittorrentBitTorrent (BTT) $ 0.00000032
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 115.56
  • bitcoin-svBitcoin SV (BSV) $ 15.69
  • savings-usddSavings USDD (SUSDD) $ 1.03
  • zebec-networkZebec Network (ZBCN) $ 0.003206
  • skyaiSkyAI (SKYAI) $ 0.313188
  • pendlePendle (PENDLE) $ 1.83
  • msolMarinade Staked SOL (MSOL) $ 133.18
  • ethgas-2ETHGas (GWEI) $ 0.148430
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 2,265.06

Slow Fog warns devs over malicious axios malware campaign

0 3


Slow Fog flags malicious axios releases pulling in plain-crypto-js malware, exposing crypto developers to cross-platform RATs and stolen credentials via npm.

Blockchain security firm Slow Fog has issued an urgent security reminder after newly published [email protected] and [email protected] releases pulled in a malicious dependency, [email protected], turning one of JavaScript’s most widely used HTTP clients into a supply chain weapon against crypto developers. Axios sees more than 80 million weekly downloads on npm, meaning even a short-lived compromise can ripple across wallet backends, trading bots, exchanges and DeFi infrastructure built on Node.js. In its advisory, Slow Fog warned that “users who installed [email protected] via npm install -g are potentially exposed,” recommending immediate credential rotation and thorough host-side investigation for signs of compromise.

The attack hinges on a fake cryptography package, [email protected], which is silently added as a new dependency and used solely to execute an obfuscated postinstall script that drops a cross-platform remote access trojan targeting Windows, macOS and Linux systems.

Security firm StepSecurity explained that “neither malicious version contains a single line of malicious code inside Axios itself,” and that instead “both inject a fake dependency, [email protected], whose only purpose is to run a postinstall script that deploys a cross-platform remote access trojan (RAT).” Socket’s research team noted that the malicious plain-crypto-js package was published just minutes before the compromised axios release, calling it a “coordinated supply chain attack” against the JavaScript ecosystem.

Axios maintainer account hijacked

According to StepSecurity, the malicious axios releases were pushed using stolen npm credentials belonging to primary maintainer “jasonsaayman,” allowing attackers to bypass the project’s usual GitHub-based release flow. “It’s a live supply chain compromise in [email protected], which newly depends on [email protected]—a package published hours earlier and identified as obfuscated malware that executes shell commands and erases traces,” security engineer Julian Harris wrote on LinkedIn. npm has now removed the malicious versions and reverted the axios resolution back to 1.14.0, but any environment that pulled 1.14.1 or 0.3.4 during the attack window remains at risk until secrets are rotated and systems are rebuilt.

The compromise echoes earlier npm incidents that directly targeted crypto users, including a 2025 campaign in which 18 popular packages like chalk and debug silently swapped wallet addresses to steal funds, prompting Ledger CTO Charles Guillemet to warn that “the affected packages have already been downloaded over 1 billion times.” Researchers have also documented npm malware stealing keys from Ethereum, XRP and Solana wallets, and SlowMist has estimated that crypto hacks and frauds — including backdoored packages and AI-assisted supply chain attacks — caused more than $2.3 billion in losses in the first half of 2025 alone. For now, Slow Fog’s advice is blunt: downgrade axios to 1.14.0, audit dependencies for any trace of [email protected] or openclaw, and assume that any credentials touched by those environments are compromised.

Previous software supply chain warnings

In a previous crypto.news story on JavaScript supply chain attacks, Ledger’s Guillemet warned that compromised npm packages with more than 2 billion weekly downloads posed a systemic risk to dApps and wallets built on Node.js. Another story detailed how North Korea’s Lazarus Group planted malicious npm packages to backdoor developer environments and target Solana and Exodus wallet users. A third crypto.news story on next-generation malware showed how backdoor supply chain attacks via npm and low-cost AI tools helped criminals remotely control over 4,200 developer machines and contributed to billions of dollars in crypto losses.



Source link

Leave A Reply

Your email address will not be published.