Recent cybersecurity research has revealed significant threats within software supply chains, particularly involving malicious packages on the Python Package Index (PyPI) and npm. Kaspersky researchers identified that certain packages on PyPI contained JarkaStealer infostealer malware, which was disguised as access to OpenAI's ChatGPT and Anthropic's Claude AI models. Meanwhile, a year-long attack on npm was uncovered, where a seemingly benign xmlrpc library was found to exfiltrate sensitive data and mine cryptocurrency. This malicious activity poses a serious risk to developers, especially those in the cryptocurrency sector, as highlighted by reports of keylogging and wallet theft associated with these malicious packages.
Malicious PyPI Package Targets Cryptocurrency Wallets: aiocpa Campaign Exposed https://t.co/zz43B7oOSd
Malicious npm Packages Threaten Crypto Developers: Keylogging and Wallet Theft Revealed https://t.co/RvyVpZdVyT
Malicious PyPI Package Exposes Crypto Wallets to Infostealer Code https://t.co/so58lIpO8w