822K Downloads at Risk: Malicious node-ipc Versions Spotted Stealing AWS and Private Keys

15-May-2026 Bitcoin.com
Three malicious versions of node-ipc, a foundational Node.js library used across Web3 build pipelines, were confirmed compromised on May 14, with security firm Slowmist warning that crypto developers relying on the package face immediate credential theft risk. Developer Secrets at Stake Blockchain security firm Slowmist flagged the attack via its Misteye threat intelligence system, identifying […]
Also read: Cardano Founder Says ‘Leios Is Coming’ As Proposal Heads To DReps
WHAT'S YOUR OPINION?
Related News