SlowMist: Ironworm malware attacks the web3 ecosystem via npm packages
2026-06-04 14:52:17
According to CoinWorld, SlowMist has detected a new type of Rust supply chain malware, Ironworm, which is using malicious npm packages to attack developer environments and the web3 ecosystem. Attacks include credential theft, wallet mnemonic phrase and password theft, GitHub repository tampering, malicious package distribution, CI/CD confidentiality leaks, Tor-based command control, and eBPF rootkit stealth. Security teams need to review backtracking commits, suspicious branches, accidental build hooks, and automated identity submissions.
Source:Internet
This content is for market information only and does not constitute investment advice.
Follow CoinMeta official accounts to stay updated

Hot Articles
Refresh

Apple approves Poke integration with enterprise messaging platform
13m ago

Bitcoin fell to around $61,000, prompting a whale to close its short position of 1,400 BTC.
13m ago

Cramer questions Bitcoin's trajectory, Strategy's unrealized losses widen.
24m ago

Helion raises $465 million to advance Microsoft's fusion power project.
33m ago

Jupiter launches Forecast, expanding Solana's native prediction market.
33m ago



