Tech · World
Injective SDK on npm infected with cryptocurrency wallet stealer
2 sourcesFirst reported 12 days agoUpdated 12 days ago
Center 100%
2 center
Coverage is primarily from centrist outlets (100%). When a story is mostly covered by the center, it is typically treated as a factual news item rather than an ideologically charged one.
What all sources covered
- Hackers compromised the Injective Labs SDK project's GitHub repository to publish a malicious package on npm.
- The infected package was designed to steal cryptocurrency wallet private keys and mnemonic seed phrases.
- This incident raises concerns for developers and applications managing Injective wallet workflows.
- Researchers from Socket reported the attempted backdoor on the Injective npm package.
2 sources
Who reported first
BleepingComputerFirst
Cointelegraph+7h
All coverage

