SlowMist reveals cross registry supply chain attack event
According to SlowMist, MistEye has detected that attackers have targeted cryptocurrency, DeFi, Solana, Sui/Move, and AI developers by releasing malicious packages to npm, PyPI, and crate.io, involving over 34 malicious packages and 384 versions. Attackers may steal sensitive information such as wallets, SSH keys, cloud credentials, and attempt to achieve persistent residency through various means. Recommend developers to remove affected packages, isolate the system, rotate credentials, and review relevant activity records.