Thursday, November 13, 2025
cryptonews100
No Result
View All Result
CryptoNews100
No Result
View All Result
Home Cryptocurrency

Malicious npm Package nodejs-smtp Mimics Nodemailer, Targets Atomic and Exodus Wallets

cryptonews100_tggfrn by cryptonews100_tggfrn
September 2, 2025
in Cryptocurrency
0
Malicious npm Package nodejs-smtp Mimics Nodemailer, Targets Atomic and Exodus Wallets
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter
Sign up an get up to $1000 USDT!


Sep 02, 2025Ravie LakshmananCryptocurrency / Malware

Cybersecurity researchers have found a malicious npm package deal that comes with stealthy options to inject malicious code into desktop apps for cryptocurrency wallets like Atomic and Exodus on Home windows methods.

The package deal, named nodejs-smtp, impersonates the legit electronic mail library nodemailer with an an identical tagline, web page styling, and README descriptions, attracting a complete of 347 downloads because it was uploaded to the npm registry in April 2025 by a consumer named “nikotimon.” It is at present not out there.

“On import, the package deal makes use of Electron tooling to unpack Atomic Pockets’s app.asar, substitute a vendor bundle with a malicious payload, repackage the appliance, and take away traces by deleting its working listing,” Socket researcher Kirill Boychenko said.

CIS Build Kits

The principle goal is to overwrite the recipient deal with with hard-coded wallets managed by the risk actor, redirecting Bitcoin (BTC), Ethereum (ETH), Tether (USDT and TRX USDT), XRP (XRP), and Solana (SOL) transactions, successfully appearing as a cryptocurrency clipper.

That having stated, the package deal delivers on its said performance by appearing as an SMTP-based mailer in an try and keep away from elevating builders’ suspicion.

The package deal nonetheless works as a mailer and exposes a drop-in interface suitable with nodemailer. That practical cowl lowers suspicion, permits utility assessments to go, and offers builders little cause to query the dependency.

The event comes months after ReversingLabs discovered an npm package deal named “pdf-to-office” that achieved the identical objectives by unpacking the “app.asar” archives related to Atomic and Exodus wallets and modifying inside them a JavaScript file to introduce the clipper perform.

“This marketing campaign reveals how a routine import on a developer workstation can quietly modify a separate desktop utility and persist throughout reboots,” Boychenko stated. “By abusing import time execution and Electron packaging, a lookalike mailer turns into a pockets drainer that alters Atomic and Exodus on compromised Home windows methods.”



Source link

Related articles

£5B Bitcoin bandit sent down for 11 years • The Register

November 13, 2025
A guide to blockchain and cryptocurrency laws and regulations 2026: British Virgin Islands (GLI chapter) | Carey Olsen

A guide to blockchain and cryptocurrency laws and regulations 2026: British Virgin Islands (GLI chapter) | Carey Olsen

November 13, 2025
Tags: AtomicexodusmaliciousmimicsnodejssmtpNodemailernpmPackagetargetswallets
Share76Tweet47
Drive and walk to earn crypto!

Related Posts

£5B Bitcoin bandit sent down for 11 years • The Register

by cryptonews100_tggfrn
November 13, 2025
0

The Metropolitan Police's seven-year investigation right into a record-setting fraudster has ended after she was sentenced to 11 years and...

A guide to blockchain and cryptocurrency laws and regulations 2026: British Virgin Islands (GLI chapter) | Carey Olsen

A guide to blockchain and cryptocurrency laws and regulations 2026: British Virgin Islands (GLI chapter) | Carey Olsen

by cryptonews100_tggfrn
November 13, 2025
0

Authorities angle and definition The BVI has established itself as a number one offshore finance centre that's resilient, agile and...

1 Brand-New Catalyst for Solana That Could Portend Great Returns Ahead

Grab 3 Bitcoin-Centric Stocks Before the Cryptocurrency’s Next Rally

by cryptonews100_tggfrn
November 12, 2025
0

The cryptocurrency market has been taking a success recently, as a number of components which have raised uncertainties about the...

Zhimin Qian: Chinese ‘cryptoqueen’ who had royal aspirations jailed in UK over $6.6 billion Bitcoin scam

Zhimin Qian: Chinese ‘cryptoqueen’ who had royal aspirations jailed in UK over $6.6 billion Bitcoin scam

by cryptonews100_tggfrn
November 12, 2025
0

London AP  —  A Chinese lady who was discovered with 5 billion kilos ($6.6 billion) in Bitcoin after defrauding greater...

Prosecution Seeks Arrest of Police Chief in Cryptocurrency Bribery Case

Prosecution Seeks Arrest of Police Chief in Cryptocurrency Bribery Case

by cryptonews100_tggfrn
November 12, 2025
0

The prosecution has confirmed that it requested a bench warrant for a present police station chief suspected of receiving bribes...

Load More

Crypto Fear & Greed Index

Latest Crypto Fear & Greed Index

Recent News

£5B Bitcoin bandit sent down for 11 years • The Register

November 13, 2025
Vitalik Buterin Signs and Advocates For Trustless Manifesto

Vitalik Buterin Signs and Advocates For Trustless Manifesto

November 13, 2025
Grab 3 Bitcoin-Centric Stocks Before the Cryptocurrency’s Next Rally – November 12, 2025

Grab 3 Bitcoin-Centric Stocks Before the Cryptocurrency’s Next Rally – November 12, 2025

November 13, 2025

Categories

  • Bitcoin
  • Cardano
  • Chainlink
  • Cryptocurrency
  • Dogecoin
  • Ethereum
  • Exchanges
  • Pokadot
  • Polygon
  • Real World Assets
  • Shiba Inu
  • Solana
  • sui
  • World Liberty Financial
  • XRP

Download the official CryptoNews100 Android App! Click the button below:

Tags

ADA (147) Altcoins (106) Analysts (98) Bitcoin (626) BTC (157) Buy (275) Cardano (313) ChainLink (237) crypto (887) Cryptocurrency (283) DOGE (135) Dogecoin (314) DOT (100) ETF (175) ETH (172) Ethereum (434) eyes (97) gains (103) Inu (237) investors (112) launches (102) Link (94) market (261) million (109) News (339) Polkadot (182) POLYGON (132) prediction (217) Presale (189) price (663) rally (162) Remittix (116) RWA (135) Shiba (246) SOL (94) Solana (375) Sui (232) Surge (94) today (104) token (115) top (214) TradingView (107) Trump (136) world (95) XRP (494)

© 2023 Crypto News100 All Rights Reserved.
By visiting this website, you understand that the content provided within is for educational and entertainment purposes only. Nothing on this site may be constituted as financial advice and this site is not directing you to make any investments in cryptocurrency or in anything else. Thank you for visiting and please proceed responsibly.
As an Amazon Associate I earn from qualifying purchases.

No Result
View All Result
  • Home
  • Bitcoin
  • Ethereum
  • Alt Coins
    • Cardano
    • Dogecoin
    • Litecoin
    • Pokadot
    • Polygon
    • Shiba Inu
    • Solana
    • XRP
  • Crypto Related DEALS

© 2023 Crypto News100 All Rights Reserved.
By visiting this website, you understand that the content provided within is for educational and entertainment purposes only. Nothing on this site may be constituted as financial advice and this site is not directing you to make any investments in cryptocurrency or in anything else. Thank you for visiting and please proceed responsibly.
As an Amazon Associate I earn from qualifying purchases.