安全机构:NPM 供应链遭攻击,开发者 qix 中招
Sep 09, 2025 07:48:03
Share to

ChainCatcher 消息,据市场消息称,知名开发者 qix 因钓鱼攻击导致 npm 软件包被注入恶意代码,相关包包括 chalk、strip-ansi、color-convert 等。
攻击方式为挂钩钱包功能、篡改 ETH/SOL 交易收款地址及替换网络响应中的地址。用户建议:务必在钱包界面核对收款人和金额,检查粘贴后地址变化,复查近期交易,高价值操作优先使用硬件钱包。
Latest News
Caliber plans to raise $15.9 million through a stock placement to increase its holdings of LINK tokens
Sep 17, 2025 19:51:50
Qianxun Technology will acquire the Web 3 fintech company Punk Code for no more than HKD 25 million
Sep 17, 2025 19:43:51
Mysterious trader bets on a 50 basis point rate cut by the Federal Reserve, with the Chicago Mercantile Exchange witnessing the largest block trade in federal funds futures history
Sep 17, 2025 19:38:56