Topic: reversinglabs research

  • Malicious npm Packages Target Ethereum Smart Contracts

    Malicious npm Packages Target Ethereum Smart Contracts

    A new wave of malicious npm packages uses Ethereum smart contracts to hide command-and-control infrastructure, making detection more difficult. Attackers also created fake GitHub repositories with artificially inflated metrics to appear legitimate and target cryptocurrency developers. This campai...

    Read More »
  • Banana Squad's GitHub Malware Attack Targets Developers

    Banana Squad's GitHub Malware Attack Targets Developers

    Cybersecurity experts discovered a malware campaign by Banana Squad targeting developers via 67 fake GitHub repositories, distributing trojanized Python files disguised as hacking tools. Attackers hid malicious code using long space strings on GitHub, evading standard views, marking a shift i...

    Read More »