Microsoft Warns of RAT Malware in npm Packages utils-terminal and logger-active

According to Microsoft Threat Intelligence, two malicious npm packages—utils-terminal@3.2.1 and logger-active@3.2.1—were discovered distributing a remote access trojan (RAT) designed to steal cryptocurrency wallet credentials, API keys, and other sensitive data from developers' systems.

The attackers routed stolen information through Hugging Face, a machine learning platform, to evade detection by making the activity appear less suspicious than direct command-and-control communications. The threat is particularly concerning for crypto developers, whose workstations often contain wallet private keys, seed phrase backups, and exchange credentials.

Disclaimer: The information on this page may come from third-party sources and is for reference only. It does not represent the views or opinions of Gate and does not constitute any financial, investment, or legal advice. Virtual asset trading involves high risk. Please do not rely solely on the information on this page when making decisions. For details, see the Disclaimer.
Comment
0/400
No comments