• Disclaimer
  • Copyright
  • About Us
  • Privacy Policy for Netfest
  • Contact
  • Advertise
Tech News, Magazine & Review WordPress Theme 2017
  • Home
  • News
    BGMI 3.7 Update mod (hack) apk is now available for download! Check out the Golden Moon theme, explore the new RONDO map, and get all the details you need to know.

    BGMI 3.7 Update mod (hack) apk is now available for download!

    In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

    In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

    Malicious machine learning models on Hugging Face exploit a flawed Pickle format to avoid detection.

    Malicious machine learning models on Hugging Face exploit a flawed Pickle format to avoid detection.

    India's Reserve Bank of India (RBI) has launched a unique "bank.in" domain aimed at tackling digital banking fraud.

    India’s Reserve Bank of India (RBI) has launched a unique “bank.in” domain aimed at tackling digital banking fraud.

    There's no need to be concerned about a delay for GTA 6 at this point, according to a source within Rockstar. (Image via Rockstar Games)

    There’s no need to be concerned about a delay for GTA 6 at this point, according to a source within Rockstar.

    DeepSeek R1 has been jailbroken to create scripts for ransomware development.

    DeepSeek R1 has been jailbroken to create scripts for ransomware development.

  • Review
    DeepSeek R1 has been jailbroken to create scripts for ransomware development.

    DeepSeek R1 has been jailbroken to create scripts for ransomware development.

    MSI GE66 Raider Review

    MSI GE66 Raider Review

    iPhone SE (2020) review

    iPhone SE (2020) review

    Samsung Galaxy S20 Review (Indian Variant)

    Samsung Galaxy S20 Ultra review

    Samsung Galaxy S20 Review (Indian Variant)

    Samsung Galaxy S20 Review (Indian Variant)

    OnePlus 8 Pro review

    OnePlus 8 Pro review

  • Gaming
    BGMI 3.7 Update mod (hack) apk is now available for download! Check out the Golden Moon theme, explore the new RONDO map, and get all the details you need to know.

    BGMI 3.7 Update mod (hack) apk is now available for download!

    There's no need to be concerned about a delay for GTA 6 at this point, according to a source within Rockstar. (Image via Rockstar Games)

    There’s no need to be concerned about a delay for GTA 6 at this point, according to a source within Rockstar.

    BGMI 120 FPS APK AVAILABLE FOR DOWNLOAD

    BGMI 120 FPS APK AVAILABLE FOR DOWNLOAD

    BGMI Cover-Credits:  pxfuel. com

    zero recoil sensitivity bgmi code for android

    BGMI Mod Apk Review: Features and Benefits Explained

    Installing the BGMI Mod Apk 3.6.0 (ESP, Aimbot, Menu)

    For free, you may get the BGMI iOS App from the following link: Is BFMI iOS Download for free in 2 GB Ram? The complete list of iPhones

    For free, you may get the BGMI iOS App from the following link: Is BFMI iOS Download for free in 2 GB Ram? The complete list of iPhones

  • Gear
    • All
    • Camera
    • Laptop
    • Smartphone
    Samsung Galaxy S24 Plus Under ₹60,000: Check Offer Details

    Check out the latest price for the Samsung Galaxy S24 Plus at Flipkart’s Monumental Sale, which is 40% off.

    Amazon does not want you to read this Kindle jailbreak tutorial. netfest.in

    Amazon does not want you to read this Kindle jailbreak tutorial.

    oneplus 13 / oneplus 13R review

    Oneplus 13/13R Review-Are you considering upgrading? Here are several reasons why the OnePlus 13 and 13R are essential.

    Oneplus 13 / oneplus 13R review

    Phones Arriving in January 2025: From the OnePlus 13 to the Samsung Galaxy S25 Series

    BGMI Cover-Credits:  pxfuel. com

    zero recoil sensitivity bgmi code for android

    Realme X7 India Date Out , India Price 14.999? Confirms Company's CEO

    Realme X7 India Date Out , India Price 14.999? Confirms Company’s CEO

  • Computers
    Apple Intelligence is set to launch in India this April, starting with the English language.

    Apple Intelligence is set to launch in India this April, starting with the English language.

    Microsoft lists features removed in Windows 10 version 2004

    Microsoft lists features removed in Windows 10 version 2004

    Ubuntu 20.10 Release Date & Planned Features

    Ubuntu 20.10 Release Date & Planned Features

    MSI GE66 Raider Review

    MSI GE66 Raider Review

    MSI Creator 17 is the first Mini LED laptop in the world

    MSI Creator 17 is the first Mini LED laptop in the world

    Microsoft offers $100,000 to hack its custom Linux OS

    Microsoft offers $100,000 to hack its custom Linux OS

  • Applications
    Download TallyPrime 6.0 Beta and enjoy early access!

    Download TallyPrime 6.0 Beta and enjoy early access!

    "Step-by-Step Guide to Installing Kubernetes on Ubuntu 24.04/24.10"

    Step-by-Step Guide to Installing Kubernetes on Ubuntu 24.04

    Windows 11 KB5050021 23H2 has been released, bringing new features along with a direct download option for the .msu file.

    Windows 11 KB5050021 23H2 has been released, bringing new features along with a direct download option for the .msu file.

    For free, you may get the BGMI iOS App from the following link: Is BFMI iOS Download for free in 2 GB Ram? The complete list of iPhones

    For free, you may get the BGMI iOS App from the following link: Is BFMI iOS Download for free in 2 GB Ram? The complete list of iPhones

    Microsoft is teasing a new Windows 10 Start Menu

    Microsoft is teasing a new Windows 10 Start Menu

    Microsoft lists features removed in Windows 10 version 2004

    Microsoft lists features removed in Windows 10 version 2004

  • Security
    In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

    In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

    Malicious machine learning models on Hugging Face exploit a flawed Pickle format to avoid detection.

    Malicious machine learning models on Hugging Face exploit a flawed Pickle format to avoid detection.

    Broadcom has released patches for vulnerabilities in VMware Aria, as these exploits could potentially result in credential theft.

    Broadcom has released patches for vulnerabilities in VMware Aria, as these exploits could potentially result in credential theft.

    GitHub Desktop has a vulnerability that can lead to credential leaks through malicious remote URLs.

    GitHub Desktop has a vulnerability that can lead to credential leaks through malicious remote URLs.

    RANsacked: More than 100 security flaws detected in LTE and 5G network configurations.

    RANsacked: More than 100 security flaws detected in LTE and 5G network configurations.

    Uncover Concealed Browsing Dangers: Complimentary Risk Evaluation for GenAI, Identity, Web, and SaaS Vulnerabilities.

    Uncover Concealed Browsing Dangers: Complimentary Risk Evaluation for GenAI, Identity, Web, and SaaS Vulnerabilities.

No Result
View All Result
  • Home
  • News
    BGMI 3.7 Update mod (hack) apk is now available for download! Check out the Golden Moon theme, explore the new RONDO map, and get all the details you need to know.

    BGMI 3.7 Update mod (hack) apk is now available for download!

    In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

    In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

    Malicious machine learning models on Hugging Face exploit a flawed Pickle format to avoid detection.

    Malicious machine learning models on Hugging Face exploit a flawed Pickle format to avoid detection.

    India's Reserve Bank of India (RBI) has launched a unique "bank.in" domain aimed at tackling digital banking fraud.

    India’s Reserve Bank of India (RBI) has launched a unique “bank.in” domain aimed at tackling digital banking fraud.

    There's no need to be concerned about a delay for GTA 6 at this point, according to a source within Rockstar. (Image via Rockstar Games)

    There’s no need to be concerned about a delay for GTA 6 at this point, according to a source within Rockstar.

    DeepSeek R1 has been jailbroken to create scripts for ransomware development.

    DeepSeek R1 has been jailbroken to create scripts for ransomware development.

  • Review
    DeepSeek R1 has been jailbroken to create scripts for ransomware development.

    DeepSeek R1 has been jailbroken to create scripts for ransomware development.

    MSI GE66 Raider Review

    MSI GE66 Raider Review

    iPhone SE (2020) review

    iPhone SE (2020) review

    Samsung Galaxy S20 Review (Indian Variant)

    Samsung Galaxy S20 Ultra review

    Samsung Galaxy S20 Review (Indian Variant)

    Samsung Galaxy S20 Review (Indian Variant)

    OnePlus 8 Pro review

    OnePlus 8 Pro review

  • Gaming
    BGMI 3.7 Update mod (hack) apk is now available for download! Check out the Golden Moon theme, explore the new RONDO map, and get all the details you need to know.

    BGMI 3.7 Update mod (hack) apk is now available for download!

    There's no need to be concerned about a delay for GTA 6 at this point, according to a source within Rockstar. (Image via Rockstar Games)

    There’s no need to be concerned about a delay for GTA 6 at this point, according to a source within Rockstar.

    BGMI 120 FPS APK AVAILABLE FOR DOWNLOAD

    BGMI 120 FPS APK AVAILABLE FOR DOWNLOAD

    BGMI Cover-Credits:  pxfuel. com

    zero recoil sensitivity bgmi code for android

    BGMI Mod Apk Review: Features and Benefits Explained

    Installing the BGMI Mod Apk 3.6.0 (ESP, Aimbot, Menu)

    For free, you may get the BGMI iOS App from the following link: Is BFMI iOS Download for free in 2 GB Ram? The complete list of iPhones

    For free, you may get the BGMI iOS App from the following link: Is BFMI iOS Download for free in 2 GB Ram? The complete list of iPhones

  • Gear
    • All
    • Camera
    • Laptop
    • Smartphone
    Samsung Galaxy S24 Plus Under ₹60,000: Check Offer Details

    Check out the latest price for the Samsung Galaxy S24 Plus at Flipkart’s Monumental Sale, which is 40% off.

    Amazon does not want you to read this Kindle jailbreak tutorial. netfest.in

    Amazon does not want you to read this Kindle jailbreak tutorial.

    oneplus 13 / oneplus 13R review

    Oneplus 13/13R Review-Are you considering upgrading? Here are several reasons why the OnePlus 13 and 13R are essential.

    Oneplus 13 / oneplus 13R review

    Phones Arriving in January 2025: From the OnePlus 13 to the Samsung Galaxy S25 Series

    BGMI Cover-Credits:  pxfuel. com

    zero recoil sensitivity bgmi code for android

    Realme X7 India Date Out , India Price 14.999? Confirms Company's CEO

    Realme X7 India Date Out , India Price 14.999? Confirms Company’s CEO

  • Computers
    Apple Intelligence is set to launch in India this April, starting with the English language.

    Apple Intelligence is set to launch in India this April, starting with the English language.

    Microsoft lists features removed in Windows 10 version 2004

    Microsoft lists features removed in Windows 10 version 2004

    Ubuntu 20.10 Release Date & Planned Features

    Ubuntu 20.10 Release Date & Planned Features

    MSI GE66 Raider Review

    MSI GE66 Raider Review

    MSI Creator 17 is the first Mini LED laptop in the world

    MSI Creator 17 is the first Mini LED laptop in the world

    Microsoft offers $100,000 to hack its custom Linux OS

    Microsoft offers $100,000 to hack its custom Linux OS

  • Applications
    Download TallyPrime 6.0 Beta and enjoy early access!

    Download TallyPrime 6.0 Beta and enjoy early access!

    "Step-by-Step Guide to Installing Kubernetes on Ubuntu 24.04/24.10"

    Step-by-Step Guide to Installing Kubernetes on Ubuntu 24.04

    Windows 11 KB5050021 23H2 has been released, bringing new features along with a direct download option for the .msu file.

    Windows 11 KB5050021 23H2 has been released, bringing new features along with a direct download option for the .msu file.

    For free, you may get the BGMI iOS App from the following link: Is BFMI iOS Download for free in 2 GB Ram? The complete list of iPhones

    For free, you may get the BGMI iOS App from the following link: Is BFMI iOS Download for free in 2 GB Ram? The complete list of iPhones

    Microsoft is teasing a new Windows 10 Start Menu

    Microsoft is teasing a new Windows 10 Start Menu

    Microsoft lists features removed in Windows 10 version 2004

    Microsoft lists features removed in Windows 10 version 2004

  • Security
    In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

    In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

    Malicious machine learning models on Hugging Face exploit a flawed Pickle format to avoid detection.

    Malicious machine learning models on Hugging Face exploit a flawed Pickle format to avoid detection.

    Broadcom has released patches for vulnerabilities in VMware Aria, as these exploits could potentially result in credential theft.

    Broadcom has released patches for vulnerabilities in VMware Aria, as these exploits could potentially result in credential theft.

    GitHub Desktop has a vulnerability that can lead to credential leaks through malicious remote URLs.

    GitHub Desktop has a vulnerability that can lead to credential leaks through malicious remote URLs.

    RANsacked: More than 100 security flaws detected in LTE and 5G network configurations.

    RANsacked: More than 100 security flaws detected in LTE and 5G network configurations.

    Uncover Concealed Browsing Dangers: Complimentary Risk Evaluation for GenAI, Identity, Web, and SaaS Vulnerabilities.

    Uncover Concealed Browsing Dangers: Complimentary Risk Evaluation for GenAI, Identity, Web, and SaaS Vulnerabilities.

No Result
View All Result
NetFest
No Result
View All Result

Hackers are using malicious npm packages to steal Solana wallet keys by exploiting Gmail’s SMTP service.

Nimesh Dama by Nimesh Dama
20/01/2025
149 2
Home News
Share on FacebookShare on Twitter
Hackers are using malicious npm packages to steal Solana wallet keys by exploiting Gmail's SMTP service.
Hackers are using malicious npm packages to steal Solana wallet keys by exploiting Gmail’s SMTP service.

Cybersecurity researchers have discovered three groups of malicious packages in the npm and Python Package Index (PyPI) repositories. These packages have the ability to steal data and can even delete sensitive information from compromised systems.

The list of identified packages is below –

  • @async-mutex/mutex, a typosquat of async-mute (npm)
  • dexscreener, which masquerades as a library for accessing liquidity pool data from decentralized exchanges (DEXs) and interacting with the DEX Screener platform (npm)
  • solana-transaction-toolkit (npm)
  • solana-stable-web-huks (npm)
  • cschokidar-next, a typosquat of chokidar (npm)
  • achokidar-next, a typosquat of chokidar (npm)
  • achalk-next, a typosquat of chalk (npm)
  • csbchalk-next, a typosquat of chalk (npm)
  • cschalk, a typosquat of chalk (npm)
  • pycord-self, a typosquat of discord.py-self (PyPI)

A supply chain security company named Socket, which identified the malicious packages, reported that the first four packages are intended to capture Solana private keys and send them via Gmail’s Simple Mail Transfer Protocol (SMTP) servers, likely aiming to empty victims’ wallets.

Specifically, the packages known as solana-transaction-toolkit and solana-stable-web-huks are designed to drain the wallet, automatically transferring as much as 98% of its funds to a Solana address controlled by the attacker, all while pretending to provide Solana-specific features.

“Since Gmail is a trusted email service, these data exfiltration attempts are less likely to be detected by firewalls or endpoint detection systems, which recognize smtp.gmail.com as legitimate traffic,” explained security researcher Kirill Boychenko.

Socket also discovered two GitHub repositories created by the threat actors behind solana-transaction-toolkit and solana-stable-web-huks, which claim to offer Solana development tools or scripts for automating common DeFi tasks, but in reality, they import the malicious npm packages from the attackers.

A supply chain security company named Socket, which identified the malicious packages, reported that the first four packages are intended to capture Solana private keys and send them via Gmail's Simple Mail Transfer Protocol (SMTP) servers, likely aiming to empty victims' wallets.Specifically, the packages known as solana-transaction-toolkit and solana-stable-web-huks are designed to drain the wallet, automatically transferring as much as 98% of its funds to a Solana address controlled by the attacker, all while pretending to provide Solana-specific features."Since Gmail is a trusted email service, these data exfiltration attempts are less likely to be detected by firewalls or endpoint detection systems, which recognize smtp.gmail.com as legitimate traffic," explained security researcher Kirill Boychenko.Socket also discovered two GitHub repositories created by the threat actors behind solana-transaction-toolkit and solana-stable-web-huks, which claim to offer Solana development tools or scripts for automating common DeFi tasks, but in reality, they import the malicious npm packages from the attackers.
Hackers are using malicious npm packages to steal Solana wallet keys by exploiting Gmail's SMTP service. 45

The GitHub accounts linked to the repositories “moonshot-wif-hwan” and “Diveinprogramming” are currently inaccessible.

According to Boychenko, “A script found in the threat actor’s GitHub repository, moonshot-wif-hwan/pumpfun-bump-script-bot, is advertised as a trading bot for Raydium, a well-known DEX on Solana. However, it actually imports harmful code from the solana-stable-web-huks package.”

The presence of malicious GitHub repositories highlights the attackers’ efforts to expand their campaign beyond npm, targeting developers who may be looking for Solana-related tools on the Microsoft-owned code hosting platform.

The latest npm packages have escalated their malicious capabilities by adding a “kill switch” feature that can recursively delete all files in specific project directories, and in some instances, exfiltrate environment variables to a remote server.

The fake csbchalk-next package operates just like the typosquatted versions of chokidar, with the only distinction being that it triggers the data deletion process only after receiving the code “202” from the server.

Pycord-self specifically targets Python developers who want to integrate Discord APIs into their projects. It captures Discord authentication tokens and connects to a server controlled by attackers, allowing for persistent backdoor access after installation on both Windows and Linux systems.

This development comes as malicious actors are increasingly targeting Roblox users with fake libraries designed to steal data using open-source malware like Skuld and Blank-Grabber. Last year, Imperva reported that Roblox players searching for game cheats and mods have also fallen victim to fraudulent PyPI packages that deceive them into downloading the same harmful payloads.

Nimesh Dama

Nimesh Dama

Founder and Editor-in-Chief of 'NetFest News,' Nimesh is a cybersecurity analyst, Gadgets review, Tech News, Information Security professional, developer, and a white hat hacker

Next Post
How Trump's Day 1 Order to End Birthright Citizenship Will Affect Indians.

How Trump's Day 1 Order to End Birthright Citizenship Will Affect Indians.

Leave a ReplyCancel reply

Recommended

BGMI 3.7 Update mod (hack) apk is now available for download! Check out the Golden Moon theme, explore the new RONDO map, and get all the details you need to know.

BGMI 3.7 Update mod (hack) apk is now available for download!

15/02/2025
In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

12/02/2025

Trending

BGMI 3.7 Update mod (hack) apk is now available for download! Check out the Golden Moon theme, explore the new RONDO map, and get all the details you need to know.

BGMI 3.7 Update mod (hack) apk is now available for download!

15/02/2025
BGMI Mod Apk Review: Features and Benefits Explained

Installing the BGMI Mod Apk 3.6.0 (ESP, Aimbot, Menu)

29/01/2025
BGMI Cover-Credits:  pxfuel. com

zero recoil sensitivity bgmi code for android

31/12/2024
"Step-by-Step Guide to Installing Kubernetes on Ubuntu 24.04/24.10"

Step-by-Step Guide to Installing Kubernetes on Ubuntu 24.04

28/01/2025
Hackers are using malicious npm packages to steal Solana wallet keys by exploiting Gmail's SMTP service.

Hackers are using malicious npm packages to steal Solana wallet keys by exploiting Gmail’s SMTP service.

20/01/2025
netfest.in logo

We bring you the best Premium Tech News,Review & Penetration Testing News, magazine, personal blog, etc. Check our landing page for details.

Categories

  • Apple
  • Applications
  • Camera
  • Computers
  • Course/Jobs
  • Gaming
  • Gear
  • Laptop
  • Microsoft
  • News
  • Review
  • Security
  • Smartphone
  • Uncategorized

Recent News

BGMI 3.7 Update mod (hack) apk is now available for download! Check out the Golden Moon theme, explore the new RONDO map, and get all the details you need to know.

BGMI 3.7 Update mod (hack) apk is now available for download!

15/02/2025
In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

12/02/2025
  • Trending
  • Comments
  • Latest
BGMI 3.7 Update mod (hack) apk is now available for download! Check out the Golden Moon theme, explore the new RONDO map, and get all the details you need to know.

BGMI 3.7 Update mod (hack) apk is now available for download!

15/02/2025
BGMI Mod Apk Review: Features and Benefits Explained

Installing the BGMI Mod Apk 3.6.0 (ESP, Aimbot, Menu)

29/01/2025
BGMI 3.7 Update mod (hack) apk is now available for download! Check out the Golden Moon theme, explore the new RONDO map, and get all the details you need to know.

BGMI 3.7 Update mod (hack) apk is now available for download!

0
In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

0
BGMI 3.7 Update mod (hack) apk is now available for download! Check out the Golden Moon theme, explore the new RONDO map, and get all the details you need to know.

BGMI 3.7 Update mod (hack) apk is now available for download!

15/02/2025
In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

In their latest cyberattack, North Korean hackers are taking advantage of a PowerShell exploit to hijack devices.

12/02/2025
  • Disclaimer
  • Copyright
  • About Us
  • Privacy Policy for Netfest
  • Contact
  • Advertise

© 2025 JNews - Premium WordPress news & magazine theme by Jegtheme.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • News
  • Review
  • Apple
  • Applications
  • Computers
  • Gaming
  • Gear
    • Laptop
    • Camera
    • Smartphone
  • Microsoft
  • Smartphone

© 2025 JNews - Premium WordPress news & magazine theme by Jegtheme.