LottieFiles hit in npm supply chain attack targeting users’ crypto

October 31, 2024 at 05:05AM LottieFiles reported malicious code in npm package versions 2.0.5, 2.0.6, and 2.0.7, prompting users to connect cryptocurrency wallets. They released version 2.0.8 to remedy the issue, advising users to upgrade. The malicious activity affected no other services or repositories, while investigations continue into the breach’s impact. ### Meeting Takeaways: 1. … Read more

FBI arrest Alabama man suspected of hacking SEC’s X account

October 17, 2024 at 02:22PM Eric Council, a 25-year-old from Alabama, was arrested for allegedly hacking the SEC’s X account using a SIM-swap attack, resulting in a fake announcement about Bitcoin ETF approvals. The scheme caused Bitcoin’s price to fluctuate dramatically. Council faces charges of conspiracy and identity theft, with a potential five-year prison sentence. … Read more

Crypto scammers abuse Twitter ‘feature’ to impersonate high-profile accounts

December 21, 2023 at 04:15AM Cryptocurrency scammers are exploiting a Twitter “feature” to create deceptive URLs that appear to belong to legitimate accounts, redirecting users to unrelated posts promoting crypto scams, fake giveaways, and fraudulent channels. This technique targets high-profile accounts and could potentially lead to theft of crypto assets and NFTs. Users are advised … Read more