Scan to download
BTC $77,288.50 +2.78%
ETH $2,427.96 +3.10%
BNB $641.41 +0.99%
XRP $1.49 +1.98%
SOL $89.40 -0.12%
TRX $0.3267 +0.04%
DOGE $0.1002 +0.96%
ADA $0.2617 +0.87%
BCH $454.50 +1.98%
LINK $9.68 +0.78%
HYPE $44.22 +0.79%
AAVE $117.59 +0.37%
SUI $1.01 +1.82%
XLM $0.1743 +4.33%
ZEC $332.29 -3.23%
BTC $77,288.50 +2.78%
ETH $2,427.96 +3.10%
BNB $641.41 +0.99%
XRP $1.49 +1.98%
SOL $89.40 -0.12%
TRX $0.3267 +0.04%
DOGE $0.1002 +0.96%
ADA $0.2617 +0.87%
BCH $454.50 +1.98%
LINK $9.68 +0.78%
HYPE $44.22 +0.79%
AAVE $117.59 +0.37%
SUI $1.01 +1.82%
XLM $0.1743 +4.33%
ZEC $332.29 -3.23%

xpos

Slow Fog: Pay attention to checking for malicious versions of axios and the exposure risk of global installation history for OpenClaw npm

Slow Fog has once again issued a security reminder stating to pay attention to checking for malicious versions of axios and the exposure risk of OpenClaw npm global installation history. [email protected] and [email protected] have been confirmed as malicious versions, both of which have injected the dependency [email protected], delivering cross-platform malicious payloads through the postinstall script.The impact of OpenClaw is assessed based on scenarios: source code builds are not affected, as the locked versions in the lock file are 1.13.5/1.13.6; however, users who installed via npm install -g [email protected] face historical exposure risks due to the presence of optionalDependencies.axios@^1.7.4 in the dependency chain, which may resolve to [email protected] during the time window when the malicious version is still online. Currently, npm has reverted the resolution to [email protected], but environments that were installed during the attack window are still advised to be checked. Slow Fog has provided inspection commands and IoC paths for various platforms; if the plain-crypto-js directory is found, even if the package.json has been cleaned, it should still be regarded as high-risk execution traces. It is recommended that affected hosts immediately rotate credentials and conduct host-side inspections. Previously, Slow Fog founder Yu Xian reminded that OpenClaw version 3.28 may introduce a toxic version of axios, and users need to urgently check.

DJT 15,000 holdings exposed, Metaplanet establishes a target of 100,000, BSTR reserves break through the 30,000 mark

According to BBX data, yesterday global listed companies disclosed several key data points regarding the "geopolitical competition" and "scalable positioning" of crypto reserves:15,000 holdings disclosed: Trump Media (NASDAQ: $DJT) confirmed in a strategic briefing yesterday that its treasury's holding of 15,000 BTC has completed its transformation into a "long-term strategic reserve." The company stated that this asset serves as a financial anchor for building decentralized social and payment infrastructure, with a current market value exceeding $1 billion.Vision for 100,000 coins: Metaplanet (TSE: 3350) confirmed yesterday at its Tokyo headquarters that its holding target by the end of 2026 is 100,000 BTC. As one of the largest corporate holders in Asia, the company plans to fill the current reserve gap through a new round of $250 million equity financing, aiming to achieve a top three global holding position within the year.30,000 reserve milestone: Bitcoin Standard Treasury (NASDAQ: $BSTR) disclosed yesterday that its total holdings have officially surpassed 30,000 BTC. As a representative of "standard-based" financial companies, its BPS (Bitcoin per share) grew by 8.4% month-over-month in March.23.8% annual yield: Semler Scientific (NASDAQ: $SMLR) released its latest treasury efficiency report yesterday, showing that its "Bitcoin Yield" achieved through ATM financing tools since 2026 has risen to 23.8%, far exceeding the spot price increase of BTC during the same period.1,717 holdings confirmed: Nexon (TSE: 3659) confirmed yesterday in its weekly report that its holding of 1,717 BTC remains in a "retail out" state. The company reiterated that it will showcase how it utilizes this reserve to support the economic model of next-generation blockchain games at the developer conference in April.

ZachXBT exposes social media account collaborations promoting cryptocurrency scam projects, with the scale of involvement reaching hundreds of thousands of dollars

On-chain detective ZachXBT disclosed today that a collaborative network consisting of at least 10 accounts is generating traffic on social platform X by creating panic-inducing content related to wars and ultimately directing it to cryptocurrency scam projects.This network acquires accounts with an existing follower base, frequently posts sensational "apocalyptic" content, and amplifies dissemination by having multiple secondary accounts retweet each other, quickly gaining millions of views and significant interactions. Investigations show that these accounts also utilize AI to generate fake personas, such as fabricating an "Asian version of Mario Nawfal" to enhance credibility. After gaining traffic, the relevant accounts promote fake airdrop events or cryptocurrency project scams, including a concentrated promotion of a pump-and-dump project named ORAMAMA on February 22, 2026, which is then no longer mentioned.On-chain data indicates that this operation has brought six-figure profits to the team behind it. Meanwhile, many genuine large accounts inadvertently engage in interactions through comments and retweets, further amplifying the content dissemination effect. ZachXBT warns that this combination model of "traffic farms + AI content + cryptocurrency scams" has become highly mature and is easily replicable. If similar mechanisms are exploited by higher-level organizations, their potential impact will far exceed the realm of financial fraud and may even evolve into a tool for public opinion manipulation.ZachXBT calls for platforms to strengthen regulation, implementing bans and legal accountability for such manipulative behaviors. He also advises users to carefully verify account histories and information sources before engaging in interactions to combat the increasingly rampant phenomenon of false content and "interaction bait."
app_icon
ChainCatcher Building the Web3 world with innovations.