Scan to download
BTC $60,015.23 -0.26%
ETH $1,581.39 +0.57%
BNB $555.13 -0.49%
XRP $1.05 +0.49%
SOL $72.98 +3.18%
TRX $0.3215 -0.20%
DOGE $0.0733 -1.11%
ADA $0.1452 +0.14%
BCH $194.25 +0.17%
LINK $7.34 +0.70%
HYPE $62.60 +0.83%
AAVE $94.20 +0.01%
SUI $0.6913 +1.24%
XLM $0.1737 +0.28%
ZEC $383.14 -3.80%
BTC $60,015.23 -0.26%
ETH $1,581.39 +0.57%
BNB $555.13 -0.49%
XRP $1.05 +0.49%
SOL $72.98 +3.18%
TRX $0.3215 -0.20%
DOGE $0.0733 -1.11%
ADA $0.1452 +0.14%
BCH $194.25 +0.17%
LINK $7.34 +0.70%
HYPE $62.60 +0.83%
AAVE $94.20 +0.01%
SUI $0.6913 +1.24%
XLM $0.1737 +0.28%
ZEC $383.14 -3.80%

attacks

All
Article
Flash

Slow Fog: Red Hat cloud service npm package suffers from active supply chain attacks, with stolen credentials found in over 300 GitHub repositories

SlowMist has issued a security alert, detecting an active npm supply chain attack targeting @redhat-cloud-services related packages. Currently, over 31 packages have been confirmed affected, with a weekly download volume of approximately 116,000 times, and stolen credentials exist in more than 300 GitHub repositories. This attack method is highly similar to the previous "Shai-Hulud" npm attack, including credential theft, creation of malicious repositories, and automated secret leakage. New suspicious repositories continue to emerge, indicating that the attack is still ongoing, and developers are still being continuously infected.Potential harms include: theft of GitHub/npm tokens, leakage of AWS/GCP/Azure cloud credentials, collection of SSH keys and Kubernetes secrets, leakage of local environment and wallet data, creation of malicious repositories and persistence operations, and even potentially destructive actions after tokens are revoked. It is recommended to immediately remove or downgrade affected @redhat-cloud-services package versions, conduct a comprehensive audit of CI/CD workflows and dependency installations, rotate all GitHub, npm, cloud service, SSH, and wallet-related keys, retain logs, and rebuild exposed developer machines or Runners from clean images while maintaining a high level of vigilance.

CertiK: Surge in crypto "wrench attacks" in 2026, Europe becomes a hard-hit area, with France being particularly prominent

According to a report by The Block, the crypto security firm CertiK released a report today indicating that in the first four months of 2026, there have been 34 confirmed cases of crypto "ransom attacks" globally (i.e., offline physical assaults and extortion targeting crypto asset holders), an increase of 41% compared to the same period in 2025, with total losses for victims amounting to approximately $101 million. If the trend continues, the total number of incidents for the year is expected to reach around 130, with losses potentially soaring to hundreds of millions of dollars.In terms of geographical distribution, out of the 34 incidents, 28 (82%) occurred in Europe, with France being particularly notable, having recorded 24 incidents in just the first four months of 2026, surpassing the total of 20 incidents for the entire year of 2025. CertiK attributes this to France's hosting of flagship crypto companies like Ledger and Binance, frequent data breaches, and a prevalent culture of "showing off wealth and doxxing" within the community. In contrast, the number of reported incidents in the United States dropped from 9 in 2025 to 3 in the first quarter, while Asia saw a decrease from 25 to 2.Regarding attack patterns, CertiK pointed out that criminal groups have shifted to a "data-driven targeting" model, reducing the need for on-site reconnaissance by purchasing victims' names, addresses, and asset information from data intermediaries. This year, over half of the incidents involved threats or direct harm to victims' family members (spouses, children, elderly parents) as a means of exerting pressure. In terms of execution, small groups of 3 to 5 individuals typically operate through
app_icon
ChainCatcher Building the Web3 world with innovations.