Compromised dYdX npm and PyPI packages delivered wallet-stealing malware and a RAT via poisoned updates in a software supply chain attack.
Open source packages published on the npm and PyPI repositories were laced with code that stole wallet credentials from dYdX ...
If you have accounts on any of these services, now's a good time to check your security settings. Plus more from a busy week ...
Malwarebytes now has a ChatGPT plugin that can give you instant advice on suspicious links, emails, and texts. I tried it out ...