You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
wallet keys
About this tag
The tag wallet keys on WindowsForum.com covers a specific supply-chain malware campaign dubbed Solana-Scan, in which malicious npm packages target Solana ecosystem developers. These packages are designed to steal wallet keyfiles, developer credentials, and other sensitive artifacts from infected machines. The attacks exploit the npm install process to run arbitrary code with developer privileges, harvesting local keyfiles and exposing stolen data through a command-and-control portal. Discussions highlight the heavy obfuscation and social engineering tactics used, emphasizing the risks for development teams working with cryptocurrency or blockchain technologies. The tag focuses on this targeted infostealer threat and its implications for developer security.
Security researchers have uncovered a targeted supply‑chain campaign — dubbed “Solana‑Scan” — in which malicious npm packages masquerading as Solana SDK utilities are being used to harvest developer credentials, wallet keyfiles and other high‑value artifacts from developer machines. Background /...
A cluster of malicious npm packages — cataloged by researchers as a targeted infostealer campaign dubbed “Solana‑Scan” — has been used to lure Solana ecosystem developers into installing backdoored SDKs that harvest wallet credentials, local keyfiles and a broad sweep of developer artifacts...