Cybercriminals are increasingly targeting cryptocurrency infrastructures and applications through sophisticated attacks on software supply chains. The annual report by ReversingLabs identified 23 crypto-related attacks on open-source software repositories. Most attacks were on npm, a popular repository, with 14 documented campaigns. The attacks ranged from common techniques like typosquatting to more complex methods, demonstrating the growing intricacy of these threats. Security professionals are being urged to strengthen software supply chain security in response.

Android malware ‘Crocodilus’ can take over phones to steal crypto
Cybersecurity firm Threat Fabric has identified a new Android malware, Crocodilus, that tricks users into revealing their cryptocurrency seed phrases. The malware presents an overlay