Ethereum developers are being targeted by malicious npm packages that impersonate Hardhat plugins to steal private keys and sensitive data. Socket researchers reported the ongoing attack, stating that twenty such packages have been identified, amassing over a thousand downloads. The attackers mimic legitimate package names to trick developers into using them, resulting in potential backdoors in production systems and loss of funds.

Man who stole 2 gold bars from Colorado woman in malware scam sentenced to 6 years in prison
Sagar Patel, 27, has been sentenced to six years in prison by a Colorado judge for stealing two gold bars from a 79-year-old woman. She