• CONTACT
  • MARKETCAP
  • BLOG
Coin Mela Coin Mela
  • Home
  • News
    • All News
    • Bitcoin
    • Ethereum
    • XRP
    • Altcoins
    • NFT
    • Blockchain
    • Web3
    • DeFi
    • Finance
    • Stocks
    • Company
  • Learn
  • Market
  • Advertise
Reading: Researchers Uncover NPM Packages Using Blockchain to Deliver Malware
Share
  • bitcoinBitcoin(BTC)$72,992.00
  • ethereumEthereum(ETH)$2,139.96
  • tetherTether(USDT)$1.00
  • binancecoinBNB(BNB)$695.40
  • rippleXRP(XRP)$1.51
  • usd-coinUSDC(USDC)$1.00
  • solanaSolana(SOL)$91.96
  • tronTRON(TRX)$0.282792
  • staked-etherLido Staked Ether(STETH)$2,260.93
  • dogecoinDogecoin(DOGE)$0.103714
CoinMelaCoinMela
Font ResizerAa
  • Home
  • News
  • Learn
  • Market
  • Advertise
Search
  • Home
  • News
    • All News
    • Bitcoin
    • Ethereum
    • XRP
    • Altcoins
    • NFT
    • Blockchain
    • Web3
    • DeFi
    • Finance
    • Stocks
    • Company
  • Learn
  • Market
  • Advertise
Have an existing account? Sign In
Follow US
© Coin Mela Network. All Rights Reserved.
Ethereum

Researchers Uncover NPM Packages Using Blockchain to Deliver Malware

News Desk
Last updated: September 4, 2025 11:50 am
News Desk
Published: September 4, 2025
Share
ethereum 3660218 1280

Cybersecurity experts have identified a sophisticated method employed by hackers to deliver malware through the use of compromised NPM packages, which harness blockchain queries to disguise malicious URLs as part of legitimate traffic. The discovery, made by ReversingLabs, focuses on two specific NPM packages—‘colortoolsv2’ and ‘mimelib2’—that were uploaded to the widely used Node Package Manager repository in July.

These packages exploit the capabilities of Ethereum smart contracts to fetch URLs leading to downloader malware. By embedding command and control addresses within the blockchain traffic, attackers successfully circumvent traditional security scans, making their malicious activities appear as benign transactions.

This development is part of a larger deception campaign. The attackers have created fake GitHub repositories that masquerade as cryptocurrency trading bots, complete with counterfeit commits, fabricated user accounts, and professional-looking documentation. This strategy is designed to lure unsuspecting developers into using their compromised software.

The trend is a concerning one, as experts have noted that similar campaigns have extended to include targets within Solana and Bitcoin-related libraries, indicating a broader evolution in cyber threats. The implications of these findings raise important questions regarding the security of software development ecosystems and the need for vigilant practices among developers.

XRP Could Reach $300 If Ethereum Hits $25,000, Says Analyst
Ethereum Faces Pressure as Funding Rates Turn Negative Amid ETF Outflows
Ethereum and XRP Struggle as Investors Turn to Digitap Presale for 50x Gains
Ethereum Developers Set Launch Date for Fusaka Hard Fork in December
Market Pundit Predicts Major Altcoin Rallies for XRP and Ethereum
Share This Article
Facebook Whatsapp Whatsapp
ByNews Desk
Follow:
CoinMela News Desk brings you the latest updates, insights, and in-depth coverage from the world of cryptocurrencies, blockchain, and digital finance.
Previous Article 46bc364ae9db695cf12080a24a697f2e.webp Datavault AI Inc. Recognized in Forbes for Pioneering AI and Web3 Integration
Next Article xrp defi flare partnership secure on chain yield cropped.webp Can XRP Replace SWIFT in Global Payments?
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular News
IREN Limited
IREN Ltd’s Earnings Will Determine Its Future as a Cloud Contender or Bitcoin Miner
urlhttps3A2F2Fcdn.content.foolcdn.com2Fimages2F1umn9qeh2Fproduction2F07927cc2a2426d9035d6aa
iShares Bitcoin Trust vs. Fidelity Wise Origin: Which Spot Bitcoin ETF is Better?
Crypto.com OG
Crypto.com Launches OG, a New Prediction Market Platform with Leveraged Trading and Global Expansion Plans
- Advertisement -
Ad image

Follow Us on Socials

We use social media to react to breaking news, update supporters and share information

Twitter Youtube Telegram Linkedin
Coin Mela Coin Mela
CoinMela is your one-stop destination for everything Crypto, Web3, and DeFi news.
  • About Us
  • Contact Us
  • Corrections
  • Terms and Conditions
  • Disclaimer
  • Privacy Policy
  • Advertise with Us
  • Quick Links
  • Finance
  • News
  • Company
  • Stocks
  • Bitcoin
  • XRP
  • Ethereum
  • Altcoins
  • Blockchain
  • DeFi
© Coin Mela Network. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?