• CONTACT
  • MARKETCAP
  • BLOG
Coin Mela Coin Mela
  • Home
  • News
    • All News
    • Bitcoin
    • Ethereum
    • XRP
    • Altcoins
    • NFT
    • Blockchain
    • Web3
    • DeFi
    • Finance
    • Stocks
    • Company
  • Learn
  • Market
  • Advertise
Reading: Ethereum is Targeted in New Software Supply Chain Attacks via Malicious NPM Packages
Share
  • bitcoinBitcoin(BTC)$70,544.00
  • ethereumEthereum(ETH)$2,061.18
  • tetherTether(USDT)$1.00
  • binancecoinBNB(BNB)$657.49
  • rippleXRP(XRP)$1.45
  • usd-coinUSDC(USDC)$1.00
  • solanaSolana(SOL)$86.75
  • tronTRON(TRX)$0.272433
  • dogecoinDogecoin(DOGE)$0.098530
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.04
CoinMelaCoinMela
Font ResizerAa
  • Home
  • News
  • Learn
  • Market
  • Advertise
Search
  • Home
  • News
    • All News
    • Bitcoin
    • Ethereum
    • XRP
    • Altcoins
    • NFT
    • Blockchain
    • Web3
    • DeFi
    • Finance
    • Stocks
    • Company
  • Learn
  • Market
  • Advertise
Have an existing account? Sign In
Follow US
© Coin Mela Network. All Rights Reserved.
News

Ethereum is Targeted in New Software Supply Chain Attacks via Malicious NPM Packages

News Desk
Last updated: September 4, 2025 7:21 am
News Desk
Published: September 4, 2025
Share
c680f66195c34bc3c9fd0674baef5211b8a010aa 1920x1080

Researchers from ReversingLabs have recently identified a new method of software supply chain attacks targeting the Ethereum ecosystem. Their investigation revealed that two malicious packages, known as “colortoolsv2” and “mimelib2,” were uploaded to the Node Package Manager (NPM) repository in July. NPM, widely regarded as the largest software registry, allows developers to access and share code that powers millions of software applications.

At first glance, these packages appeared to be harmless utilities. However, they contained hidden functionality that utilized Ethereum smart contracts to obtain URLs directing compromised systems to download additional malicious payloads. By embedding these malicious commands within the smart contracts, attackers were able to mask their activities as legitimate blockchain interactions, complicating detection efforts.

Lucija Valentić, a researcher at ReversingLabs, pointed out that this tactic represents a notable evolution in the strategies employed by malicious actors. She commented, “This is something we haven’t seen previously,” highlighting how quickly attackers are adapting their techniques to evade detection mechanisms, particularly in open-source repositories.

The approach showcases a significant shift in the attack playbook. Previously, cybercriminals have utilized established platforms such as GitHub Gists, Google Drive, or OneDrive to host malicious links. The transition to Ethereum smart contracts signifies a unique spin on the established tactic, incorporating elements of the cryptocurrency world into supply chain vulnerabilities.

This incident is part of a wider trend in the cybersecurity landscape. ReversingLabs also discovered that these malicious packages were linked to counterfeit GitHub repositories that masqueraded as cryptocurrency trading bots. These repositories were artificially enhanced with phony commits, fake user profiles, and skewed star ratings to appear legitimate, luring unsuspecting developers.

Developers who inadvertently integrated this corrupted code risked enabling malware within their systems without their knowledge. Supply chain vulnerabilities in open-source crypto tools are not entirely new; last year alone, researchers reported over 20 malicious campaigns targeting developers through platforms like npm and PyPI. Many of these attacks were designed to steal wallet credentials or install crypto-mining malware.

The current findings underscore an important lesson for developers: popular commits or active maintainers can be fabricated, and seemingly innocuous packages may harbor hidden threats. As attackers continue to innovate, vigilance and scrutiny are essential to safeguard against potential supply chain exploits in the rapidly evolving crypto landscape.

Hormel Foods Recalls 4.9 Million Pounds of Chicken Products Due to Metal Contamination
Kraken Secures $200 Million Investment from Citadel Securities, Valuing Company at $20 Billion
Ray Dalio Warns U.S. Debt Crisis Could Elevate Gold and Non-Fiat Currencies
Allied Gaming & Entertainment Makes Initial Investment in Bitcoin and Ethereum as Part of New Corporate Treasury Strategy
Emily in Paris Season 5 to Premiere on Netflix December 18
Share This Article
Facebook Whatsapp Whatsapp
ByNews Desk
Follow:
CoinMela News Desk brings you the latest updates, insights, and in-depth coverage from the world of cryptocurrencies, blockchain, and digital finance.
Previous Article 4225783b5939572ae5bf2e14c24d4ec92b53083a 7008x4672 Bitcoin Surges to New All-Time High of Over $124,000 Amid Institutional Adoption
Next Article Public Figures Jerome Powell 1 Large Altcoins Maintain Market Strength as Bitcoin Dominance Declines Below 60%
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular News
GettyImages 2247341381 e1770403341406
Bitcoin Experiences Wild Price Swings Amid Broader Market Volatility
2025 05 16T173835Z 1618437938 RC2BI6A3U8NB RTRMADP 3 FINTECH CRYPTO GALAXY DIGITAL 1024x683
Bitcoin Price Drops 11% Amid Concerns Over Regulation and Market Sentiment
ChatGPT Image Jul 1 2025 05 15 26 PM 1
Important Disclaimers About FXEmpire Content
- Advertisement -
Ad image

Follow Us on Socials

We use social media to react to breaking news, update supporters and share information

Twitter Youtube Telegram Linkedin
Coin Mela Coin Mela
CoinMela is your one-stop destination for everything Crypto, Web3, and DeFi news.
  • About Us
  • Contact Us
  • Corrections
  • Terms and Conditions
  • Disclaimer
  • Privacy Policy
  • Advertise with Us
  • Quick Links
  • Finance
  • News
  • Company
  • Stocks
  • Bitcoin
  • XRP
  • Ethereum
  • Altcoins
  • Blockchain
  • DeFi
© Coin Mela Network. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?