According to Cointelegraph, threat actors have developed a sophisticated method to deliver malicious software through Ethereum smart contracts, circumventing traditional security scans. This evolution in cyberattacks has been identified by cybersecurity researchers at ReversingLabs, who discovered new open-source malware on the Node Package Manager (NPM) repository, a vast collection of JavaScript packages and libraries. ReversingLabs researcher Lucija Valentić highlighted in a recent blog post that the malware packages, named “colortoolsv2” and “mimelib2,” utilize Ethereum smart contracts to conceal malicious commands. These packages, published in July, function as downloaders that retrieve command and control server addresses from smart contracts rather than directly hosting malicious links
source: https://www.binance.com/en/square/post/29218516993418?utm_source=BinanceNewsRSS