read.cash Log in
@cryptotalk96 more from that month

Thanks to @KamHus for reporting this one! Here's the thread on twitter: https://twitter.com/stephenlacy/status/1554697077430505473 There are code repositories on Github that had made updates(unverified yet deployed?) and these were tucked away by being archived. Some even appeared to be published by the git repo author(s). -- These updates contained malicious calls to the web (a .ru domain), sending over private code contained in ENV files. For people running servers or private projects using these modules, they essentially had a backdoor that let the thief grab their private keys. Github has been prompt in deleting some of these 'updates' to various repos. #github #repos #privatekeys #solanatheft #eththeft #8/1/22theft

No comments yet

Log in to join in Reading is open to everyone. Replying needs an account.