Connect with us

Hi, what are you looking for?

Hackers malware ethereum smart contacts
Hackers malware ethereum smart contacts

Business

Hackers Hide Malware in NPM Packages by Using Ethereum Smart Contracts

Hackers have found a new way to bypass security using malware hidden in Ethereum smart contracts. According to researchers at ReversingLabs, malicious NPM packages were found to contain hard-coded commands that leverage blockchain for obfuscation.

The Cybersecurity Threat of Ethereum Smart Contract Malware

Hackers are getting clever. They’ve found a way to deliver malware payloads using Ethereum smart contracts, staying under the radar of traditional antivirus software.

As per a ReversingLabs report, two malicious packages – colortoolsv2 and mimelib2 – were uploaded to the Node Package Manager (NPM), one of the largest open-source JavaScript repositories.

The packages did not directly host malicious links but instead acted as downloaders that fetched C2 (Command-and-Control) servers from Ethereum smart contracts. Once installed, the packages queried the blockchain for URLs, then downloaded a second-stage malware that executed harmful actions.

Because blockchain traffic blends into normal network patterns, compared to typical malware communication, detection becomes extremely difficult.


Not the First Time — But a Dangerous Twist

Previously, hackers such as Lazarus Group disguised themselves as founders of popular smart contract projects. What’s new here is the misuse of Ethereum smart contracts to store malicious URLs.

Lucija Valentić, researcher at ReversingLabs, explains that smart contracts have never before been exploited this way, showing how rapidly threat actors are evolving their approaches to evade detection.

Also Read : Metaplanet’s Bitcoin Dream Shaken as Stock Crashes 54%, Fundraising Model in Jeopardy


Elaborate Social Engineering Campaign on GitHub

The attack went beyond malware injection. According to researchers, a large-scale deception campaign is ongoing on GitHub, with fake repositories designed to impersonate real crypto trading bots.

Hackers fabricated:

  • Fake commits
  • Multiple “maintainer” accounts
  • Professional-looking documentation

All designed to trick developers into trusting and downloading the malware.


Attacks on Open-Source Repositories Are Growing

So far in 2024, 23 malware campaigns have been identified on open-source platforms, according to ReversingLabs. This incident shows how blockchain combined with social engineering makes cyberattacks stealthier.

The threat isn’t limited to Ethereum. Earlier this year:

  • A scam GitHub repo mimicking a Solana trading bot spread wallet-stealing malware.
  • Hackers misused Bitcoinlib, a Python library for Bitcoin development, to distribute malicious code.

The Takeaway

As criminal hackers increasingly target open-source repositories, developers must be more cautious than ever. The combination of malware, social engineering, and blockchain technology highlights the evolving nature of cyber threats.

author avatar
June
June is a sharp-eyed journalist at 4Cby360, blending a passion for global finance and emerging tech with a knack for clear, insightful storytelling. From crypto trends to market shifts, June delivers unbiased, well-researched news that keeps readers informed and ahead of the curve.
Advertisement

You May Also Like

Cryptocurrency

California Governor Gavin Newsom is mocking Donald Trump with plans to create a ‘Trump Corruption Coin’. It is a satirical memecoin designed to highlight...

Cryptocurrency

RAK Properties, one of the leading real estate developers in Ras Al Khaimah, is now accepting Bitcoin (BTC), Ethereum (ETH), and Tether (USDT) for...

Business

Japan’s “brave” Bitcoin buyer Metaplanet is in deep water. Since June, its stock fell by 54% which makes the firm’s plan to construct one...

Cryptocurrency

Lee Eok-won, nominee for South Korea’s top financial regulator, has branded cryptocurrency as having “no intrinsic value,” fueling backlash from the nation’s booming digital...

polkadot
Polkadot (DOT) $ 3.79 0.37%
bitcoin
Bitcoin (BTC) $ 111,582.00 0.80%
ethereum
Ethereum (ETH) $ 4,338.87 0.95%
cardano
Cardano (ADA) $ 0.817586 0.12%
xrp
XRP (XRP) $ 2.81 0.71%
stellar
Stellar (XLM) $ 0.358858 0.16%
litecoin
Litecoin (LTC) $ 111.96 0.66%