• Coinbase data leak could put users in physical…
  • Genesis files dual lawsuits to claw back $3.3B…
  • Russia’s ‘Kraken’ Darknet Market Crypto Sales Soar 68%…
  • Bitcoin options data suggest spike in volatility despite…
  • Coinbase data leak could put users in physical…
  • Genesis files dual lawsuits to claw back $3.3B…
  • Russia’s ‘Kraken’ Darknet Market Crypto Sales Soar 68%…
  • Bitcoin options data suggest spike in volatility despite…
  • Coinbase data leak could put users in physical…
  • Genesis files dual lawsuits to claw back $3.3B…
  • Russia’s ‘Kraken’ Darknet Market Crypto Sales Soar 68%…
  • Bitcoin options data suggest spike in volatility despite…
Lets Talk Web3 Your trusted source for all things Web3
  • Latest Post
    • Bitcoin News
    • Ethereum News
    • Altcoin News
    • Blockchain News
  • About Us
  • AI News
  • Press Release
  • NFT News
  • Market Analysis
☰
Lets Talk Web3

We also offer the following services:

👉Global Media Coverage: We secure top-tier media placements worldwide. Need specific media houses? Let’s discuss your targets.
👉Content Strategies & Management: From crafting compelling narratives to managing your content, we ensure your message resonates.
👉Shilling Services: Drive constant visibility with strategic Twitter and Binance Square posts.
👉Organic Engagement Boosters: Amplify your presence on Twitter and Telegram with authentic, organic engagement.
👉Exchange Listings: We facilitate smooth and strategic exchange listings to help you reach the right markets.
👉Performance Marketing: Target Web3-focused websites with precision marketing that delivers results.
👉KOL (Key Opinion Leader) Partnerships: With connections to over 5,000 KOLs across various platforms, we can craft a strategy that suits your audience and goals.

Block a time here- https://lnkd.in/g7iCgq_b or email at Contact@letstalkweb3.com

Crypto Mining Malware and Open Source Malware Packages Doubled in Q1 2025

Nitin Gupta - Blockchain - April 2, 2025
📈
Nitin Gupta Founder of LetsTalkWeb3.com, a full fledged media house for everything Web3.…
9 views 4 mins 0 Comments


The amount of crypto mining malware has doubled in the first quarter of 2025 relative to the quarter prior, according to a new quarterly malware report from software security platform Sonatype.

Notably, of nearly 18,000 malicious packages found in Q1 of this year, 7% were crypto mining malware.

The report highlights that this is double from 3.5% that the sector had recorded in the fourth quarter of 2024.

The increase shows that “resource-hijacking attacks are still prevalent in open source ecosystems,” the researchers say.

Open source malware isn’t slowing down. It’s getting smarter. Sonatype’s Open Source Malware Index Q1 2025 reveals a sharp rise in data exfiltration attacks targeting developers — and the stakes are only getting higher. 17,954 new malicious packages identified📤 56% of them… pic.twitter.com/DbRrWZazKb

— Sonatype (@sonatype) April 2, 2025

In total, from 1 January through 31 March, Sonatype found 17,954 pieces of open source malware. This is more than double compared to the first quarter of 2024.

At the same time, compared to Q4 2024, this represents a decrease from over 34,000 malicious packages. “This is largely due to the marked decrease in security holdings packages,” researchers say.

The researchers describe open source software security as “a bedrock for crypto engineers and software developers,” so the doubling in malware packages between Q1 2024 and Q1 2025 is “a worrying, deteriorating trend.”

You might also like
Gov’t Servers in South Korean City ‘Infected with Crypto Mining Malware’

Blockchain and Crypto Mining Malware Are ‘Particularly Insidious’

Sonatype researchers discovered a number of major campaigns. Per the report, these include hijacked npm crypto packages, a counterfeit Truffle for VS Code package, and a group of packages targeting Solana developers.

The report describes a coordinated attack whereby bad actors hijacked several crypto-related npm packages and republished them with malicious payloads. They use these to steal sensitive information.

“What makes this campaign particularly insidious is the attackers’ strategic focus on packages used in cryptocurrency and blockchain development, where credentials and secrets are often highly valuable,” researchers write.

In a separate software supply chain attack, npm packages containing Windows-based trojans targeted Solana developers. They were downloaded over 1,900 times.

The researchers commented that “this incident underscores the persistent threats within open source, particularly targeting the cryptocurrency development community.”

Source: Sonatype

Meanwhile, Brian Fox, co-founder and CTO of Sonatype, notes that the company has seen an increase in more sophisticated types of open source malware. These innovative attacks have to be blocked before the malware enters the development environment. If it enters the repository, it’s too late.

80% of discovered packages in Q1 were made up of more sophisticated and threatening types of malware, such as droppers and code injection malware, says the report.

Furthermore, the researchers found that 56% of the discovered malware (an increase from 26% in Q4 2024) was related to data exfiltration. It harvests sensitive information from infected systems.

Also, Sonatype helped block more than 20,000 open source malware attacks in Q1 2025. This included 66% at financial services companies, 14% at government organizations, and 7% in the utilities, oil, and gas sector.

“The data shows a meaningful change in how ecosystem maintainers are taking action against harmful components, but it also reflects the growing sophistication of threat actors,” Fox warned.

You might also like
Russian Ministry: Fraudsters Using Citizens’ Smart Home Devices to Mine Crypto

The post Crypto Mining Malware and Open Source Malware Packages Doubled in Q1 2025 appeared first on Cryptonews.





Source link

TAGS:
PREVIOUS
‘Liberation Day’ will be an ‘atomic bomb’ for crypto: pro
NEXT
SMBC, Ava Labs, Fireblocks sign MoU for stablecoin framework in Japan
Related Post
🔴
March 27, 2025
Crypto Trading Platform eToro Files for Nasdaq IPO
Scottish Police Report 2,000% Surge in Crypto-Related Crimes Since 2019
April 4, 2025
Scottish Police Report 2,000% Surge in Crypto-Related Crimes Since 2019
✅
May 9, 2025
SPACE ID and Floki Upgrade Web3 Identity: .floki Domains Become Verified On-Chain Profiles
US CFTC Withdraws Two Crypto Staff Advisories Due to ‘Market Maturity’
April 3, 2025
US CFTC Withdraws Two Crypto Staff Advisories Due to ‘Market Maturity’
Comments are closed.

With a global network of contributors, LetsTalkWeb3 is committed to providing high-quality content that serves both newcomers and seasoned professionals. Whether you’re an investor, developer, or simply curious about the future of the internet, LetsTalkWeb3 is your trusted source for all things Web3

Scroll To Top
  • Home
  • About Us
  • AI News
  • Press Release
  • NFT News
  • Market Analysis
© Copyright 2025 - Lets Talk Web3 . All Rights Reserved
bitcoin
Bitcoin (BTC) $ 105,181.18
ethereum
Ethereum (ETH) $ 2,516.13
tether
Tether (USDT) $ 1.00
xrp
XRP (XRP) $ 2.35
bnb
BNB (BNB) $ 646.27
solana
Solana (SOL) $ 166.64
usd-coin
USDC (USDC) $ 1.00
dogecoin
Dogecoin (DOGE) $ 0.220755
cardano
Cardano (ADA) $ 0.729206
tron
TRON (TRX) $ 0.272597
bitcoin
Bitcoin (BTC) $ 105,181.18
ethereum
Ethereum (ETH) $ 2,516.13
tether
Tether (USDT) $ 1.00
xrp
XRP (XRP) $ 2.35
bnb
BNB (BNB) $ 646.27
solana
Solana (SOL) $ 166.64
usd-coin
USDC (USDC) $ 1.00
dogecoin
Dogecoin (DOGE) $ 0.220755
cardano
Cardano (ADA) $ 0.729206
tron
TRON (TRX) $ 0.272597