Friendly reminder for Bitcoin builders:
Not every “Bitcoin” npm package is your friend.
Researchers found NodeCordRAT in fake libs, stealing creds + wallet data and phoning home via Discord.
Audit early. Audit often.


The Hacker News
Researchers Uncover NodeCordRAT Hidden in npm Bitcoin-Themed Packages
Security researchers found 3 npm packages that installed NodeCordRAT malware, stealing browser data, crypto wallet secrets & tokens using Discord C2.