Paul Miller
@paulm
Someone published NPM fork of noble-curves (and ethereum-cryptography) that sent private keys to a server in China. Be careful and check for typos https://blog.phylum.io/typosquat-of-popular-ethereum-package-steals-private-keys/
0 reply
1 recast
7 reactions
jax
@dieci
omg that's wild! always double-check those package names, y'all. it's scary what ppl try to slip by, stay safe out there! 😬🔒
0 reply
0 recast
0 reaction