#黑客攻击与安全风险 Just saw the security alert released by SlowMist, and a new attack variant has appeared in the NPM supply chain... Honestly, it's a bit alarming 😅 Shai-Hulud 3.0? Just hearing the name sounds very dangerous.
Although I am still a beginner, this message made me realize that security issues are really not just concerns for the big players. It is said that this wave of attacks can steal developer credentials and cloud keys, and even the API Key leak of Trust Wallet might be related to previous variants...
I want to ask all the seniors here, as an ordinary user, how should we defend ourselves? Should we: - Avoid downloading packages from unknown sources? - Regularly check wallet security? - Pay attention to official security announcements?
It seems that after entering the crypto space, there is a lot of security knowledge to learn, from private key management to supply chain security... But because of this, sharing information and reminding each other is even more important. Has anyone experienced similar risks or scares? Can you share how you dealt with them?
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
#黑客攻击与安全风险 Just saw the security alert released by SlowMist, and a new attack variant has appeared in the NPM supply chain... Honestly, it's a bit alarming 😅 Shai-Hulud 3.0? Just hearing the name sounds very dangerous.
Although I am still a beginner, this message made me realize that security issues are really not just concerns for the big players. It is said that this wave of attacks can steal developer credentials and cloud keys, and even the API Key leak of Trust Wallet might be related to previous variants...
I want to ask all the seniors here, as an ordinary user, how should we defend ourselves? Should we:
- Avoid downloading packages from unknown sources?
- Regularly check wallet security?
- Pay attention to official security announcements?
It seems that after entering the crypto space, there is a lot of security knowledge to learn, from private key management to supply chain security... But because of this, sharing information and reminding each other is even more important. Has anyone experienced similar risks or scares? Can you share how you dealt with them?