{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreidaavzqus57g65nuzbszsb5jkrrpzko3iwhy6fferx32rx3q267xi",
"uri": "at://did:plc:6wtxqaikjf62unmnajbfbq5v/app.bsky.feed.post/3mi26mohez7x2"
},
"coverImage": {
"$type": "blob",
"ref": {
"$link": "bafkreiaseixf5rlgaizpjqnvhwxo4pgvpcjesnag4hmwlf3faganzpmpky"
},
"mimeType": "image/webp",
"size": 15476
},
"path": "/malicious-npm-packages-stole-crypto-wallet-keys-and-sent-them-to-telegram-putting-solana-and-ethereum-developers-at-risk/",
"publishedAt": "2026-03-27T09:54:34.000Z",
"site": "https://vpncentral.com",
"tags": [
"News",
"Malicious npm packages stole crypto wallet keys and sent them to Telegram, putting Solana and Ethereum developers at risk",
"VPN Central"
],
"textContent": "Security researchers have identified five malicious npm packages that target cryptocurrency developers and steal private wallet keys. Socket says the packages were published under the npm account galedonovan and were designed to look like legitimate libraries used in Solana and Ethereum development. The campaign matters because the packages do not visibly break the victim’s code. […]\n\nThe post Malicious npm packages stole crypto wallet keys and sent them to Telegram, putting Solana and Ethereum developers at risk appeared first on VPN Central.",
"title": "Malicious npm packages stole crypto wallet keys and sent them to Telegram, putting Solana and Ethereum developers at risk"
}