TrapDoor supply Chain attack hits PyPI, NPM, and crates.io
The TrapDoor supply chain attack was discovered on PyPI, npm, and crates.io, using malicious packages to steal cryptocurrency from developers. The trojanized libraries exfiltrate wallet credentials and sensitive data, exploiting trust in open-source registries.