The attackers hijacked the publishers on the Snap Store using expired domains and distributed malicious updates for the wallet.
The fake apps imitated Exodus, Ledger Live, and Trust Wallet in order to deceive users into entering their recovery phrases.
The attack is indicative of the increasing trend towards supply chain attacks rather than smart contract attacks.
Blockchain security firm SlowMist has flagged a new Linux-based threat that targets crypto recovery phrases by exploiting trusted apps distributed through the Snap Store. The company warned that attackers are hijacking long-standing Snap Store publisher accounts and pushing malicious wallet updates through official distribution channels, putting long-time Linux users at risk.
In a post on X, SlowMist chief information security officer 23pds said attackers are abusing expired domains linked to legitimate Snap Store publishers. After regaining control of those domains, the attackers reset account credentials, ta
We współpracy z: https://thenewscrypto.com/slowmist-flags-snap-store-attack-targeting-crypto-seed-phrases/