Atomic, Exodus wallets targeted in new cybersecurity exploit
Users of the Atomic and Exodus wallets are being targeted by threat actors uploading malicious software packages to online coding repositories to steal crypto private keys in the latest cybersecurity threat identified by...
Archive context
Older archive item. Useful for background and entity history, but not a fresh market-moving signal.
Users of the Atomic and Exodus wallets are being targeted by threat actors uploading malicious software packages to online coding repositories to steal crypto private keys in the latest cybersecurity threat identified by security professionals.
According to cybersecurity researchers at ReversingLabs, the exploit works by hiding malicious code in seemingly legitimate npm software packages, which are pre-built bundles of code widely used by software developers.
These malicious software packages target locally installed Atomic Wallet and Exodus Wallet files by installing a patch that overwrites the files to compromise the user interface and fool the unsuspecting victim into sending crypto to scam addresses.
Software supply chain attacks are an emerging threat vector targeting crypto holders as the industry continues to play a cat-and-mouse game with hackers attempting to steal user funds using increasingly sophisticated methods to avoid detection.
The malicious code contained in the pdf-to-office package. Source: ReversingLabs
Related: $2B lost to crypto hacks in Q1 2025, $1.63B from access control flaws
Hackers target crypto community in increasingly sophisticated attacksAccording to cybersecurity firm Hacken, crypto hacks and exploits cost the industry roughly $2 billion in losses during Q1 2025, most of which came from the $1.4 billion Bybit hack in February.
The SafeWallet developer released a post-mortem update in March 2025 outlining a forensic analysis of the single biggest hack in crypto history.
SafeWallet's analysis ultimately found that a Safe developer's computer was compromised by hackers who hijacked the developer's Amazon Web Services session tokens to access the firm's development environment and set up the Bybit attack.
Jameson Lopp, a cypherpunk and chief security officer at Bitcoin (BTC) custody company Casa, recently sounded the alarm on BTC address poisoning attacks.
A breakdown of the losses caused by crypto hacks and exploits in Q1 2025. Source: Hacken
Address poisoning attacks target victims by generating destination addresses that match the first four and the last four characters of an address from the victim's transaction history.
The threat actor then sends a transaction from the malicious address for a small amount, typically below one dollar, to the target so that the address will show up in a victim's transaction history.
If the victim is not paying attention by carefully examining the entire address, they may mistakenly send funds to the malicious address, which closely resembles the destination.
Cybersecurity firm Cyvers estimates that address poisoning attacks were responsible for $1.2 million in stolen funds in March 2025 alone.
Magazine: $55M DeFi Saver phish, copy2pwn hijacks your clipboard: Crypto Sec
Why this matters
This security story adds another data point to the current market tape and is useful when read alongside nearby source coverage.
Original source
Read on CointelegraphRelated market context
Bitcoin purchases halted after data breach puts 250,000 crypto users at risk
Israel’s largest regulated cryptocurrency broker, Bits of Gold, is investigating a data breach that potentially exposed the person...
Coinbase Unveils AiFi After $100M in x402 Transactions, Targeting AI Agent Payments
Key Takeaways: Coinbase has announced the launch of its financial infrastructure initiative, AiFi, centered on the new AI agent ec...
Ethereum (ETH) Price Prediction: ETH Volatility Compression Builds as Bulls Target $2,500 Recovery
Ethereum price has remained stuck in a tight trading range as volatility continues to fade, leaving traders waiting for the next m...
Bits of Gold Breach May Expose 200,000 Crypto Users, But Funds Remain Safe Online
Key Takeaways: A data breach at Bits of Gold could affect up to 200,000 customers. No exposure of customer funds, crypto assets, p...
Slowing ETF demand and corporate treasury selling are breaking the math behind Wall Street’s $16 trillion Bitcoin target
Bitcoin market cap must rise to ARK Invest's roughly $16 trillion 2030 base case, requiring about 78.6% annual growth from the cur...
Chainlink’s leverage rises as Standard Chartered sets $200 target
Chainlink's strategic role in asset tokenization could significantly influence blockchain interoperability and drive long-term mar...