By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
The Tech DiffThe Tech DiffThe Tech Diff
  • Home
  • Shop
  • Computers
  • Phones
  • Technology
  • Wearables
Reading: “Malicious Packages Drain User Wallets at dYdX Cryptocurrency Exchange”
Share
Font ResizerAa
The Tech DiffThe Tech Diff
Font ResizerAa
  • Computers
  • Phones
  • Technology
  • Wearables
Search
  • Home
  • Shop
  • Computers
  • Phones
  • Technology
  • Wearables
Follow US
  • Shop
  • About
  • Contact
  • Terms & Conditions
  • Privacy Policy
© Copyright 2022. All Rights Reserved By The Tech Diff.
The Tech Diff > Blog > Technology > “Malicious Packages Drain User Wallets at dYdX Cryptocurrency Exchange”
Technology

“Malicious Packages Drain User Wallets at dYdX Cryptocurrency Exchange”

Admin
Last updated: February 9, 2026 12:28 pm
Admin
Share
“Malicious Packages Drain User Wallets at dYdX Cryptocurrency Exchange”
SHARE

Contents
Malicious Code Discovered in Open Source Packages for dYdXSeverity of the BreachdYdX: A Target for CybercriminalsThe Mechanics of the AttackProtecting Yourself from Crypto Theft

Malicious Code Discovered in Open Source Packages for dYdX

Recent research from the security firm Socket has unveiled a concerning security breach impacting the dYdX decentralized derivatives exchange. Open source packages published on the npm and PyPI repositories were compromised with malicious code designed to steal wallet credentials from dYdX developers and backend systems. In a startling claim, researchers noted that this backdoor could also extend to user devices, highlighting a significant threat to both developers and regular users.

-34% Elevate Your Workspace: 2-Tier Wood Desk Organizer & Stand
Computer & Accessories

Elevate Your Workspace: 2-Tier Wood Desk Organizer & Stand

$32.99 Original price was: $32.99.$21.65Current price is: $21.65.
Buy Now
Maximize Comfort & Sound: N18 Bluetooth 5.2 Earbuds!
Headphones

Maximize Comfort & Sound: N18 Bluetooth 5.2 Earbuds!

$25.99
Buy Now
VSDINSIDE Macro Keypad: Your Ultimate Streaming Game Changer!
Computer & Accessories

VSDINSIDE Macro Keypad: Your Ultimate Streaming Game Changer!

$59.99
Buy Now
-19% 180° Adjustable Magnetic Phone Holder for Laptop & Tesla
Computer & Accessories

180° Adjustable Magnetic Phone Holder for Laptop & Tesla

$15.99 Original price was: $15.99.$12.99Current price is: $12.99.
Buy Now

Severity of the Breach

Socket has reported that “every application using the compromised npm versions is at risk.” This alarming statement emphasizes the direct consequences for applications reliant on the affected packages, including the potential for complete wallet compromise and irreversible cryptocurrency theft. The affected versions of the packages are:

  • npm: @dydxprotocol/v4-client-js – Versions: 3.4.1, 1.22.1, 1.15.2, 1.0.31
  • PyPI: dydx-v4-client

dYdX: A Target for Cybercriminals

dYdX has emerged as a prominent player in the decentralized trading landscape, facilitating perpetual trading across hundreds of markets. The platform boasts an impressive trading volume exceeding $1.5 trillion over its lifespan, averaging between $200 million and $540 million in daily transactions. With this level of activity, it is no wonder that cybercriminals have turned their attention to the exchange.

The Mechanics of the Attack

The embedded malware in the npm packages introduced a malicious function that activated when a wallet’s seed phrase was processed. This function stealthily exfiltrated the seed phrase and collected a fingerprint of the device being used, allowing attackers to correlate stolen credentials to track victims across multiple breaches. The data was sent to a fraudulent domain—dydx[.]priceoracle[.]site—that mimics the legitimate dYdX service (dydx[.]xyz) through typosquatting methods.

Protecting Yourself from Crypto Theft

With the ever-evolving nature of cyber threats in the cryptocurrency space, it’s crucial for users and developers to remain vigilant. Avoid using outdated or compromised packages, regularly monitor your wallet for suspicious activity, and consider employing hardware wallets for enhanced security. Awareness and proactive measures can go a long way in safeguarding your assets.

For more detailed information on this security breach, read the full article here.

Image Credit: arstechnica.com

You Might Also Like

“Crypto Exchange OKX Proposes AI Agents for Self-Hiring and Payment”

US Rewards $10 Million for Leads on Signal, WhatsApp Hacking Group

California Enforces Law Against Loud Streaming Ads Starting July 1

Oracle’s Layoffs Fuel Debt-Driven AI Investment Strategy

“TMD’s Keyless Bike Lock: A $280 Answer to a $60 Dilemma”

Share This Article
Facebook Twitter Copy Link Print
Previous Article “iPad Upgrade: Apple’s Entry-Level Tablet Set for Major Revamp” “iPad Upgrade: Apple’s Entry-Level Tablet Set for Major Revamp”
Next Article Amazfit T-Rex 3 Pro: Exceptional Value at Half the Apple Watch Ultra Price Amazfit T-Rex 3 Pro: Exceptional Value at Half the Apple Watch Ultra Price
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Product categories

  • Computer & Accessories
  • Headphones
  • Laptops
  • Phones
  • Wearables

Trending Products

  • MSI Stealth A16: Unleash Gaming Power with 240Hz OLED! MSI Stealth A16: Unleash Gaming Power with 240Hz OLED! $2,899.99 Original price was: $2,899.99.$2,399.00Current price is: $2,399.00.
  • RedThunder K10: Ultimate Wireless Gaming Combo for Gamers! RedThunder K10: Ultimate Wireless Gaming Combo for Gamers! $49.99
  • Boost Wellness with IAMJOY Smart Health Wristband – Track & Improve! Boost Wellness with IAMJOY Smart Health Wristband – Track & Improve! $188.22 Original price was: $188.22.$99.99Current price is: $99.99.
  • Capture Every Moment: Mini Body Camera 64GB 4K POV Cam! Capture Every Moment: Mini Body Camera 64GB 4K POV Cam! $55.99
  • AI Smart Watch: GPS, Heart Rate & Waterproof for All Phones AI Smart Watch: GPS, Heart Rate & Waterproof for All Phones $199.99 Original price was: $199.99.$39.99Current price is: $39.99.

You Might also Like

“College Value Confirmed: Data Supports Education in Tough Job Markets”
Technology

“College Value Confirmed: Data Supports Education in Tough Job Markets”

Admin Admin 6 Min Read
“Fittest Founder Battles Cancer Using AI Technology”
Technology

“Fittest Founder Battles Cancer Using AI Technology”

Admin Admin 8 Min Read
Notion Terminates Skiff-Influenced Email App Amid AI Adoption Surge
Technology

Notion Terminates Skiff-Influenced Email App Amid AI Adoption Surge

Admin Admin 3 Min Read

About Us

At The Tech Diff, we believe technology is more than just innovation—it’s a lifestyle that shapes the way we work, connect, and explore the world. Our mission is to keep readers informed, inspired, and ahead of the curve with fresh updates, expert insights, and meaningful stories from across the digital landscape.

Useful Link

  • Shop
  • About
  • Contact
  • Terms & Conditions
  • Privacy Policy

Categories

  • Computers
  • Phones
  • Technology
  • Wearables

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

We don’t spam! Read our privacy policy for more info.

Check your inbox or spam folder to confirm your subscription.

The Tech DiffThe Tech Diff
Follow US
© Copyright 2022. All Rights Reserved By The Tech Diff.
Welcome Back!

Sign in to your account

Lost your password?