By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
The Tech DiffThe Tech DiffThe Tech Diff
  • Home
  • Shop
  • Computers
  • Phones
  • Technology
  • Wearables
Reading: “Malicious Packages Drain User Wallets at dYdX Cryptocurrency Exchange”
Share
Font ResizerAa
The Tech DiffThe Tech Diff
Font ResizerAa
  • Computers
  • Phones
  • Technology
  • Wearables
Search
  • Home
  • Shop
  • Computers
  • Phones
  • Technology
  • Wearables
Follow US
  • Shop
  • About
  • Contact
  • Terms & Conditions
  • Privacy Policy
© Copyright 2022. All Rights Reserved By The Tech Diff.
The Tech Diff > Blog > Technology > “Malicious Packages Drain User Wallets at dYdX Cryptocurrency Exchange”
Technology

“Malicious Packages Drain User Wallets at dYdX Cryptocurrency Exchange”

Admin
Last updated: February 9, 2026 12:28 pm
Admin
Share
“Malicious Packages Drain User Wallets at dYdX Cryptocurrency Exchange”
SHARE

Contents
Malicious Code Discovered in Open Source Packages for dYdXSeverity of the BreachdYdX: A Target for CybercriminalsThe Mechanics of the AttackProtecting Yourself from Crypto Theft

Malicious Code Discovered in Open Source Packages for dYdX

Recent research from the security firm Socket has unveiled a concerning security breach impacting the dYdX decentralized derivatives exchange. Open source packages published on the npm and PyPI repositories were compromised with malicious code designed to steal wallet credentials from dYdX developers and backend systems. In a startling claim, researchers noted that this backdoor could also extend to user devices, highlighting a significant threat to both developers and regular users.

Raycon Wireless Over Ear Headphones: 40H Battery & ANC!
Headphones

Raycon Wireless Over Ear Headphones: 40H Battery & ANC!

$99.99
Buy Now
-20% iClever Kids Headphones: Safe 85dBA, Tangle-Free, 5-Pack!
Headphones

iClever Kids Headphones: Safe 85dBA, Tangle-Free, 5-Pack!

$44.95 Original price was: $44.95.$35.95Current price is: $35.95.
Buy Now
EdgeRest L-Shaped Desk Wrist Rest: Ultimate Comfort & Support
Computer & Accessories

EdgeRest L-Shaped Desk Wrist Rest: Ultimate Comfort & Support

$59.99
Buy Now
-25% Uliptz Bluetooth Headphones: 65H Playtime & 6 EQ Modes!
Headphones

Uliptz Bluetooth Headphones: 65H Playtime & 6 EQ Modes!

$19.99 Original price was: $19.99.$14.99Current price is: $14.99.
Buy Now

Severity of the Breach

Socket has reported that “every application using the compromised npm versions is at risk.” This alarming statement emphasizes the direct consequences for applications reliant on the affected packages, including the potential for complete wallet compromise and irreversible cryptocurrency theft. The affected versions of the packages are:

  • npm: @dydxprotocol/v4-client-js – Versions: 3.4.1, 1.22.1, 1.15.2, 1.0.31
  • PyPI: dydx-v4-client

dYdX: A Target for Cybercriminals

dYdX has emerged as a prominent player in the decentralized trading landscape, facilitating perpetual trading across hundreds of markets. The platform boasts an impressive trading volume exceeding $1.5 trillion over its lifespan, averaging between $200 million and $540 million in daily transactions. With this level of activity, it is no wonder that cybercriminals have turned their attention to the exchange.

The Mechanics of the Attack

The embedded malware in the npm packages introduced a malicious function that activated when a wallet’s seed phrase was processed. This function stealthily exfiltrated the seed phrase and collected a fingerprint of the device being used, allowing attackers to correlate stolen credentials to track victims across multiple breaches. The data was sent to a fraudulent domain—dydx[.]priceoracle[.]site—that mimics the legitimate dYdX service (dydx[.]xyz) through typosquatting methods.

Protecting Yourself from Crypto Theft

With the ever-evolving nature of cyber threats in the cryptocurrency space, it’s crucial for users and developers to remain vigilant. Avoid using outdated or compromised packages, regularly monitor your wallet for suspicious activity, and consider employing hardware wallets for enhanced security. Awareness and proactive measures can go a long way in safeguarding your assets.

For more detailed information on this security breach, read the full article here.

Image Credit: arstechnica.com

You Might Also Like

“Zero-Day Exploit Breeches Windows 11 BitLocker Security Defenses”

“Honda Unveils Hybrid Accord and RDX Prototypes for Future Innovation”

“AI Bans Are Arriving: Regulatory Actions Begin Worldwide”

Uber Expands with Two New Campuses in India for Development

“Reddit Restricts Access: My Experience with the Mobile Website”

Share This Article
Facebook Twitter Copy Link Print
Previous Article “iPad Upgrade: Apple’s Entry-Level Tablet Set for Major Revamp” “iPad Upgrade: Apple’s Entry-Level Tablet Set for Major Revamp”
Next Article Amazfit T-Rex 3 Pro: Exceptional Value at Half the Apple Watch Ultra Price Amazfit T-Rex 3 Pro: Exceptional Value at Half the Apple Watch Ultra Price
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Product categories

  • Computer & Accessories
  • Headphones
  • Laptops
  • Phones
  • Wearables

Trending Products

  • Raycon Everyday Wireless Headphones: 38Hr ANC & Water-Resistant! Raycon Everyday Wireless Headphones: 38Hr ANC & Water-Resistant! $99.99
  • Avantree Ensemble: Comfortable Wireless Headphones for Seniors Avantree Ensemble: Comfortable Wireless Headphones for Seniors $122.99 Original price was: $122.99.$93.49Current price is: $93.49.
  • Unleash Beats: Skullcandy Crusher ANC 2 – 60H Battery! Unleash Beats: Skullcandy Crusher ANC 2 - 60H Battery! $239.99 Original price was: $239.99.$180.68Current price is: $180.68.
  • Experience Ultimate Sound: Soundcore Liberty 4 NC Earbuds! Experience Ultimate Sound: Soundcore Liberty 4 NC Earbuds! $99.99 Original price was: $99.99.$69.99Current price is: $69.99.
  • SAMSUNG Galaxy S24 Ultra 5G: Power, Speed & Style! SAMSUNG Galaxy S24 Ultra 5G: Power, Speed & Style! $432.95

You Might also Like

Netflix Expands Ambitions in Advertising Sector
Technology

Netflix Expands Ambitions in Advertising Sector

Admin Admin 3 Min Read
“Elon Musk Might Lose Case Yet Achieve Most Goals with OpenAI”
Technology

“Elon Musk Might Lose Case Yet Achieve Most Goals with OpenAI”

Admin Admin 5 Min Read
“Kevin Hartz’s A* Secures 0M in Third Fund Closure”
Technology

“Kevin Hartz’s A* Secures $450M in Third Fund Closure”

Admin Admin 3 Min Read

About Us

At The Tech Diff, we believe technology is more than just innovation—it’s a lifestyle that shapes the way we work, connect, and explore the world. Our mission is to keep readers informed, inspired, and ahead of the curve with fresh updates, expert insights, and meaningful stories from across the digital landscape.

Useful Link

  • Shop
  • About
  • Contact
  • Terms & Conditions
  • Privacy Policy

Categories

  • Computers
  • Phones
  • Technology
  • Wearables

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

We don’t spam! Read our privacy policy for more info.

Check your inbox or spam folder to confirm your subscription.

The Tech DiffThe Tech Diff
Follow US
© Copyright 2022. All Rights Reserved By The Tech Diff.
Welcome Back!

Sign in to your account

Lost your password?