Bitcoin
Bitcoin (BTC)
$64,007.00 -0.43843
Bitcoin price
Ethereum
Ethereum (ETH)
$3,431.10 1.02231
Ethereum price
BNB
BNB (BNB)
$572.03 0.51706
BNB price
Solana
Solana (SOL)
$159.80 2.47636
Solana price
XRP
XRP (XRP)
$0.5696320 -10.13832
XRP price
Shiba Inu
Shiba Inu (SHIB)
$0.0000174 -6.82777
Shiba Inu price
Pepe
Pepe (PEPE)
$0.0000117 -0.3377
Pepe price
Bonk
Bonk (BONK)
$0.0000269 0.14021
Bonk price
Bitcoin
Bitcoin (BTC)
$64,007.00 -0.43843
Bitcoin price
Ethereum
Ethereum (ETH)
$3,431.10 1.02231
Ethereum price
BNB
BNB (BNB)
$572.03 0.51706
BNB price
Solana
Solana (SOL)
$159.80 2.47636
Solana price
XRP
XRP (XRP)
$0.5696320 -10.13832
XRP price
Shiba Inu
Shiba Inu (SHIB)
$0.0000174 -6.82777
Shiba Inu price
Pepe
Pepe (PEPE)
$0.0000117 -0.3377
Pepe price
Bonk
Bonk (BONK)
$0.0000269 0.14021
Bonk price
Bitcoin
Bitcoin (BTC)
$64,007.00 -0.43843
Bitcoin price
Ethereum
Ethereum (ETH)
$3,431.10 1.02231
Ethereum price
BNB
BNB (BNB)
$572.03 0.51706
BNB price
Solana
Solana (SOL)
$159.80 2.47636
Solana price
XRP
XRP (XRP)
$0.5696320 -10.13832
XRP price
Shiba Inu
Shiba Inu (SHIB)
$0.0000174 -6.82777
Shiba Inu price
Pepe
Pepe (PEPE)
$0.0000117 -0.3377
Pepe price
Bonk
Bonk (BONK)
$0.0000269 0.14021
Bonk price
Bitcoin
Bitcoin (BTC)
$64,007.00 -0.43843
Bitcoin price
Ethereum
Ethereum (ETH)
$3,431.10 1.02231
Ethereum price
BNB
BNB (BNB)
$572.03 0.51706
BNB price
Solana
Solana (SOL)
$159.80 2.47636
Solana price
XRP
XRP (XRP)
$0.5696320 -10.13832
XRP price
Shiba Inu
Shiba Inu (SHIB)
$0.0000174 -6.82777
Shiba Inu price
Pepe
Pepe (PEPE)
$0.0000117 -0.3377
Pepe price
Bonk
Bonk (BONK)
$0.0000269 0.14021
Bonk price

Scam recruiters target blockchain devs on Upwork, steal crypto with npm packages

scam-recruiters-target-blockchain-devs-on-upwork-steal-crypto-with-npm-packages
Edited by
News
Scam recruiters target blockchain devs on Upwork, steal crypto with npm packages

A blockchain developer fell victim to a crypto scam after responding to a seemingly legitimate Upwork job.

Bad actors have turned to Upwork in an effort to lure blockchain developers into downloading malicious software, enabling them to drain cryptocurrencies from non-custodial wallets. As per a BleepingComputer report, scam recruiters are instructing victims via LinkedIn to download and debug code from two malicious npm packages, hosted on a GitHub repository.

Scam recruiters target blockchain devs on Upwork, steal crypto with npm packages - 1
One of the malicious npm packages on GitHub | Source: BleepingComputer

Once developers execute the packages, a malicious script gains access to their devices. In an interview with BleepingComputer, Antalya-based blockchain developer Murat Çeliktepe revealed losing over $500 from his MetaMask wallet in crypto after opening the npm packages, providing scammers with remote access to his device.

The incident extends beyond Çeliktepe, as the report notes other developers reporting similar encounters with the same recruiters on LinkedIn, highlighting the prevalence of scams targeting blockchain developers.

Scammers seem to continue targeting blockchain developers through job platforms like LinkedIn and Upwork, showcasing a persistent strategy. In an incident in 2022, North Korea-affiliated hackers managed to pilfer $600 million from the Axie Infinity blockchain game by sending a fake job offer in a malicious PDF file via LinkedIn to an engineer from Sky Mavis, a company behind the web3 game.