Security Alert: GitHub is experiencing an incident where a bot posing as a "follower" has been stealing private keys from malicious projects.
GitHub project polymarket-copy-trading-bot has been injected with malicious code. The program automatically reads the wallet private key from the user's .env file upon startup and exfiltrates it to a hacker server through a hidden malicious dependency package [email protected], resulting in asset theft.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
Join livestream for 1000USDT airdrop!
UXLINK DAO releases proposal to "use at least 1% of monthly profits to buy back tokens"
Bitget launches crypto Flag-themed event
Polymarket predicts an 87% probability that Lighter's market cap will exceed 1 billion USD on the day after its listing.
