Researchers flag TrapDoor malware campaign targeting crypto developer environments including Aptos, Sui and Solana

Security researchers uncovered TrapDoor malware targeting crypto developers across npm, PyPI, and Crates.io repositories. The campaign compromised environments for Aptos, Sui, and Solana projects. Malicious packages aimed to steal credentials and inject backdoors into blockchain infrastructure. This poses significant risk to Indian crypto developers and exchanges relying on these ecosystems for security and operational integrity.
Key takeaways
- 1TrapDoor malware targeted developers on npm, PyPI, and Crates.io repositories across Aptos, Sui, and Solana ecosystems.
- 2Malicious packages were designed to steal credentials and inject backdoors into blockchain infrastructure systems.
- 3Campaign posed direct security risks to Indian crypto developers and exchanges relying on these development platforms.
Coins in this story
Why it matters
This supply chain attack threatens the foundation of Indian crypto infrastructure by compromising developer environments; exchanges and projects using affected repositories face credential theft and operational sabotage risks, requiring immediate security audits and dependency reviews.
Related stories

‘TrapDoor’ malware targets crypto dev tools in supply chain attack
TrapDoor malware campaign deployed 34+ malicious packages targeting crypto and AI developers across npm, PyPI, and Crates repositories. The attack steals wallet data, SSH keys, GitHub tokens, and cloud credentials while hijacking AI coding assistants like Claude and Cursor. Targets include Coinbase, Binance, Solana, MetaMask, and other major wallets, posing significant risks to Indian developers in Web3 and AI sectors.

Hyperliquid is emerging as a challenger to traditional exchanges and prediction markets, says FalconX
Hyperliquid is rapidly expanding beyond crypto derivatives into pre-IPO trading, prediction markets, and tokenized assets, directly challenging traditional exchanges like CME and ICE. FalconX reports strong HYPE token inflows and a USDC partnership with Coinbase could generate $160 million annual revenue. Regulatory scrutiny looms over manipulation concerns, yet Hyperliquid leads decentralized perpetual futures in volume and value locked.
