Skip to content

Crypto Attack Targets Linux Snap Store

SlowMist Warns of Linux Snap Store Attack Targeting Crypto Users

  • A new attack vector exploits trusted applications in the Snap Store to steal users’ crypto recovery seed phrases.
  • Attackers hijack expired domains linked to legitimate publisher accounts, allowing them to push malicious updates.
  • Compromised apps impersonate popular wallets like Exodus, Ledger Live, and Trust Wallet.
  • Two specific domains were confirmed compromised, enabling attackers to exfiltrate credentials unnoticed.
  • Supply-chain attacks are on the rise, with $1.45 billion lost in just two incidents recently reported.

This attack highlights a significant shift in crypto threats towards targeting infrastructure rather than just smart contract vulnerabilities. As security improves at the protocol level, attackers are increasingly exploiting trust relationships and software updates.

The recent findings by SlowMist underscore the need for vigilance among users of crypto wallets, especially given that supply-chain attacks accounted for substantial losses in recent months. (Source)

Share