Christophe Tafani-Dereeper
(@christophetd
) highlighted that the backdoor in v1.95.7
includes an addToQueue
function designed to exfiltrate private keys using seemingly-legitimate CloudFlare headers. #solana #wallet #backdoor #npm #cryptocurrencies #incident [ https://socket.dev/blog/supply-chain-attack-solana-web3-js-library ]