Solana, Sui and Aptos wallet data targeted in TrapDoor package attack
A sophisticated cyberattack has targeted wallet data across three major blockchain networks, with hackers deploying malicious code packages to compromise user credentials on Solana, Sui, and Aptos platforms. The attack, dubbed "TrapDoor," involved the distribution of corrupted software packages designed to steal private keys and wallet information from users of these layer-1 blockchain ecosystems.
The malicious packages were reportedly embedded within legitimate-looking developer tools and applications, making detection particularly challenging for users and security teams. This type of supply chain attack represents a growing threat vector in the cryptocurrency space, where attackers compromise trusted software distribution channels to gain access to user funds and sensitive data. The affected networks have issued security advisories urging users to verify the integrity of any recently downloaded wallet software or blockchain development tools.
The incident highlights ongoing security vulnerabilities across emerging blockchain platforms as they scale to accommodate increased user adoption. Solana, Sui, and Aptos have gained significant traction among developers and users seeking alternatives to Ethereum, but this attack underscores the importance of robust security practices as these ecosystems mature. The breach could potentially impact user confidence in these platforms' security infrastructure.
Security researchers are continuing to analyze the scope of the compromise while affected platforms work to identify and notify potentially impacted users.
Source: CoinDesk