Mark RadarMARK RADAR
EN

‘TrapDoor’ Malware Targets Crypto and AI Development Tools in Supply-Chain Attack

4 reports · First detected 2026-05-25 · Last active 2026-05-29

Software supply-chain attacks exploit package-management systems trusted by developers, allowing malicious code to run automatically when a package is installed or imported. Socket Security said “TrapDoor” targeted cryptocurrency, DeFi and AI development environments to steal wallets, SSH keys, GitHub tokens and AWS credentials. A breach could compromise assets, code repositories and cloud infrastructure.

Socket Security disclosed the attack on May 25, 2026, tracing its earliest activity to 20:20 UTC on May 22. More than 34 malicious packages and over 384 versions and artifacts were distributed through npm, PyPI and Crates.io. The attackers also poisoned CLAUDE.md and .cursorrules files with zero-width Unicode characters, tricking Claude Code and Cursor into executing credential-stealing commands. As of the disclosure, Socket had identified no confirmed victims and reported no amount stolen.

All Coverage

4 original reports

The Backstory

The history behind this event

No historical echoes for this signal

Mark Radar|MARK RADAR