‘TrapDoor’ Malware Targets Crypto and AI Development Tools in Supply-Chain Attack
Software supply-chain attacks exploit package-management systems trusted by developers, allowing malicious code to run automatically when a package is installed or imported. Socket Security said “TrapDoor” targeted cryptocurrency, DeFi and AI development environments to steal wallets, SSH keys, GitHub tokens and AWS credentials. A breach could compromise assets, code repositories and cloud infrastructure.
Socket Security disclosed the attack on May 25, 2026, tracing its earliest activity to 20:20 UTC on May 22. More than 34 malicious packages and over 384 versions and artifacts were distributed through npm, PyPI and Crates.io. The attackers also poisoned CLAUDE.md and .cursorrules files with zero-width Unicode characters, tricking Claude Code and Cursor into executing credential-stealing commands. As of the disclosure, Socket had identified no confirmed victims and reported no amount stolen.
All Coverage
4 original reportsThe Backstory
The history behind this eventNo historical echoes for this signal
Subscribe to Mark Radar Weekly
Every Friday, the week's strongest signals in your inbox. Unsubscribe anytime.