#Successkey
Another day, another npm malware campaign. Checkmarx Zero researcher Pavan Guidmalla and team discovered ChainViel: a pernicious campaign with an unblockable command and control (C2) system built on the public blockchain.

All affected packages have been removed from npm

buff.ly/1pZDC08
ChainVeil: A Malicious npm Supply Chain Attack by SuccessKey - Checkmarx
A new npm supply chain attack campaign leverages typosquatting and a command-and-control system that's nearly impossible to disable. Learn how the actor "SuccessKey" takes steps to hide from malware…
checkmarx.com
June 16, 2026 at 12:29 PM
Checkmarx exposed ViteVenom: 7 malicious npm packages in the Vite ecosystem used blockchain C2 on Tron, Aptos, and BSC to deploy a RAT for credential theft, exfiltration, and persistence. #ViteVenom #Vite #BlockchainC2
Seven Malicious Vite npm Packages Use Blockchain C2 to Deliver a RAT
Checkmarx uncovered ViteVenom, a cluster of seven malicious npm packages targeting developers using the Vite frontend tooling ecosystem in a software supply chain attack. The campaign is linked to SuccessKey and ChainVeil, using a four-tier blockchain-based C2 setup across Tron, Aptos, and Binance Smart Chain to deliver a RAT for reverse...
www.hendryadrian.com
July 18, 2026 at 2:45 AM
Today is the final day to book our 4-day online instructor-led Kubernetes starting 6th July. Don't lose your place! https://www.edc4it.com/training/course/DOCKER-KUBERNETES #Onlinecourses #Kubernetes #K8s #Successkey #Opensourcetraining #Opensourcecourses
December 8, 2024 at 12:40 PM