PANews reported on May 8 that according to X user @Xuegaogx, the GitHub open source library t3rn-swap was found to contain backdoor code, and the private key entered by the user will be silently sent to the specified ID via Telegram. The key backdoor is located in the record_config function. The project author @hao3313076 responded that "he was also stolen", but the comment content was ridiculed as "too honest", and the community called for an immediate cessation of the use of the script and replacement of the relevant private keys.
The open source script t3rn-swap was exposed to contain a private key backdoor, and the author said that "he was also stolen"
Share to:
Author: PA一线
This content is for informational purposes only and does not constitute investment advice.
Follow PANews official accounts, navigate bull and bear markets together
Recommended Reading
