Threat researchers identified two malicious Rust crates, faster_log and async_println, that impersonated the legitimate fast_log library to steal Solana and Ethereum private keys from developers. The crates, published under the aliases rustguruman and dumbnbased, embedded routines to scan source files for wallet keys and exfiltrate them to a hardcoded command and control endpoint. Combined, the malicious packages were downloaded over 8,400 times before being reported and removed from the Rust package registry. The Crates security team responded promptly by removing the listings, locking the associated accounts, and publishing a security advisory to alert the community. This incident highlights the ongoing risk of supply chain attacks in open source ecosystems and the importance of vigilant package vetting.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
Trail of Bits published analysis describing how supply-chain attacks exploit common trust assumptions in software development and dependency management. The reference appears to be analytical rather than tied to a separate dated incident, so the publication date is used.
Socket reported two malicious Rust crates masquerading as a popular logging library and designed to steal cryptocurrency wallet keys, indicating a software supply-chain attack in the Rust ecosystem. The reference does not provide a more specific event date, so the publication date is used.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.