Charts
DataOn-chain
VIP
Market Cap
API
Rankings
CoinOSNew
CoinClaw🦞
Language
  • 简体中文
  • 繁体中文
  • English
Leader in global market data applications, committed to providing valuable information more efficiently.

Features

  • Real-time Data
  • Special Features
  • AI Grid

Services

  • News
  • Open Data(API)
  • Institutional Services

Downloads

  • Desktop
  • Android
  • iOS

Contact Us

  • Chat Room
  • Business Email
  • Official Email
  • Official Verification

Join Community

  • Telegram
  • Twitter
  • Discord

© Copyright 2013-2026. All rights reserved.

简体繁體English
|Legacy
BTCBTC
💲71016.04
+
1.59%
ETHETH
💲2096.79
+
2.23%
SOLSOL
💲88.48
+
2.91%
TRUMPTRUMP
💲3.78
+
36.46%
XRPXRP
💲1.40
+
2.19%
DOGEDOGE
💲0.09551
+
1.57%

AiCoin
AiCoin|9月 16, 2025 01:31
[NPM Supply Chain Hit by Malicious Attack, @ctrl/tinycolor Releases Data-Stealing Version] Scam Sniffer has discovered that the NPM supply chain has once again been targeted by an attack. The popular library @ctrl/tinycolor (with 2.2 million weekly downloads) was released with a malicious version. This version executes a data-stealing program during the npm postinstall script, leveraging the legitimate tool TruffleHog to scan and steal sensitive data. Users are advised to immediately check if they have downloaded the affected version, suspend related installation or update operations, and lock the version to a known safe version to prevent data leakage risks.
|
APP
Windows
Mac
Share To

X

Telegram

Facebook

Reddit

CopyLink

|
APP
Windows
Mac
Share To

X

Telegram

Facebook

Reddit

CopyLink

HotFlash

|
APP
Windows
Mac
Share To

X

Telegram

Facebook

Reddit

CopyLink

APP
Windows
Mac

X

Telegram

Facebook

Reddit

CopyLink

Hot Reads