Close Menu
StreamLineCrypto.comStreamLineCrypto.com
  • Home
  • Crypto News
  • Bitcoin
  • Altcoins
  • NFT
  • Defi
  • Blockchain
  • Metaverse
  • Regulations
  • Trading
What's Hot

How Price Will Play Out In 2026

January 21, 2026

Finst bags €8m to fuel EU staking and expansion push

January 21, 2026

SlowMist Flags Linux Snap Store Attack on Crypto Wallet Apps

January 21, 2026
Facebook X (Twitter) Instagram
Wednesday, January 21 2026
  • Contact Us
  • Privacy Policy
  • Cookie Privacy Policy
  • Terms of Use
  • DMCA
Facebook X (Twitter) Instagram
StreamLineCrypto.comStreamLineCrypto.com
  • Home
  • Crypto News
  • Bitcoin
  • Altcoins
  • NFT
  • Defi
  • Blockchain
  • Metaverse
  • Regulations
  • Trading
StreamLineCrypto.comStreamLineCrypto.com

SlowMist Flags Linux Snap Store Attack on Crypto Wallet Apps

January 21, 2026Updated:January 21, 2026No Comments3 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
SlowMist Flags Linux Snap Store Attack on Crypto Wallet Apps
Share
Facebook Twitter LinkedIn Pinterest Email
ad


Blockchain safety firm SlowMist flagged a brand new Linux-based assault vector that exploits trusted functions distributed by the Snap Retailer to steal customers’ crypto restoration seed phrases. 

In a put up on X, SlowMist’s chief info safety officer, 23pds, mentioned attackers are abusing expired domains to hijack long-standing Snap Retailer writer accounts and distribute malicious updates by official channels. 

The compromised functions reportedly impersonate in style crypto wallets, together with Exodus, Ledger Reside and Belief Pockets, utilizing interfaces that intently resemble legit software program.

As soon as put in or up to date, the malicious apps immediate customers to enter pockets restoration phrases, permitting attackers to exfiltrate credentials and drain funds with out customers realizing they’ve been compromised.

SlowMist Flags Linux Snap Store Attack on Crypto Wallet Apps
Supply: 23pds

Attackers use expired domains to hijack Snap Retailer publishers

The Snap Retailer is the official Linux app retailer used to distribute software program packaged in a format known as “snaps.” It’s generally thought of Linux’s equal of Apple’s App Retailer on macOS and the Microsoft Retailer on Home windows.

SlowMist mentioned the assault depends on monitoring Snap Retailer developer accounts linked to domains which have expired however had been beforehand related to legit publishers.

As soon as a site expires, attackers can re-register it and use domain-linked e mail addresses to reset Snap Retailer account credentials. 

The SlowMist govt mentioned the method permits attackers to quietly take management of established writer accounts with present obtain histories and lively customers. From there, malicious code will be pushed by routine software program updates somewhat than recent installations. 

SlowMist confirmed that two writer domains, particularly “storewise[.]tech” and “vagueentertainment[.]com,” have been compromised utilizing the assault vector. Functions tied to the accounts had been reportedly modified to impersonate well-known crypto wallets. 

Associated: 80% of hacked crypto tasks by no means ‘totally get well,’ skilled warns

Provide-chain assaults develop as crypto exploits turn into extra refined

The Snap Retailer assault vector aligns with a broader shift in crypto-related threats, the place attackers are more and more concentrating on infrastructure and distribution channels somewhat than good contract code. 

CertiK knowledge shared with Cointelegraph in December confirmed that whole crypto hack losses reached $3.3 billion in 2025, regardless of a pointy decline within the variety of particular person incidents.

CertiK mentioned losses turned concentrated in fewer however extra damaging supply-chain assaults, which accounted for $1.45 billion in losses throughout simply two incidents.

The pattern means that as protocol-level safety improves, attackers are shifting towards higher-impact ways that exploit belief relationships, software program updates and third-party infrastructure. 

Journal: Meet the onchain crypto detectives preventing crime higher than the cops