A hacked version of a popular password manager tool briefly exposed developers to a cyberattack that could have given criminals access to sensitive online accounts, security researchers said.
The affected tool, made by Bitwarden, was distributed through a public software library for about 93 minutes before it was removed.
Researchers said the malicious version did not steal stored passwords directly. Instead, it targeted the computers of people installing it, trying to collect login credentials such as access keys for GitHub and cloud services.
Those credentials could allow attackers to break into company systems, change code, or take control of software projects.
Bitwarden said there was no evidence that its core systems or user password vaults were affected.
Security experts say the incident highlights a growing trend where hackers target trusted software distribution channels, turning legitimate tools into entry points for wider attacks.
Stay tuned to BitKE on crypto crime developments.
Join our WhatsApp channel here.
Follow us on X for the latest posts and updates
Join and interact with our Telegram community
___________________________________________

