5 malicious Rust crates posed as time utilities and attempted to exfiltrate .env secrets from developer environments.
Our research uncovered a coordinated campaign using lookalike infrastructure to steal credentials.
Read the analysis → https://socket.dev/blog/5-malicious-rust-crates-posed-as-time-utilities-to-exfiltrate-env-files #rustlang