Skip to content
Hackers Target Linux Snap Store with Crypto-Malware

Hackers Target Linux Snap Store with Crypto-Malware

First seen 22 Jan 2026, 21:42 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 13:27 UTC

Hackers have exploited Snapcraft, the app store for Ubuntu and other Linux distributions, to inject malicious code into software packages. By hijacking expired domains and associated email servers of existing Snap Store publishers, attackers are turning trusted applications into crypto-stealing malware. This threat has been highlighted by Ubuntu contributor Alan Pope.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 212d ago How this analysis works

Timeline

Date unknown
Hackers began exploiting Snapcraft to inject malicious code
Recent
Alan Pope warns about the crypto-stealing malware
Date unknown
SnapScope web app identifies malicious snaps

More articles in this cluster (4)

Following this threat?

Track Ubuntu in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed