logo

Ledger CTO: Large-Scale Supply Chain Attack Underway, Entire JavaScript Ecosystem at Risk

By: theblockbeats.news|2025/09/08 21:32:27

BlockBeats News, September 9, Ledger's Chief Technology Officer Charles Guillemet wrote that, "A large-scale supply chain attack is currently taking place: a well-known developer's NPM account has been compromised. The affected package has been downloaded over 1 billion times, which means the entire JavaScript ecosystem could be at risk.


The malicious code works by silently tampering with cryptocurrency addresses in the background to steal funds.


If you use a hardware wallet, please carefully verify each signature transaction, and you are safe.
If you do not use a hardware wallet, please refrain from making any on-chain transactions for now.
It is currently unclear whether the attacker has already stolen the software wallet's mnemonic phrase.

For more details, see the report. If you are using Ledger or another hardware wallet that supports clear signatures, you will not be affected. My previous tweets were a reminder: Users who do not use hardware wallets that support clear signatures are at risk. Please be sure to carefully review each transaction before signing."

WEEX si dirige verso Blockchain Life Dubai 2025
Il più grande accordo commerciale provoca un'impennata del Bitcoin: 5 principali intuizioni per questa settimana nel crypto

Potrebbe interessarti anche

Condividi
copy

Chi ha guadagnato

Ultime notizie crypto

09:19

Mentre gli Stati Uniti lottano per mediare, Russia e Ucraina si lanciano attacchi reciproci

08:49

Un certo indirizzo "Flash Loan Attack Whale" ha accumulato 7066 ETH negli ultimi 5 giorni attraverso una strategia di "Rug Pull Contract Buy Spot".

07:19

La Banca Popolare Cinese convoca la riunione del meccanismo di coordinamento per la repressione della speculazione sulle transazioni in valuta virtuale

06:49

「1011 Insider Whale」 Apre una nuova posizione corta 5x ETH, raggiungendo i 15 milioni di dollari in dimensioni della posizione

06:22

Oggi, l'indirizzo del team Hyperliquid ha rilasciato 2,6 milioni di HYPE dallo staking.

Leggi di più
Community
icon
icon
icon
icon
icon
icon
icon
icon

Assistenza clienti@weikecs

Cooperazione aziendale@weikecs

Trading quantitativo e MM[email protected]

Servizi VIP[email protected]