Ledger CTO: Large-Scale Supply Chain Attack Underway, Entire JavaScript Ecosystem at Risk
BlockBeats News, September 9, Ledger's Chief Technology Officer Charles Guillemet wrote that, "A large-scale supply chain attack is currently taking place: a well-known developer's NPM account has been compromised. The affected package has been downloaded over 1 billion times, which means the entire JavaScript ecosystem could be at risk.
The malicious code works by silently tampering with cryptocurrency addresses in the background to steal funds.
If you use a hardware wallet, please carefully verify each signature transaction, and you are safe.
If you do not use a hardware wallet, please refrain from making any on-chain transactions for now.
It is currently unclear whether the attacker has already stolen the software wallet's mnemonic phrase.
For more details, see the report. If you are using Ledger or another hardware wallet that supports clear signatures, you will not be affected. My previous tweets were a reminder: Users who do not use hardware wallets that support clear signatures are at risk. Please be sure to carefully review each transaction before signing."
Também poderá gostar de
Em alta
Últimas Crypto News
Alliance DAO Genesis: É difícil se convencer a manter o token L1 a longo prazo, pois não há "Moat".
Atividade On-Chain Whale Visão geral: 'Buddy' Adiciona a Posição Longa, Whale Nets Mais de US $ 10 milhões em lucros Shorting 1000 BTC
AYZi Labs apresentou um projeto de declaração de registro à SEC dos EUA, com a intenção de expandir o conselho de administração da CEA Industries e eleger novos diretores.
Flower Leaderboard de fluxo de financiamento spot 24 horas: BTC Net Inflow de US$ 473 milhões, ETH Net Outflow de US$ 33,22 milhões
Uma baleia terminou uma hibernação de quase 3 anos, vendendo 200 BTC.
Apoio ao cliente:@weikecs
Cooperação empresarial:@weikecs
Trading quant. e criação de mercados:[email protected]
Serviços VIP:[email protected]