Ledger CTO: Large-Scale Supply Chain Attack Underway, Entire JavaScript Ecosystem at Risk
BlockBeats News, September 9, Ledger's Chief Technology Officer Charles Guillemet wrote that, "A large-scale supply chain attack is currently taking place: a well-known developer's NPM account has been compromised. The affected package has been downloaded over 1 billion times, which means the entire JavaScript ecosystem could be at risk.
The malicious code works by silently tampering with cryptocurrency addresses in the background to steal funds.
If you use a hardware wallet, please carefully verify each signature transaction, and you are safe.
If you do not use a hardware wallet, please refrain from making any on-chain transactions for now.
It is currently unclear whether the attacker has already stolen the software wallet's mnemonic phrase.
For more details, see the report. If you are using Ledger or another hardware wallet that supports clear signatures, you will not be affected. My previous tweets were a reminder: Users who do not use hardware wallets that support clear signatures are at risk. Please be sure to carefully review each transaction before signing."
You may also like

More brutal than a bear market, OpenClaw founder advises young people to stay away from crypto

JPMorgan and Goldman raise gold price targets; will on-chain finance welcome a new reserve asset cycle?

dFans: OnlyFans of the AI Era

Tron Industry Weekly Report: Geopolitical Turmoil Escalates, BTC Continues to Test $60,000, Detailed Explanation of the Protocol Konnex for AI Autonomous Collaboration and Settlement on the Chain
From CTA to AI: The Evolution of Adaptive Quant Strategies in Crypto Markets
Explore how an LLM-powered AI market-neutral trading strategy achieved a 2.75 Sharpe ratio with controlled drawdown. Inside crypto_trade’s adaptive hedging system at the WEEX AI Trading Hackathon.
How 30+ Global Sponsors Powered WEEX AI Trading Hackathon Into a $1.88M Carnival
Discover how 30+ global sponsors including AWS helped power the $1.88M WEEX AI Trading Hackathon, turning AI strategies into live crypto market competition.

Key Market Information Discrepancy on March 2nd - A Must-See! | Alpha Morning Report

Iran Missile Strike in Dubai: Three Chinese Nationals Tell Their Story 48 Hours Later

72 Minutes Before Attack, Six Mysterious Accounts Raked in $1.2 Million

How to Preserve Life and Wealth in Turbulent Times | Bill It Up Memo

I have given up using OpenClaw

WLFI is involved in insider dealings again? The banking license controversy under a $500 million investment

Morning News | Iranian Supreme Leader Khamenei Assassinated; Kalshi to Refund Fees for "Will Khamenei Step Down" Related Market; Bitcoin Spot ETF Sees Net Inflow of $787 Million This Week

The harvesting tactics of the quantitative giant Jane Street

Cryptocurrency ETF Weekly | Last week, the net inflow for Bitcoin spot ETFs in the U.S. was $787 million; the net inflow for Ethereum spot ETFs in the U.S. was $80.2 million

WLFI at it Again? Banking License Controversy Amid $500M Investment

The Aave civil war escalates, Morpho quietly doubles: Is the lending throne about to change hands?

Dune Stablecoin Research: The Flow and Demand of a $300 Billion Market
More brutal than a bear market, OpenClaw founder advises young people to stay away from crypto
JPMorgan and Goldman raise gold price targets; will on-chain finance welcome a new reserve asset cycle?
dFans: OnlyFans of the AI Era
Tron Industry Weekly Report: Geopolitical Turmoil Escalates, BTC Continues to Test $60,000, Detailed Explanation of the Protocol Konnex for AI Autonomous Collaboration and Settlement on the Chain
From CTA to AI: The Evolution of Adaptive Quant Strategies in Crypto Markets
Explore how an LLM-powered AI market-neutral trading strategy achieved a 2.75 Sharpe ratio with controlled drawdown. Inside crypto_trade’s adaptive hedging system at the WEEX AI Trading Hackathon.
How 30+ Global Sponsors Powered WEEX AI Trading Hackathon Into a $1.88M Carnival
Discover how 30+ global sponsors including AWS helped power the $1.88M WEEX AI Trading Hackathon, turning AI strategies into live crypto market competition.