CoinFeed
Ledger CTO Warns of NPM Supply-Chain Attack Hitting 1B+ Downloads - CoinFeed
Time 19:29

Ledger CTO Warns of NPM Supply-Chain Attack Hitting 1B+ Downloads

September 8, 2025
CoinFeed News

According to Guillemet, the malicious code — already pushed into packages with over 1 billion downloads — is designed to silently swap crypto wallet addresses in transactions. That means unsuspecting users could send funds directly to the attacker without realizing it.

Back to News Feed