No Result
View All Result
SUBMIT YOUR ARTICLES
  • Login
Friday, April 17, 2026
TheAdviserMagazine.com
  • Home
  • Financial Planning
    • Financial Planning
    • Personal Finance
  • Market Research
    • Business
    • Investing
    • Money
    • Economy
    • Markets
    • Stocks
    • Trading
  • 401k Plans
  • College
  • IRS & Taxes
  • Estate Plans
  • Social Security
  • Medicare
  • Legal
  • Home
  • Financial Planning
    • Financial Planning
    • Personal Finance
  • Market Research
    • Business
    • Investing
    • Money
    • Economy
    • Markets
    • Stocks
    • Trading
  • 401k Plans
  • College
  • IRS & Taxes
  • Estate Plans
  • Social Security
  • Medicare
  • Legal
No Result
View All Result
TheAdviserMagazine.com
No Result
View All Result
Home Market Research Cryptocurrency

NPM Attack Injects Crypto-Stealing Malware Into Core JavaScript Libraries

by TheAdviserMagazine
7 months ago
in Cryptocurrency
Reading Time: 2 mins read
A A
NPM Attack Injects Crypto-Stealing Malware Into Core JavaScript Libraries
Share on FacebookShare on TwitterShare on LInkedIn


Hackers have compromised widely used JavaScript software libraries in what’s being called the largest supply chain attack in history. The injected malware is reportedly designed to steal crypto by swapping wallet addresses and intercepting transactions.

According to several reports on Monday, hackers broke into the node package manager (NPM) account of a well-known developer and secretly added malware to popular JavaScript libraries used by millions of apps.

The malicious code swaps or hijacks crypto wallet addresses, potentially putting many projects at risk.

“There’s a large-scale supply chain attack in progress: the NPM account of a reputable developer has been compromised,” Ledger Chief Technology Officer Charles Guillemet warned on Monday. “The affected packages have already been downloaded over 1 billion times, meaning the entire JavaScript ecosystem may be at risk.”

Source: Minal Thukral

The breach targeted packages such as chalk, strip-ansi and color-convert — small utilities buried deep in the dependency trees of countless projects. Together, these libraries are downloaded more than a billion times each week, meaning even developers who never installed them directly could be exposed.

NPM is like an app store for developers — a central library where they share and download small code packages to build JavaScript projects.

Attackers appear to have planted a crypto-clipper, a type of malware that silently replaces wallet addresses during transactions to divert funds.

Security researchers warned that users relying on software wallets may be especially vulnerable, while those confirming every transaction on a hardware wallet are protected.

Phishing emails gave attackers access to NPM maintainer accounts

Attackers sent emails posing as official NPM support, warning maintainers that their accounts would be locked unless they “updated” two-factor authentication by September 10.

The fake site captured login credentials, giving hackers control over a maintainer’s account. Once inside, the attackers pushed malicious updates to packages with billions of weekly downloads.

Charlie Eriksen, a researcher at Aikido Security, told BleepingComputer the attack was especially dangerous because it operated “at multiple layers: altering content shown on websites, tampering with API calls, and manipulating what users’ apps believe they are signing.”

JavaScript, Hackers
Phishing email sent to JavaScript developers on Monday. Source: Github/Burnett01

This is a developing story, and further information will be added as it becomes available.

Magazine: Inside a 30,000 phone bot farm stealing crypto airdrops from real users



Source link

Tags: attackCoreCryptoStealingInjectsJavaScriptLibrariesMalwareNPM
ShareTweetShare
Previous Post

Signet (SIG) remains well-positioned for its all-important season, here’s why

Next Post

5 Dividend “Rules” That Don’t Hold Up in 2025

Related Posts

edit post
Record Stocks Highs And Cooling Volatility Spark K Bitcoin Price Target

Record Stocks Highs And Cooling Volatility Spark $88K Bitcoin Price Target

by TheAdviserMagazine
April 17, 2026
0

Bitcoin (BTC) refreshed February highs on Friday as attention focused on the upcoming weekly close and a longer-term rally to...

edit post
Trump signals potential concessions in Iran talks

Trump signals potential concessions in Iran talks

by TheAdviserMagazine
April 17, 2026
0

A senior Gulf official says Trump is signaling potential concessions in Iran talks. The probability of Trump agreeing to Iranian...

edit post
Bitcoin Recovery Fails To Lift Sentiment From Extreme Fear

Bitcoin Recovery Fails To Lift Sentiment From Extreme Fear

by TheAdviserMagazine
April 17, 2026
0

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure Data shows the crypto Fear & Greed...

edit post
XRP News: XRPL Validators Vote On New Lending Protocol Update

XRP News: XRPL Validators Vote On New Lending Protocol Update

by TheAdviserMagazine
April 16, 2026
0

Ripple-backed XRP Ledger validators are moving to vote on two new amendments, XLS-65 and XLS-66, leading to XRP news headlines....

edit post
Major Bitcoin Miners Flood Market With BTC to Stay Solvent Amid Rising Costs

Major Bitcoin Miners Flood Market With BTC to Stay Solvent Amid Rising Costs

by TheAdviserMagazine
April 16, 2026
0

Opening-Up eWallets’ Future: The Enduring Value of eWallets in the Trading Space ︳FM Talks x Paysafe Opening-Up eWallets’ Future: The...

edit post
On Schedule and Above Target: JST’s Third Buyback and Burn Breaches  Million

On Schedule and Above Target: JST’s Third Buyback and Burn Breaches $21 Million

by TheAdviserMagazine
April 16, 2026
0

According to the latest official update, the third large-scale buyback and burn of JST has been completed. In this round,...

Next Post
edit post
5 Dividend “Rules” That Don’t Hold Up in 2025

5 Dividend “Rules” That Don’t Hold Up in 2025

edit post
10 Portfolio Rebalancing Mistakes Investors Keep Repeating

10 Portfolio Rebalancing Mistakes Investors Keep Repeating

  • Trending
  • Comments
  • Latest
edit post
Massachusetts loses billions in income after millionaire tax

Massachusetts loses billions in income after millionaire tax

March 24, 2026
edit post
Illinois’ Paid Leave for All Workers Act Takes Effect — Every Employee Now Gets Guaranteed Time Off

Illinois’ Paid Leave for All Workers Act Takes Effect — Every Employee Now Gets Guaranteed Time Off

March 27, 2026
edit post
Virginia Permits ADULT MIGRANT MEN To Attend High School

Virginia Permits ADULT MIGRANT MEN To Attend High School

March 30, 2026
edit post
A 58-year-old left NYC for Miami to save on taxes — then retired early thanks to hidden savings. Here’s the math

A 58-year-old left NYC for Miami to save on taxes — then retired early thanks to hidden savings. Here’s the math

March 30, 2026
edit post
Tax Flight Accelerates In Massachusetts

Tax Flight Accelerates In Massachusetts

April 6, 2026
edit post
Property Tax Relief & Income Tax Relief

Property Tax Relief & Income Tax Relief

April 1, 2026
edit post
Best ETFs in Canada for 2026

Best ETFs in Canada for 2026

0
edit post
Day Trading Buying Power – A Complete Guide

Day Trading Buying Power – A Complete Guide

0
edit post
Violent downturns could test new ETF strategies, warns MFS Investment

Violent downturns could test new ETF strategies, warns MFS Investment

0
edit post
Radhakishan Damani-backed VST Industries shares jumps 15% as Q4 profit doubles to Rs 116 crore

Radhakishan Damani-backed VST Industries shares jumps 15% as Q4 profit doubles to Rs 116 crore

0
edit post
Autoliv reiterates 2026 adjusted operating margin of 10.5% to 11% and .2B operating cash flow, while flagging M raw material headwind (NYSE:ALV)

Autoliv reiterates 2026 adjusted operating margin of 10.5% to 11% and $1.2B operating cash flow, while flagging $90M raw material headwind (NYSE:ALV)

0
edit post
Negotiating With Iran | Armstrong Economics

Negotiating With Iran | Armstrong Economics

0
edit post
Autoliv reiterates 2026 adjusted operating margin of 10.5% to 11% and .2B operating cash flow, while flagging M raw material headwind (NYSE:ALV)

Autoliv reiterates 2026 adjusted operating margin of 10.5% to 11% and $1.2B operating cash flow, while flagging $90M raw material headwind (NYSE:ALV)

April 17, 2026
edit post
Illinois is OpenAI and Anthropic’s latest battleground as state eyes liability for AI catastrophes

Illinois is OpenAI and Anthropic’s latest battleground as state eyes liability for AI catastrophes

April 17, 2026
edit post
Negotiating With Iran | Armstrong Economics

Negotiating With Iran | Armstrong Economics

April 17, 2026
edit post
Hire a Registered Dietitian for Zero Out of Pocket + My Honest Review of Nourish

Hire a Registered Dietitian for Zero Out of Pocket + My Honest Review of Nourish

April 17, 2026
edit post
BIRD Soars: How I Called the Hottest Play of the Day

BIRD Soars: How I Called the Hottest Play of the Day

April 17, 2026
edit post
NI cap cuts salary sacrifice, hurts pensions, ICAS warns

NI cap cuts salary sacrifice, hurts pensions, ICAS warns

April 17, 2026
The Adviser Magazine

The first and only national digital and print magazine that connects individuals, families, and businesses to Fee-Only financial advisers, accountants, attorneys and college guidance counselors.

CATEGORIES

  • 401k Plans
  • Business
  • College
  • Cryptocurrency
  • Economy
  • Estate Plans
  • Financial Planning
  • Investing
  • IRS & Taxes
  • Legal
  • Market Analysis
  • Markets
  • Medicare
  • Money
  • Personal Finance
  • Social Security
  • Startups
  • Stock Market
  • Trading

LATEST UPDATES

  • Autoliv reiterates 2026 adjusted operating margin of 10.5% to 11% and $1.2B operating cash flow, while flagging $90M raw material headwind (NYSE:ALV)
  • Illinois is OpenAI and Anthropic’s latest battleground as state eyes liability for AI catastrophes
  • Negotiating With Iran | Armstrong Economics
  • Our Great Privacy Policy
  • Terms of Use, Legal Notices & Disclosures
  • Contact us
  • About Us

© Copyright 2024 All Rights Reserved
See articles for original source and related links to external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Financial Planning
    • Financial Planning
    • Personal Finance
  • Market Research
    • Business
    • Investing
    • Money
    • Economy
    • Markets
    • Stocks
    • Trading
  • 401k Plans
  • College
  • IRS & Taxes
  • Estate Plans
  • Social Security
  • Medicare
  • Legal

© Copyright 2024 All Rights Reserved
See articles for original source and related links to external sites.