No Result
View All Result
SUBMIT YOUR ARTICLES
  • Login
Sunday, May 10, 2026
TheAdviserMagazine.com
  • Home
  • Financial Planning
    • Financial Planning
    • Personal Finance
  • Market Research
    • Business
    • Investing
    • Money
    • Economy
    • Markets
    • Stocks
    • Trading
  • 401k Plans
  • College
  • IRS & Taxes
  • Estate Plans
  • Social Security
  • Medicare
  • Legal
  • Home
  • Financial Planning
    • Financial Planning
    • Personal Finance
  • Market Research
    • Business
    • Investing
    • Money
    • Economy
    • Markets
    • Stocks
    • Trading
  • 401k Plans
  • College
  • IRS & Taxes
  • Estate Plans
  • Social Security
  • Medicare
  • Legal
No Result
View All Result
TheAdviserMagazine.com
No Result
View All Result
Home Market Research Cryptocurrency

NPM Attack Injects Crypto-Stealing Malware Into Core JavaScript Libraries

by TheAdviserMagazine
8 months ago
in Cryptocurrency
Reading Time: 2 mins read
A A
NPM Attack Injects Crypto-Stealing Malware Into Core JavaScript Libraries
Share on FacebookShare on TwitterShare on LInkedIn


Hackers have compromised widely used JavaScript software libraries in what’s being called the largest supply chain attack in history. The injected malware is reportedly designed to steal crypto by swapping wallet addresses and intercepting transactions.

According to several reports on Monday, hackers broke into the node package manager (NPM) account of a well-known developer and secretly added malware to popular JavaScript libraries used by millions of apps.

The malicious code swaps or hijacks crypto wallet addresses, potentially putting many projects at risk.

“There’s a large-scale supply chain attack in progress: the NPM account of a reputable developer has been compromised,” Ledger Chief Technology Officer Charles Guillemet warned on Monday. “The affected packages have already been downloaded over 1 billion times, meaning the entire JavaScript ecosystem may be at risk.”

Source: Minal Thukral

The breach targeted packages such as chalk, strip-ansi and color-convert — small utilities buried deep in the dependency trees of countless projects. Together, these libraries are downloaded more than a billion times each week, meaning even developers who never installed them directly could be exposed.

NPM is like an app store for developers — a central library where they share and download small code packages to build JavaScript projects.

Attackers appear to have planted a crypto-clipper, a type of malware that silently replaces wallet addresses during transactions to divert funds.

Security researchers warned that users relying on software wallets may be especially vulnerable, while those confirming every transaction on a hardware wallet are protected.

Phishing emails gave attackers access to NPM maintainer accounts

Attackers sent emails posing as official NPM support, warning maintainers that their accounts would be locked unless they “updated” two-factor authentication by September 10.

The fake site captured login credentials, giving hackers control over a maintainer’s account. Once inside, the attackers pushed malicious updates to packages with billions of weekly downloads.

Charlie Eriksen, a researcher at Aikido Security, told BleepingComputer the attack was especially dangerous because it operated “at multiple layers: altering content shown on websites, tampering with API calls, and manipulating what users’ apps believe they are signing.”

JavaScript, Hackers
Phishing email sent to JavaScript developers on Monday. Source: Github/Burnett01

This is a developing story, and further information will be added as it becomes available.

Magazine: Inside a 30,000 phone bot farm stealing crypto airdrops from real users



Source link

Tags: attackCoreCryptoStealingInjectsJavaScriptLibrariesMalwareNPM
ShareTweetShare
Previous Post

Signet (SIG) remains well-positioned for its all-important season, here’s why

Next Post

5 Dividend “Rules” That Don’t Hold Up in 2025

Related Posts

edit post
‘Prediction Market ETF Soon’: Expert Shares Insight From SEC Commissioner Speech

‘Prediction Market ETF Soon’: Expert Shares Insight From SEC Commissioner Speech

by TheAdviserMagazine
May 10, 2026
0

Prediction market ETFs may be coming soon, according to comments from ETF experts. The optimism comes after one of the...

edit post
After the .5 billion in exploits, DeFi is now being forced toward the controls it once resisted

After the $16.5 billion in exploits, DeFi is now being forced toward the controls it once resisted

by TheAdviserMagazine
May 10, 2026
0

Make CryptoSlate preferred on The rsETH crisis resulted in $200 million in bad debt on Aave's books, despite not a...

edit post
Altcoin Trading Volume Shoots Up: Is The Altseason Upon Us Again?

Altcoin Trading Volume Shoots Up: Is The Altseason Upon Us Again?

by TheAdviserMagazine
May 10, 2026
0

Following the recent uptick in altcoin prices, conversations about the potential start of an altseason are gaining significant momentum. Interestingly,...

edit post
Saylor Posts ‘Back to Work’ Signal as Strategy Eyes More Bitcoin After One-Week Pause – Bitcoin News

Saylor Posts ‘Back to Work’ Signal as Strategy Eyes More Bitcoin After One-Week Pause – Bitcoin News

by TheAdviserMagazine
May 10, 2026
0

Key TakeawaysSaylor posted “Back to work. BTC” on May 10, signaling Strategy’s return to bitcoin accumulation after a one-week pause.Strategy...

edit post
South Korea’s Crypto Market Loses Half Its Value as Stock Boom Pulls Investors Away

South Korea’s Crypto Market Loses Half Its Value as Stock Boom Pulls Investors Away

by TheAdviserMagazine
May 10, 2026
0

The value of cryptocurrency held by South Korean investors more than halved over the past year, falling from 121.8 trillion...

edit post
US and Iran announce framework to ease tensions, reopen Strait of Hormuz

US and Iran announce framework to ease tensions, reopen Strait of Hormuz

by TheAdviserMagazine
May 10, 2026
0

## Market Snapshot Iranian Demands Trump Will Agree To: Pricing suggests increased likelihood of US concessions. WTI Crude Oil Prices...

Next Post
edit post
5 Dividend “Rules” That Don’t Hold Up in 2025

5 Dividend “Rules” That Don’t Hold Up in 2025

edit post
10 Portfolio Rebalancing Mistakes Investors Keep Repeating

10 Portfolio Rebalancing Mistakes Investors Keep Repeating

  • Trending
  • Comments
  • Latest
edit post
Gavin Newsom issues ‘final warning’ amid California’s dire housing crisis — what’s at stake for millions of residents

Gavin Newsom issues ‘final warning’ amid California’s dire housing crisis — what’s at stake for millions of residents

May 3, 2026
edit post
Florida Warning: With Senior SNAP Benefits Averaging 8/Month, Thousands Risk Losing Assistance in 2026

Florida Warning: With Senior SNAP Benefits Averaging $188/Month, Thousands Risk Losing Assistance in 2026

April 27, 2026
edit post
Minnesota Wealth Tax | Intangible Personal Property Tax

Minnesota Wealth Tax | Intangible Personal Property Tax

May 6, 2026
edit post
10 Cheapest High Dividend Stocks With P/E Ratios Under 10

10 Cheapest High Dividend Stocks With P/E Ratios Under 10

April 13, 2026
edit post
Exclusive: America’s largest Black-owned bank launches podcast with mission to unlock hidden shame holding back generational wealth

Exclusive: America’s largest Black-owned bank launches podcast with mission to unlock hidden shame holding back generational wealth

April 29, 2026
edit post
NYC Mayor Mamdani knocked Ken Griffin in pied-a-terre tax promo. His firm calls the move ‘shameful’

NYC Mayor Mamdani knocked Ken Griffin in pied-a-terre tax promo. His firm calls the move ‘shameful’

April 23, 2026
edit post
8 “Micro-Habits” of Super-Agers Who Have No Cognitive Decline After Age 90

8 “Micro-Habits” of Super-Agers Who Have No Cognitive Decline After Age 90

0
edit post
Trump rejects Iran peace proposal as Tehran vows to confront ‘enemies’

Trump rejects Iran peace proposal as Tehran vows to confront ‘enemies’

0
edit post
‘Prediction Market ETF Soon’: Expert Shares Insight From SEC Commissioner Speech

‘Prediction Market ETF Soon’: Expert Shares Insight From SEC Commissioner Speech

0
edit post
Economists’ Greatest Fear Is Almost Here

Economists’ Greatest Fear Is Almost Here

0
edit post
Global Market Today: Tech boost lifts Asian stocks as Iran risks push oil higher

Global Market Today: Tech boost lifts Asian stocks as Iran risks push oil higher

0
edit post
How to buy a major Dow component, at a discount

How to buy a major Dow component, at a discount

0
edit post
Trump rejects Iran peace proposal as Tehran vows to confront ‘enemies’

Trump rejects Iran peace proposal as Tehran vows to confront ‘enemies’

May 10, 2026
edit post
Global Market Today: Tech boost lifts Asian stocks as Iran risks push oil higher

Global Market Today: Tech boost lifts Asian stocks as Iran risks push oil higher

May 10, 2026
edit post
Economists’ Greatest Fear Is Almost Here

Economists’ Greatest Fear Is Almost Here

May 10, 2026
edit post
The 4% Rule Worked in the Past. Will It Fail the Next Generation of Retirees?

The 4% Rule Worked in the Past. Will It Fail the Next Generation of Retirees?

May 10, 2026
edit post
Markets dip as US-Iran ceasefire goes nowhere, leaving Trump with a military option to reopen Hormuz

Markets dip as US-Iran ceasefire goes nowhere, leaving Trump with a military option to reopen Hormuz

May 10, 2026
edit post
‘Prediction Market ETF Soon’: Expert Shares Insight From SEC Commissioner Speech

‘Prediction Market ETF Soon’: Expert Shares Insight From SEC Commissioner Speech

May 10, 2026
The Adviser Magazine

The first and only national digital and print magazine that connects individuals, families, and businesses to Fee-Only financial advisers, accountants, attorneys and college guidance counselors.

CATEGORIES

  • 401k Plans
  • Business
  • College
  • Cryptocurrency
  • Economy
  • Estate Plans
  • Financial Planning
  • Investing
  • IRS & Taxes
  • Legal
  • Market Analysis
  • Markets
  • Medicare
  • Money
  • Personal Finance
  • Social Security
  • Startups
  • Stock Market
  • Trading

LATEST UPDATES

  • Trump rejects Iran peace proposal as Tehran vows to confront ‘enemies’
  • Global Market Today: Tech boost lifts Asian stocks as Iran risks push oil higher
  • Economists’ Greatest Fear Is Almost Here
  • Our Great Privacy Policy
  • Terms of Use, Legal Notices & Disclosures
  • Contact us
  • About Us

© Copyright 2024 All Rights Reserved
See articles for original source and related links to external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Financial Planning
    • Financial Planning
    • Personal Finance
  • Market Research
    • Business
    • Investing
    • Money
    • Economy
    • Markets
    • Stocks
    • Trading
  • 401k Plans
  • College
  • IRS & Taxes
  • Estate Plans
  • Social Security
  • Medicare
  • Legal

© Copyright 2024 All Rights Reserved
See articles for original source and related links to external sites.