• CONTACT
  • MARKETCAP
  • BLOG
Coin Mela Coin Mela
  • Home
  • News
    • All News
    • Bitcoin
    • Ethereum
    • XRP
    • Altcoins
    • NFT
    • Blockchain
    • Web3
    • DeFi
    • Finance
    • Stocks
    • Company
  • Learn
  • Market
  • Advertise
Reading: Large-Scale Supply Chain Attack Targets NPM Packages, Risks Crypto Transactions
Share
  • bitcoinBitcoin(BTC)$60,164.00
  • ethereumEthereum(ETH)$1,577.46
  • tetherTether(USDT)$1.00
  • binancecoinBNB(BNB)$555.14
  • usd-coinUSDC(USDC)$1.00
  • rippleXRP(XRP)$1.05
  • solanaSolana(SOL)$71.67
  • tronTRON(TRX)$0.323377
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.04
  • HyperliquidHyperliquid(HYPE)$62.98
CoinMelaCoinMela
Font ResizerAa
  • Home
  • News
  • Learn
  • Market
  • Advertise
Search
  • Home
  • News
    • All News
    • Bitcoin
    • Ethereum
    • XRP
    • Altcoins
    • NFT
    • Blockchain
    • Web3
    • DeFi
    • Finance
    • Stocks
    • Company
  • Learn
  • Market
  • Advertise
Have an existing account? Sign In
Follow US
© Coin Mela Network. All Rights Reserved.
News

Large-Scale Supply Chain Attack Targets NPM Packages, Risks Crypto Transactions

News Desk
Last updated: September 8, 2025 7:52 pm
News Desk
Published: September 8, 2025
Share
7be8e9270b54167d713bee210a1a863bcafc0915
Credits: www.coindesk.com

In a significant cybersecurity alert, Charles Guillemet, the chief technology officer at Ledger, a prominent manufacturer of hardware wallets, has raised concerns over a substantial supply chain attack affecting the Node Package Manager (NPM). This warning, shared on X, follows the compromise of a respected developer’s NPM account, leading to the insertion of malicious code into various packages that have collectively been downloaded over 1 billion times.

The nature of the attack poses a serious threat to cryptocurrency users, as the malicious code is specifically designed to alter transaction details. It stealthily swaps the intended cryptocurrency wallet addresses, directing funds to the attacker instead, thereby putting unsuspecting users at significant financial risk.

Specific details about the compromised developer’s account were not disclosed by Guillemet. However, he underscored the interconnectedness of open-source software and highlighted that security vulnerabilities in developer tools can have far-reaching implications for the cryptocurrency ecosystem. “NPM is a tool commonly used in software development using JavaScript, which makes integrating packages easy for developers,” Guillemet explained to CoinDesk.

Once a developer’s account is breached, nefarious actors can inject harmful code into widely utilized packages. By doing so, they potentially jeopardize decentralized applications and software wallets across various blockchains, which could ultimately lead to financial losses for crypto users.

Guillemet emphasized the importance of protecting oneself against such threats, recommending the use of hardware wallets equipped with secure screens that support what is known as Clear Signing. This feature allows users to see the exact wallet addresses to which their funds are being sent, helping them confirm that the addresses match their intended recipients. “Without secure screens and any wallet that fails to support Clear Signing, users are at a heightened risk of falling victim to these attacks, as verifying transaction details becomes nearly impossible,” he added.

To mitigate risks, Guillemet urged users to take precautions: “Always verify your transactions, never blindly sign, and use a hardware wallet with a secure screen. Clear Sign everything.” This moment serves as a stark reminder of the vulnerabilities present in the crypto landscape and the importance of vigilance among users.

Bitcoin and Ethereum Dip Amid Shaky US-Iran Ceasefire
Theta Capital Management Aims to Raise $200 Million for New Blockchain Funds-of-Funds
Invest in AI Boom with Roundhill Generative AI and Technology ETF
Ether Price Targeted at $250,000 Amidst Major Shifts in Financial Networks, Says Tom Lee
Trump Media Transfers $205 Million in Bitcoin Amid Potential Sale Speculations
Share This Article
Facebook Whatsapp Whatsapp
ByNews Desk
Follow:
CoinMela News Desk brings you the latest updates, insights, and in-depth coverage from the world of cryptocurrencies, blockchain, and digital finance.
Previous Article Grayscale Files for Spot Chainlink ETF as LINK Rises Grayscale Files to Convert Its Chainlink Trust Into Spot ETF
Next Article EURUSD bullish chart Large EUR/USD Approaches July High Amid Political Uncertainty in France
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular News
108290637 1776103852194 gettyimages 2210615439 20250412 carbrands 211
U.S. Auto Industry Faces Decline Amid Changing Demographics and High Prices
https2F2Fmedia.zenfs .com2Fen2Fmotleyfool.com2F34091aee355a0443c23c7a3df0b6d1d5
Is a Stock Market Crash Looming Under President Donald Trump? History Doesn’t Mince Its Words
https upload wikimedia org wikipedia commons 1 16 strait of 800x420
Iran Takes Control of Strait of Hormuz, Launches Bitcoin-Based Maritime Insurance
- Advertisement -
Ad image

Follow Us on Socials

We use social media to react to breaking news, update supporters and share information

Twitter Youtube Telegram Linkedin
Coin Mela Coin Mela
CoinMela is your one-stop destination for everything Crypto, Web3, and DeFi news.
  • About Us
  • Contact Us
  • Corrections
  • Terms and Conditions
  • Disclaimer
  • Privacy Policy
  • Advertise with Us
  • Quick Links
  • Company
  • Finance
  • Stocks
  • Bitcoin
  • News
  • XRP
  • Ethereum
  • Altcoins
  • Blockchain
  • DeFi
© Coin Mela Network. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?