• CONTACT
  • MARKETCAP
  • BLOG
Coin Mela Coin Mela
  • Home
  • News
    • All News
    • Bitcoin
    • Ethereum
    • XRP
    • Altcoins
    • NFT
    • Blockchain
    • Web3
    • DeFi
    • Finance
    • Stocks
    • Company
  • Learn
  • Market
  • Advertise
Reading: Hackers Steal $50 Worth of Crypto in Massive Supply Chain Attack on JavaScript Libraries
Share
  • bitcoinBitcoin(BTC)$91,156.00
  • ethereumEthereum(ETH)$3,103.78
  • tetherTether(USDT)$1.00
  • rippleXRP(XRP)$2.07
  • binancecoinBNB(BNB)$900.25
  • usd-coinUSDC(USDC)$1.00
  • solanaSolana(SOL)$133.91
  • tronTRON(TRX)$0.287673
  • staked-etherLido Staked Ether(STETH)$3,104.11
  • dogecoinDogecoin(DOGE)$0.140154
CoinMelaCoinMela
Font ResizerAa
  • Home
  • News
  • Learn
  • Market
  • Advertise
Search
  • Home
  • News
    • All News
    • Bitcoin
    • Ethereum
    • XRP
    • Altcoins
    • NFT
    • Blockchain
    • Web3
    • DeFi
    • Finance
    • Stocks
    • Company
  • Learn
  • Market
  • Advertise
Have an existing account? Sign In
Follow US
© Coin Mela Network. All Rights Reserved.
News

Hackers Steal $50 Worth of Crypto in Massive Supply Chain Attack on JavaScript Libraries

News Desk
Last updated: September 9, 2025 2:28 pm
News Desk
Published: September 9, 2025
Share
01992b44 43fd 7ebb a012 d9b06468441c
Credits: cointelegraph.com

In a significant security incident affecting a vast number of JavaScript software libraries, hackers managed to infiltrate the node package manager (NPM) account of a prominent software developer, inserting malware into widely used packages. The breach could potentially endanger countless cryptocurrency projects, with specific focus on wallets for Ethereum and Solana, as highlighted by the crypto intelligence platform Security Alliance.

The intrusion has resulted in a surprisingly low amount of stolen cryptocurrency, reported to be less than $50. Security Alliance identified the Ethereum wallet address “0xFc4a48” as the only malicious address involved in this incident. The findings shared by the organization noted that, despite the access to millions of developer workstations, the hacker’s gains were minimal, contrasting sharply with the potential for significant financial theft.

A security researcher known by the pseudonym Samczsun commented on the situation, illustrating it as a missed opportunity for the attacker. He described it as akin to discovering a keycard to a heavily secured vault only to use it for a trivial purpose, further reassuring that the malware introduced has been effectively neutralized. Initially, the amount stolen was reported as just five cents, a figure that later rose to nearly $50, indicating the ongoing nature of the breach and the possibility of further developments.

Among the crypto assets affected, stolen funds included a small amount of Ether (ETH) and approximately $20 worth of various memecoins. Etherscan data revealed that the malicious address received multiple types of these memecoins, showcasing the scattered theft amidst the bigger hack.

This attack specifically targeted smaller utility packages such as chalk, strip-ansi, and color-convert, which are commonly buried deep within the dependency trees of many development projects. This poses a risk even to developers and projects that did not directly download the affected NPMs, as they may still be exposed to vulnerabilities.

NPM functions similarly to an app store for developers, serving as a central repository for sharing and downloading various code packages used to construct JavaScript applications. The malware involved is speculated to be a “crypto-clipper,” a type designed to deceitfully replace wallet addresses during transactions, potentially diverting funds to malicious accounts.

Crypto wallet providers such as Ledger and MetaMask have reassured their users about the security of their platforms, indicating the existence of “multiple layers of defense” to safeguard against such breaches. Additionally, developers from the Phantom Wallet and Uniswap stated that their applications have not been impacted by the attack. Other services, including Aerodrome, Blast, Blockstream Jade, and Revoke.cash, have also confirmed their immunity from the supply chain assault.

Despite these reassurances, 0xngmi, the founder of the crypto analytics platform DefiLlama, cautioned that only those projects that updated after the infiltration of the infected NPM package are at risk. He also noted that for any malicious transactions to take effect, user approval would still be necessary. There remains a consensus among experts urging users to exercise caution when interacting with crypto websites until developers address the vulnerabilities linked to these compromised packages.

Solana Price Surges as Analysts Spot Remittix as the Next Big PayFi Opportunity
Top Altcoins to Watch in 2025: XRP, Cardano, and MAGACOIN FINANCE Among the Favorites
Adam Back Dismisses Quantum Computing Fears Around Bitcoin Security
Mantle Network Evolves to 2.0, Targeting Institutional On-Chain Finance with Bybit Collaboration
BlockchainFX Emerges as Top 100x Crypto Presale of 2025 with Surging Demand and High Returns
Share This Article
Facebook Whatsapp Whatsapp
ByNews Desk
Follow:
CoinMela News Desk brings you the latest updates, insights, and in-depth coverage from the world of cryptocurrencies, blockchain, and digital finance.
Previous Article 7292f12757c20fa1cdb649a4086599fe59e4e68c 3034x1797 Bitcoin Poised for Price Swings as October Approaches Amid Low Volatility
Next Article 5a7ee770 0401 11f0 b4ed 8b203d2e3a41 US Nonfarm Payrolls Revised Downward by 911,000 Jobs Amidst Economic Concerns
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular News
0902 Q1920Total20Markets20photos20and20gif CC8
Japanese Stock Market Snaps Three-Day Winning Streak, Nikkei 225 Dips 1.05%
72d0aa10 d3be 11f0 a78b 7b8ead9bc532
Air Transat to Suspend Flights Ahead of Planned Pilot Strike
1760632538 news story
Hedera Testnet Upgrade to Version 0.68 Scheduled for December 8th
- Advertisement -
Ad image

Follow Us on Socials

We use social media to react to breaking news, update supporters and share information

Twitter Youtube Telegram Linkedin
Coin Mela Coin Mela
CoinMela is your one-stop destination for everything Crypto, Web3, and DeFi news.
  • About Us
  • Contact Us
  • Corrections
  • Terms and Conditions
  • Disclaimer
  • Privacy Policy
  • Advertise with Us
  • Quick Links
  • Finance
  • Company
  • Stocks
  • Bitcoin
  • News
  • XRP
  • Ethereum
  • Altcoins
  • Blockchain
  • DeFi
© Coin Mela Network. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?