• CONTACT
  • MARKETCAP
  • BLOG
Coin Mela Coin Mela
  • Home
  • News
    • All News
    • Bitcoin
    • Ethereum
    • XRP
    • Altcoins
    • NFT
    • Blockchain
    • Web3
    • DeFi
    • Finance
    • Stocks
    • Company
  • Learn
  • Market
  • Advertise
Reading: Hackers Steal $50 Worth of Crypto in Massive Supply Chain Attack on JavaScript Libraries
Share
  • bitcoinBitcoin(BTC)$115,855.00
  • ethereumEthereum(ETH)$4,740.04
  • rippleXRP(XRP)$3.11
  • tetherTether(USDT)$1.00
  • solanaSolana(SOL)$242.98
  • binancecoinBNB(BNB)$926.23
  • usd-coinUSDC(USDC)$1.00
  • dogecoinDogecoin(DOGE)$0.281261
  • staked-etherLido Staked Ether(STETH)$4,731.52
  • cardanoCardano(ADA)$0.93
CoinMelaCoinMela
Font ResizerAa
  • Home
  • News
  • Learn
  • Market
  • Advertise
Search
  • Home
  • News
    • All News
    • Bitcoin
    • Ethereum
    • XRP
    • Altcoins
    • NFT
    • Blockchain
    • Web3
    • DeFi
    • Finance
    • Stocks
    • Company
  • Learn
  • Market
  • Advertise
Have an existing account? Sign In
Follow US
© Coin Mela Network. All Rights Reserved.
News

Hackers Steal $50 Worth of Crypto in Massive Supply Chain Attack on JavaScript Libraries

News Desk
Last updated: September 9, 2025 2:28 pm
News Desk
Published: September 9, 2025
Share
01992b44 43fd 7ebb a012 d9b06468441c
Credits: cointelegraph.com

In a significant security incident affecting a vast number of JavaScript software libraries, hackers managed to infiltrate the node package manager (NPM) account of a prominent software developer, inserting malware into widely used packages. The breach could potentially endanger countless cryptocurrency projects, with specific focus on wallets for Ethereum and Solana, as highlighted by the crypto intelligence platform Security Alliance.

The intrusion has resulted in a surprisingly low amount of stolen cryptocurrency, reported to be less than $50. Security Alliance identified the Ethereum wallet address “0xFc4a48” as the only malicious address involved in this incident. The findings shared by the organization noted that, despite the access to millions of developer workstations, the hacker’s gains were minimal, contrasting sharply with the potential for significant financial theft.

A security researcher known by the pseudonym Samczsun commented on the situation, illustrating it as a missed opportunity for the attacker. He described it as akin to discovering a keycard to a heavily secured vault only to use it for a trivial purpose, further reassuring that the malware introduced has been effectively neutralized. Initially, the amount stolen was reported as just five cents, a figure that later rose to nearly $50, indicating the ongoing nature of the breach and the possibility of further developments.

Among the crypto assets affected, stolen funds included a small amount of Ether (ETH) and approximately $20 worth of various memecoins. Etherscan data revealed that the malicious address received multiple types of these memecoins, showcasing the scattered theft amidst the bigger hack.

This attack specifically targeted smaller utility packages such as chalk, strip-ansi, and color-convert, which are commonly buried deep within the dependency trees of many development projects. This poses a risk even to developers and projects that did not directly download the affected NPMs, as they may still be exposed to vulnerabilities.

NPM functions similarly to an app store for developers, serving as a central repository for sharing and downloading various code packages used to construct JavaScript applications. The malware involved is speculated to be a “crypto-clipper,” a type designed to deceitfully replace wallet addresses during transactions, potentially diverting funds to malicious accounts.

Crypto wallet providers such as Ledger and MetaMask have reassured their users about the security of their platforms, indicating the existence of “multiple layers of defense” to safeguard against such breaches. Additionally, developers from the Phantom Wallet and Uniswap stated that their applications have not been impacted by the attack. Other services, including Aerodrome, Blast, Blockstream Jade, and Revoke.cash, have also confirmed their immunity from the supply chain assault.

Despite these reassurances, 0xngmi, the founder of the crypto analytics platform DefiLlama, cautioned that only those projects that updated after the infiltration of the infected NPM package are at risk. He also noted that for any malicious transactions to take effect, user approval would still be necessary. There remains a consensus among experts urging users to exercise caution when interacting with crypto websites until developers address the vulnerabilities linked to these compromised packages.

Ethereum Dominates Capital Inflows as Institutional Interest Surges
Iris Energy Stock Jumps Over 10% Following Nebius’ AI Infrastructure Deal with Microsoft
US Treasury Tasked with Report on Strategic Bitcoin Reserve Amid Legislative Efforts
Tokenized Pokémon TCGs Are Revolutionizing Collectibles Trading
XRP Investors Turn to Cloud Mining Amid Market Uncertainty
Share This Article
Facebook Whatsapp Whatsapp
ByNews Desk
Follow:
CoinMela News Desk brings you the latest updates, insights, and in-depth coverage from the world of cryptocurrencies, blockchain, and digital finance.
Previous Article 7292f12757c20fa1cdb649a4086599fe59e4e68c 3034x1797 Bitcoin Poised for Price Swings as October Approaches Amid Low Volatility
Next Article 5a7ee770 0401 11f0 b4ed 8b203d2e3a41 US Nonfarm Payrolls Revised Downward by 911,000 Jobs Amidst Economic Concerns
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular News
urlhttp3A2F2Fnpr brightspot.s3.amazonaws.com2Fc52F152F81e0276143ebac450b206dabfa732Fgettyim
NPR Seeks Public Input on Rising Cost of Living Amid Inflation Concerns
merged image 360971
Bitget Wallet Partners with Aave to Launch Stablecoin Earn Plus with 10% APY
1757736227 image
Health Insurance Premiums Expected to Rise Over 75% Without Congressional Action
- Advertisement -
Ad image

Follow Us on Socials

We use social media to react to breaking news, update supporters and share information

Twitter Youtube Telegram Linkedin
Coin Mela Coin Mela
CoinMela is your one-stop destination for everything Crypto, Web3, and DeFi news.
  • About Us
  • Contact Us
  • Corrections
  • Terms and Conditions
  • Disclaimer
  • Privacy Policy
  • Advertise with Us
  • Quick Links
  • Finance
  • Company
  • News
  • Bitcoin
  • Ethereum
  • XRP
  • Altcoins
  • Stocks
  • DeFi
  • Blockchain
© Coin Mela Network. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?