BTCC / BTCC Square / Global Cryptocurrency /
Hackers Exploit JavaScript Developer Accounts in Massive Crypto Malware Attack

Hackers Exploit JavaScript Developer Accounts in Massive Crypto Malware Attack

Published:
2025-09-08 21:39:02
10
3
BTCCSquare news:

A major supply-chain attack has compromised widely used JavaScript packages, potentially endangering billions in cryptocurrency assets. Charles Guillemet, CTO at Ledger, revealed that hackers hijacked a reputable developer's Node Package Manager (NPM) account to inject malicious code into packages downloaded over a billion times.

The malware stealthily replaces cryptocurrency wallet addresses during transactions, diverting funds to attackers. "The code systematically swaps transaction addresses with hacker-controlled ones," Guillemet stated. The breach targets NPM, a Core JavaScript development tool, allowing attackers to infiltrate decentralized applications and software wallets through compromised dependencies.

|Square

Get the BTCC app to start your crypto journey

Get started today Scan to join our 100M+ users