BTCC / BTCC Square / Global Cryptocurrency /
Ledger CTO Warns Crypto Users at Risk from Billion-Download NPM Hack

Ledger CTO Warns Crypto Users at Risk from Billion-Download NPM Hack

Published:
2025-09-09 10:56:03
6
2
BTCCSquare news:

A sophisticated NPM hack has compromised widely used JavaScript libraries, injecting crypto-stealing malware that targets wallet and web activity. The breach originated from a single phishing email, hijacking a developer's account to manipulate packages downloaded billions of times annually.

Ledger's Chief Technology Officer Charles Guillemet urgently flagged the threat on social media, emphasizing the vulnerability of crypto users. The malware employs string similarity algorithms to stealthily swap wallet addresses, posing systemic risks to DeFi platforms, exchanges, and hardware wallet integrations.

The attack underscores the fragility of open-source dependencies in crypto infrastructure. With no specific coins or exchanges named yet, the incident serves as a stark reminder of the sector's persistent security challenges.

|Square

Get the BTCC app to start your crypto journey

Get started today Scan to join our 100M+ users