SEAL Reveals Largest NPM Cryptocurrency Supply Chain Attack with Minimal Financial Impact
SEAL has uncovered the largest NPM-based supply chain attack in cryptocurrency history, though the breach resulted in only $50 of stolen funds. The attack targeted Node Package Manager (NPM) accounts, injecting malware into widely used JavaScript libraries to compromise crypto wallets. Despite its scale, the financial damage was negligible.
The three-month campaign exploited open-source libraries, distributing malicious packages that harvested wallet data and private keys. SEAL's findings highlight evolving cyber threats in the crypto ecosystem, emphasizing the need for heightened security measures among developers and projects.