A critical security incident has compromised a widely-used software library in the Ripple XRP ecosystem, putting thousands of crypto wallets at risk.
Malicious Code Detected in xrpl.js Package
The breach affected xrpl.js, Ripple’s recommended JavaScript library for interacting with the XRP Ledger, after a hacker inserted malicious code designed to steal private wallet credentials.
The vulnerability came to light on Monday evening, when security researchers at Aikido, a crypto-focused cybersecurity firm, discovered unauthorized code within the official Node Package Manager (NPM) distribution of xrpl.js. The backdoor was detected in multiple versions of the library published to the NPM registry between 4:46 PM and 5:49 PM Eastern Time.
According to Aikido’s Charlie Eriksen, who identified the exploit, the malicious update posed a potentially catastrophic risk to the cryptocurrency supply chain. The compromised package was capable of stealing wallet seeds and private keys,
We współpracy z: https://cryptodaily.co.uk/2025/04/hacker-compromises-ripples-xrpl-javascript-library-in-major-supply-chain-attack