NPM Supply Chain Breach Hits the JavaScript Ecosystem: Ledger CTO Warns Crypto Users

NPM Supply Chain Breach Hits the JavaScript Ecosystem: Ledger CTO Warns Crypto Users
[[{„value”:”

A massive supply chain attack has compromised a developer’s NPM account.
The affected packages, with over 1B downloads, have put the JavaScript ecosystem at risk.

A major supply chain attack has thrown the JavaScript ecosystem into chaos, putting developers and crypto users on high alert. In response, Ledger’s CTO, Charles Guillemet, is urging hardware wallet owners to be extra vigilant and manually review every single transaction before approving it.
The breach started after the account of a well-known NPM developer was taken over, allowing attackers to publish malicious updates to widely used JavaScript packages. Together, these compromised packages have been downloaded more than a billion times. It makes the incident one of the most serious to date.
An attacker recently gained access to the qix NPM account, which is connected to some of the most fundamental libraries in the JavaScript ecosystem. This compromise affected several key packages, including chalk, stri

Czytaj więcej

We współpracy z: https://thenewscrypto.com/npm-supply-chain-breach-hits-the-javascript-ecosystem-ledger-cto-warns-crypto-users/

Total
0
Shares
Dodaj komentarz

Podobne Wpisy