"Each published package becomes a new distribution vector: as soon as someone installs it, the worm executes, replicates, and ...
An NPM supply chain attack has prompted Ledger Chief Technology Officer Charles Guillemet to urge crypto users to pause on-chain transactions.
JavaScript packages with billions of downloads were compromised by an unknown threat actor looking to steal cryptocurrency.
Less $50 worth of crypto has been stolen from the large-scale JavaScript libraries attack on Monday, which targeted Ethereum ...
Hackers hijacked NPM libraries in a massive supply chain attack, injecting malware that swaps crypto wallet addresses to steal funds.
Google releases critical Chrome update patching zero-day CVE-2025-10585, discovered Sept 16, to block active V8 JavaScript ...
The malware was found in 18 npm packages that together are usually downloaded over 2 billion times per week. But the security ...
Crypto intelligence platform Security Alliance released a report on Sep. 8 to reveal that Ethereum and Solana wallets have ...
Hackers launched the largest NPM crypto attack in history and compromised 18 JavaScript packages with billions of downloads.