Undulation cryptocurrency software library due to an important security problem, low threat wallets




  • A malicious actor used a committed Ripple Development account to publish Commitments to NPM
  • The commitments would grant access to people’s cryptographic wallets.
  • They were downloaded about 450 times before being shot down

A JavaScript library recommended by an important cryptocurrency company has been kidnapped, and users now run the risk of losing access to their cryptographic wallets, as well as the funds stored inside.

The researchers warned that Omeone managed to enter an NPM account that belongs to a developer associated with Ripple.

Leave a Comment

Your email address will not be published. Required fields are marked *