|

Crypto software wallets at risk following supply chain attack

  • Ledger CTO Charles Guillemet warned of a large-scale supply chain attack that could affect software crypto wallets.
  • The warning follows reports of a reputable developer's NPM account being compromised.
  • Guillemet cautioned against performing on-chain transactions.

Charles Guillemet, Chief Technology Officer at Ledger, warned on Monday of a large-scale supply chain attack targeting crypto software wallets after the Node Package Manager (NPM) account of open-source developer qix was compromised.

Software wallets could face attacks from NPM breach

Crypto software wallets could be vulnerable to malicious attacks when performing transactions, said Guillemet in an X post on Monday.

Guillemet noted that a major supply chain attack has been underway after reputable developer qix's NPM account was compromised.

A supply chain attack targets a third-party vendor that provides services or software essential to the supply chain.

The hacked NPM was reportedly used to distribute malware designed to scan and exploit crypto wallets. Once crypto is detected, the malware alters the code responsible for signing transactions and redirects funds to addresses controlled by its creators.

"The malicious payload works by silently swapping crypto addresses on the fly to steal funds," wrote Guillemet.

NPM serves as a central registry and library for JavaScript software packages, offering command-line tools that allow developers to install and manage packages. NPM is largely used on open-source platforms and is a core part of the JavaScript ecosystem, widely relied upon for sharing and distributing code.

Guillemet added that the packages involved had been downloaded more than a billion times.

He noted that the malware poses a greater risk to software wallet users than to those with hardware wallets, urging the former to avoid making on-chain transactions.

"If you use a hardware wallet, pay attention to every transaction before signing and you're safe. If you don't use a hardware wallet, refrain from making any on-chain transactions for now," Guillemet added.

The development sparked concerns among crypto developers about the potential impact of the attacks on crypto wallets.

DefiLlama developer and pseudonymous figure Oxngmi stated on X that the supply-chain attack can only affect websites that "pushed an update since the hacked NPM package was published."

https://x.com/0xngmi/status/1965125988016087050

He reiterated Guillemet's view, stating that it is "safer to avoid using crypto websites till this blows over and they clean up the bad packages."

However, several top crypto platforms, including MetaMask wallet, Uniswap, Aave and Jupiter have stated that their systems are unaffected by the developments.

Meanwhile, Switzerland-based crypto exchange SwissBorg suffered an attack in which hackers stole 193,000 SOL, worth about $41.5 million at the time. The exchange stated that the attack involved the compromise of a partner API in its SOL Earn Program, affecting less than 1% of users.

Author

Michael Ebiekutan

With a deep passion for web3 technology, he's collaborated with industry-leading brands like Mara, ITAK, and FXStreet in delivering groundbreaking reports on web3's transformative potential across diverse sectors. In addi

More from Michael Ebiekutan
Share:

Editor's Picks

Sonic Labs’ vertical integration fuels recovery in S token

Sonic, previously Fantom (FTM), is extending its recovery trade at $0.048 at the time of writing, after rebounding by over 12% the previous day. The recovery thesis’ strengths lie in the optimism surrounding Sonic Labs’ Wednesday announcement to shift to a vertically integrated model, aimed at boosting S token utility. 

Midnight Price Forecast: NIGHT warms up as Hoskinson reveals March mainnet release

Midnight edges higher by 2% at press time on Thursday, driven by its founder announcing the mainnet release by late March at the Consensus 2026 event. The technical outlook for Midnight highlights a potential bottom formation that could ignite the next bullish trend.

Cardano Price Forecast: ADA eyes short-term rebound as derivatives sentiment improves

Cardano (ADA) is trading at $0.257 at the time of writing on Thursday, after slipping more than 4% so far this week. Derivatives sentiment improves as ADA’s funding rates turn positive alongside rising long bets among traders.

Top Crypto Gainers: Pippin rally logs over 75% gains, Aster and Kaia push higher

Altcoins, such as Pippin (PIPPIN), Aster (ASTER) and Kaia (KAIA) continue to trade in the green, defying the broader market pullback as Bitcoin (BTC) dropped to below $68,000. PIPPIN continues to rally and ASTER and KAIA show short-term recovery with possibilities of a breakout rally.

Bitcoin Price Annual Forecast: BTC holds long-term bullish structure heading into 2026

Bitcoin (BTC) is wrapping up 2025 as one of its most eventful years, defined by unprecedented institutional participation, major regulatory developments, and extreme price volatility.

Bitcoin: The worst may be behind us

Bitcoin (BTC) price recovers slightly, trading at $65,000 at the time of writing on Friday, after reaching a low of $60,000 during the early Asian trading session. The Crypto King remained under pressure so far this week, posting three consecutive weeks of losses exceeding 30%.