Ledger CTO Warns Of Ongoing NPM Supply Chain Attack, Advises Users To Halt Onchain Transactions

Ledger Chief Technology Officer Charles Guillemet on Monday urged crypto users to take immediate precautions following what appears to be a large-scale supply chain cyberattack targeting the JavaScript ecosystem.

In a post on X, Guillemet explained that the NPM account of a trusted developer was compromised, with malicious code embedded into widely used packages.

These packages have reportedly been downloaded over one billion times, raising concerns that countless applications, including those tied to cryptocurrency, could be vulnerable.

“There’s a large-scale supply chain attack in progress,” Guillemet said, adding that those using hardware wallets remain safe as long …

Full story available on Benzinga.com