Close Menu
Altcoin ObserverAltcoin Observer
  • Regulation
  • Bitcoin
  • Altcoins
  • Market
  • Analysis
  • DeFi
  • Security
  • Ethereum
Categories
  • Altcoins (1,276)
  • Analysis (1,468)
  • Bitcoin (2,047)
  • Blockchain (1,188)
  • DeFi (1,403)
  • Ethereum (1,410)
  • Event (55)
  • Exclusive Deep Dive (1)
  • Landscape Ads (2)
  • Market (1,446)
  • Press Releases (1)
  • Reddit (700)
  • Regulation (1,344)
  • Security (1,939)
  • Thought Leadership (2)
  • Uncategorized (1)
  • Videos (41)
Hand picked
  • Ethereum joins bitcoin in the red – volatility is looming in advance
  • Bitcoin Tops $111,000 in Pizza Day All-Time High
  • GameStop and K33 loading on Bitcoin in the latest corporate purchases
  • Trump Panic? The whale draws $ 4 million in the middle of the second warning of “no protection”
  • Wvared Investment Guild updates the brand under Grayson Preston
We are social
  • Facebook
  • Twitter
  • Instagram
  • YouTube
Facebook X (Twitter) Instagram
  • About us
  • Disclaimer
  • Terms of service
  • Privacy policy
  • Contact us
Facebook X (Twitter) Instagram YouTube LinkedIn
Altcoin ObserverAltcoin Observer
  • Regulation
  • Bitcoin
  • Altcoins
  • Market
  • Analysis
  • DeFi
  • Security
  • Ethereum
Events
Altcoin ObserverAltcoin Observer
Home»Altcoins»Hacker tries to attack XRP Ledger using access to the developer, the security team stops it
Altcoins

Hacker tries to attack XRP Ledger using access to the developer, the security team stops it

April 23, 2025No Comments4 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
1f6a8.png
Share
Facebook Twitter LinkedIn Pinterest Email


A potential security crisis was avoided closely after a hacker has exploited the access token of a developer to inject malicious code into a key tool used by applications on the large XRP book.

The vulnerability, identified by the Aikido security researcher, Charlie Eriksen, could have led to a large supply of supply chain through the cryptography ecosystem.

Hacker uses the NPM token to publish XRPL.js malicious versions on XRP Ledger

According to Aikido Security, the attacker had access to the token of the Nodes Package Manager (NPM) of a developer, allowing them to publish compromise versions of XRPL.JS, the official JavaScript library to interact with the large XRP book.

With more than 140,000 weekly downloads, the package is widely integrated into hundreds of thousands of applications and websites, which raises concerns about the potential scale of violation.

“It could have been catastrophic,” warned Eriksen in an update of security, noting that the flaw theoretically allowed attackers to steal private keys, by endangering cryptographic wallets.

The malicious code was detected on April 21, when the Aikido surveillance system reported five suspect package versions.

🚨We discovered a stolen door in the civil servant #xrpl NPM package. This rear door steals the private keys and sends them to the attackers. Assigned versions 4.2.1 – 4.2.4, if you use an earlier version, do not set up.#crypto #malware #Npm pic.twitter.com/wshctfkjbr

– Aikido safety (@Aikidosecurity) April 22, 2025

Fortunately, the main platforms linked to XRP such as Xaman Wallet and Xrpscan confirmed that they were not affected.

The risk was limited to third -party applications that installed the compromised versions – V4.2.1 to V4.2.4 and V2.14.2 – during a short window before the problem was contained.

The XRP Ledger Foundation responded quickly, depreciating the affected versions and releasing an update corrected, V4.2.5, urging all developers using XRPL.JS to upgrade immediately.

The foundation said that the Core XRP Ledger code base and its Github repository remained intact, as the vulnerability was isolated at the external JavaScript library.

While the identity of the pirate remains unknown, the security of Aikido has suggested to have avenues under investigation.

With today’s NPM vulnerability, it’s a clear reminder to really know what you are using.

In Xaman, our history is talking about himself.

We were full of features, first of all security from the first day, building everything internally.

No shortcuts.

This is what confidence looks like. https://t.co/lh1nefrlph

– Robert @xamanwallet (@Robertkiuru) April 22, 2025

Despite fear, XRP prices have shown resilience, up 8.5% in the last 24 hours in the middle of a wider rally in the cryptography market.

The dry trial against Ripple Labs concludes after four years

The legal dispute between Ripple Labs and the Securities and Exchange Commission (SEC) of the United States ended after more than four years, marking a significant development in the regulation of cryptocurrencies.

In December 2020, the SEC filed a complaint against Ripple Labs, alleging that the company had led an offer of uncrowded titles by selling XRP tokens, rising more than $ 1.3 billion.

Ripple challenged the complaint, arguing that XRP is a digital currency, not a guarantee.

In July 2023, the US district judge Anals Torres made a mixed decision: she determined that XRP sales to institutional investors violated securities laws, while sales on public exchanges did not do so.

Consequently, Ripple was ordered to pay a civil sanction of $ 125 million. ​

In March 2025, Ripple and the SEC reached regulation. Under the agreement, Ripple would pay $ 50 million in the previously imposed fine, the remaining $ 75 million returned to the company.

The two parties agreed to remove their respective calls, effectively implementing the dispute.

The Hacker Post tries to attack XRP Ledger using access to the developer, the security team stops, he appeared first on Cryptonews.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleBitcoin between the 5 best workers in the world, exceeding Google, Silver, Amazon
Next Article DOGECOIN Optimistic flashes at $ 0.195 with an imminent escape from the key graphic model

Related Posts

Altcoins

Trump Panic? The whale draws $ 4 million in the middle of the second warning of “no protection”

May 31, 2025
Altcoins

Bitcoin is still in a strong upward trend despite the loss of the level of major support, explains Trader – here is his prospects

May 31, 2025
Altcoins

Arkham retraces $ 7.6 billion in Bitcoin to the strategy despite the position of Saylor’s confidentiality

May 31, 2025
Add A Comment
Leave A Reply Cancel Reply

Single Page Post
Share
  • Facebook
  • Twitter
  • Instagram
  • YouTube
Featured Content
Event

Kenya to Host Africa’s Leading Blockchain & Crypto Conference in June 2025 

May 30, 2025

Nairobi, Kenya – May 2025 — Africa’s rapidly evolving blockchain ecosystem will take center stage…

Event

Crypto Vision Conference 2025: A Breakthrough Day for Web3 in the Philippines

May 29, 2025

Makati City, Philippines — April 26, 2025 — The AIM Conference Center was a hub…

1 2 3 … 48 Next
  • Facebook
  • Twitter
  • Instagram
  • YouTube

Trump Panic? The whale draws $ 4 million in the middle of the second warning of “no protection”

May 31, 2025

Bitcoin is still in a strong upward trend despite the loss of the level of major support, explains Trader – here is his prospects

May 31, 2025

Arkham retraces $ 7.6 billion in Bitcoin to the strategy despite the position of Saylor’s confidentiality

May 31, 2025
Facebook X (Twitter) Instagram LinkedIn
  • About us
  • Disclaimer
  • Terms of service
  • Privacy policy
  • Contact us
© 2025 Altcoin Observer. all rights reserved by Tech Team.

Type above and press Enter to search. Press Esc to cancel.

bitcoin
Bitcoin (BTC) $ 104,854.09
ethereum
Ethereum (ETH) $ 2,544.81
tether
Tether (USDT) $ 1.00
xrp
XRP (XRP) $ 2.20
bnb
BNB (BNB) $ 660.28
solana
Solana (SOL) $ 157.53
usd-coin
USDC (USDC) $ 1.00
dogecoin
Dogecoin (DOGE) $ 0.1946
tron
TRON (TRX) $ 0.266432
cardano
Cardano (ADA) $ 0.691455