flash on Nostr: ⚡️🚨 ALERT - Aikido Security has flagged what may be the largest npm supply ...
⚡️🚨 ALERT - Aikido Security has flagged what may be the largest npm supply chain hack ever targeting crypto holders.
A long-trusted maintainer (“qix”) was phished, and 18 popular packages, including chalk, debug, and ansi-styles (2B+ weekly downloads), were injected with wallet-draining code.
The malware silently swaps crypto addresses in MetaMask, Phantom, and other software wallets. Users see the correct recipient, but funds are rerouted to attacker-controlled addresses.
The compromised packages have already been downloaded over 1B times, putting the entire JavaScript ecosystem at risk.
🔒 Hardware wallet users: verify every transaction before signing.
⚠️ Software wallet users: avoid on-chain transactions for now.
Published at
2025-09-08 18:11:56 UTCEvent JSON
{
"id": "efea97688a383bbd706d807b9354e9356e6c09cd56d12c83159e405ffc33d847",
"pubkey": "4d7842051782e0d3feb034d150adc2b6bae4ee3b49786793bffa468b6f5b96b3",
"created_at": 1757355116,
"kind": 1,
"tags": [],
"content": "⚡️🚨 ALERT - Aikido Security has flagged what may be the largest npm supply chain hack ever targeting crypto holders. \n\nA long-trusted maintainer (“qix”) was phished, and 18 popular packages, including chalk, debug, and ansi-styles (2B+ weekly downloads), were injected with wallet-draining code.\n\nThe malware silently swaps crypto addresses in MetaMask, Phantom, and other software wallets. Users see the correct recipient, but funds are rerouted to attacker-controlled addresses.\n\nThe compromised packages have already been downloaded over 1B times, putting the entire JavaScript ecosystem at risk.\n\n🔒 Hardware wallet users: verify every transaction before signing.\n⚠️ Software wallet users: avoid on-chain transactions for now.\nhttps://blossom.primal.net/27e5a41781379d3df5f93f0979df226952be612f97d83337eee8e0f692ba4c57.jpg",
"sig": "ed3707c928835ebc99a62148543b77128d187df5145a56b5c10a13467c9f3505d86f33a906a7470085c95a23ea391ca37b266caab6fdfdae0747273eea20bb99"
}