Hackers launch large-scale encryption attacks using JavaScript accounts, potentially affecting 1 billion downloads
ChainCatcher news, according to Finance Magnates, Ledger CTO Charles Guillemet warned on X about an NPM supply chain attack, where hackers compromised well-known developer accounts to push malicious code to widely used JavaScript packages, with the cumulative downloads of the affected packages reportedly exceeding 1 billion.
According to reports, the intrusion began with phishing emails sent to NPM maintainers claiming that their accounts would be locked unless they updated their two-factor authentication by September 10.






