Close Menu
Crypto Breaking News
    24 November 2025
    FacebookX (Twitter)InstagramYouTubeLinkedInTikTokTelegramRSS
    Crypto Breaking News
    • News
      • Press Release
      • Press Releases by PR Newswire
      • News by Coincu
      • News by Blockchain Wire
      • News by CoinPedia
      • Events
      • Exchanges
      • Crypto Wallets
      • Featured
      • Blockchain Life
      • Bitcoin Conference
      • Bitcoin
      • Ethereum
      • Solana
      • Cardano
      • Ripple
    • Crypto
      • Companies
      • Events
      • Partners
      • Buy Crypto
      • Timers
    • Advertise
      • Submit a Press Release
      • Logos
      • About
      • Services
    • Offers
      • Marketing Services
      • Wallets & Tools
    • Account
    • Video
    • Contact
    Submit PR
    0Shopping Cart
    Login
    Crypto Breaking News
    0Shopping Cart
    Home » Crypto News » Cryptocurrency » New NPM Supply Chain Hack Threatens ENS and Cryptocurrency Security
    Crypto News Cryptocurrency Ethereum

    New NPM Supply Chain Hack Threatens ENS and Cryptocurrency Security

    7 hours ago
    FacebookTwitterLinkedInCopy Link
    News Feed
    Google NewsRSS
    New Npm Supply Chain Hack Threatens Ens And Cryptocurrency Security
    New Npm Supply Chain Hack Threatens Ens And Cryptocurrency Security

    Major Supply-Chain Attack Targets Crypto-Related Software Packages

    A significant JavaScript supply-chain attack has compromised over 400 software packages, including at least 10 heavily used within the cryptocurrency ecosystem. The breach was uncovered by cybersecurity firm Aikido Security, highlighting the evolving threat landscape faced by developers and users alike.

    In a detailed blog post, researcher Charlie Eriksen outlined the scope of the infection, identifying packages infected with the “Shai Hulud” malware—an autonomous, self-replicating strain designed to spread across developer environments. Eriksen confirmed the validity of each detection to prevent false positives. Many of these packages are responsible for critical functions, with some receiving tens of thousands of weekly downloads, emphasizing the widespread potential impact.

    Of particular concern are the affected packages associated with the Ethereum Name Service (ENS), which facilitate human-readable blockchain addresses. Notable among these are ENS’s content-hash, with nearly 36,000 weekly downloads, and address-encoder, with over 37,500 weekly downloads. Other ENS packages, such as ensjs, ens-validation, ethereum-ens, and ens-contracts, are also compromised. A separate package, crypto-addr-codec, unrelated to ENS, with nearly 35,000 weekly downloads, was also affected.

    Source: Charlie Eriksen

    This incident is part of a broader trend of supply-chain attacks. In September, the largest NPM attack to date resulted in approximately $50 million stolen from crypto assets. Amazon Web Services highlighted that this incident was followed by the spread of the Shai-Hulud worm, which replicated itself across environments post-initial breach.

    Unlike previous targeted thefts, Shai Hulud primarily acts as a credential-stealer, spreading autonomously and harvesting wallet keys and other secrets stored within infected environments. This capability poses a significant threat to the security of blockchain assets if such secrets are stored insecurely.

    Scope of the Affected Packages

    Among the impacted packages, at least 10 are directly related to cryptocurrency functions, predominantly tied to the ENS ecosystem. Packages such as content-hash, with nearly 36,000 weekly downloads, and address-encoder, exceeding 37,500 downloads, are critical components used by developers to handle address and name resolution. Other key packages affected include ensjs, ens-validation, ethereum-ens, and ens-contracts.

    Beyond crypto, several non-crypto packages are compromised, including popular tools from Zapier, like @zapier/secret-scrubber, with over 40,000 weekly downloads. Eriksen warned that affected packages with high download volumes, some approaching 70,000 weekly downloads, underscore the widespread reach of the malware.

    Researchers from Wiz estimate that over 25,000 repositories across hundreds of users have been impacted, with new compromised repositories added every 30 minutes. The cybersecurity community urges immediate investigations and remediation efforts for any environment utilizing npm packages.

    Crypto Investing Risk Warning
    Crypto assets are highly volatile. Your capital is at risk. Don’t invest unless you’re prepared to lose all the money you invest. Read the full disclaimer

    Affiliate Disclosure
    This article may contain affiliate links. See our Affiliate Disclosure for more information.

    Crypto Breaking News
    • Website
    • Facebook
    • X (Twitter)
    • Pinterest
    • Instagram
    • Tumblr
    • LinkedIn

    The Crypto Breaking News editorial team curates the latest news, updates, and insights from the global cryptocurrency and blockchain industry.

    Related Posts

    Are Bitcoin Bottoms In? Will Altcoins Fall Next? | Crypto Market Insights

    Are Bitcoin Bottoms In? Will Altcoins Fall Next? | Crypto Market Insights

    How Far Can Zcash Price Drop After 30% Crash From November Peak?

    How Far Can Zcash Price Drop After 30% Crash From November Peak?

    Search Crypto News

    Join 15,000+ Crypto Followers

    • Facebook2.2K
    • Twitter4.1K
    • Instagram4.3K
    • LinkedIn3.6K
    • Telegram50
    • Threads650

    Newsletter

    10% off on first order!

    Privacy Policy

    Check your inbox or spam folder to confirm your subscription.

    Global Blockchain Show - Riyadh
    Binance

    Featured Crypto News

    Tangem Wallet Black Friday: Big Savings + Btc

    Tangem Black Friday: 30% Off + 10 USD in BTC

    The New Credit Economy: How Direct Lending Empowers SMEs and Investors Alike

    The New Credit Economy: How Direct Lending Empowers SMEs and Investors Alike

    About Crypto Breaking News

    About Crypto Breaking News

    Crypto Breaking News is a fast-growing digital media platform focused on the latest developments in cryptocurrency, blockchain, and Web3 technologies. Our goal is to provide fast, reliable, and insightful content that helps our readers stay ahead in the ever-evolving digital asset space.

    Contacts:
    📞 +971 50 449 2025
    ✉️ info@cryptobreaking.com
    📍Meydan Grandstand, 6th floor, Meydan Road, Nad Al Sheba, Dubai, United Arab Emirates

    FacebookX (Twitter)InstagramPinterestYouTubeTumblrLinkedInRedditTikTokTelegramThreadsRSS

    Links

    • Crypto News
    • Submit a Press Release
    • Advertise
    • Contact Us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions

    advertising

    Bitcoin MENA 2025
    © 2025 CryptoBreaking.com | All rights reserved | Powered by Osom One & Web3 Digital

    Osom One Limited | Company number: 12393319 | 3rd Floor 86 - 90 Paul Street, London, United Kingdom, EC2A 4NE

    Web3 Digital L.L.C-FZ | License Number: 2527596.01 | Meydan Grandstand, 6th floor, Meydan Road, Nad Al Sheba, Dubai, U.A.E.

    Type above and press Enter to search. Press Esc to cancel.

    Change Location
    Find awesome listings near you!

    Sign In or Register

    Welcome Back!

    Login below or Register Now.

    Lost password?

    Register Now!

    Already registered? Login.

    A password will be e-mailed to you.