Close Menu
Crypto Breaking News
    Crypto Breaking News
    • News
      • Press Release
      • Featured
      • Events
      • Exchanges
      • Bitcoin
      • Ethereum
      • Solana
      • Cardano
      • Ripple
      • Press Releases by PR Newswire
      • News by CoinPedia
      • News by Coincu
      • News by Blockchain Wire
      • Binance News
    • Crypto
      • Companies
      • Events
      • Partners
      • Buy Crypto
      • Timers
    • Advertise
      • Submit a Press Release
      • Logos
      • About
      • Services
    • Offers
      • Marketing Services
      • Wallets & Tools
    • Account
    • Video
    • Contact
    Submit PR
    Crypto Breaking News
    Crypto News Ethereum

    New NPM Supply Chain Hack Threatens ENS and Cryptocurrency Security

    24 November 2025
    FacebookTwitterLinkedInCopy Link
    News Feed
    Google NewsRSS
    New Npm Supply Chain Hack Threatens Ens And Cryptocurrency Security
    New Npm Supply Chain Hack Threatens Ens And Cryptocurrency Security

    Major Supply-Chain Attack Targets Crypto-Related Software Packages

    A significant JavaScript supply-chain attack has compromised over 400 software packages, including at least 10 heavily used within the cryptocurrency ecosystem. The breach was uncovered by cybersecurity firm Aikido Security, highlighting the evolving threat landscape faced by developers and users alike.

    In a detailed blog post, researcher Charlie Eriksen outlined the scope of the infection, identifying packages infected with the “Shai Hulud” malware—an autonomous, self-replicating strain designed to spread across developer environments. Eriksen confirmed the validity of each detection to prevent false positives. Many of these packages are responsible for critical functions, with some receiving tens of thousands of weekly downloads, emphasizing the widespread potential impact.

    Of particular concern are the affected packages associated with the Ethereum Name Service (ENS), which facilitate human-readable blockchain addresses. Notable among these are ENS’s content-hash, with nearly 36,000 weekly downloads, and address-encoder, with over 37,500 weekly downloads. Other ENS packages, such as ensjs, ens-validation, ethereum-ens, and ens-contracts, are also compromised. A separate package, crypto-addr-codec, unrelated to ENS, with nearly 35,000 weekly downloads, was also affected.

    Source: Charlie Eriksen

    This incident is part of a broader trend of supply-chain attacks. In September, the largest NPM attack to date resulted in approximately $50 million stolen from crypto assets. Amazon Web Services highlighted that this incident was followed by the spread of the Shai-Hulud worm, which replicated itself across environments post-initial breach.

    Unlike previous targeted thefts, Shai Hulud primarily acts as a credential-stealer, spreading autonomously and harvesting wallet keys and other secrets stored within infected environments. This capability poses a significant threat to the security of blockchain assets if such secrets are stored insecurely.

    Scope of the Affected Packages

    Among the impacted packages, at least 10 are directly related to cryptocurrency functions, predominantly tied to the ENS ecosystem. Packages such as content-hash, with nearly 36,000 weekly downloads, and address-encoder, exceeding 37,500 downloads, are critical components used by developers to handle address and name resolution. Other key packages affected include ensjs, ens-validation, ethereum-ens, and ens-contracts.

    Beyond crypto, several non-crypto packages are compromised, including popular tools from Zapier, like @zapier/secret-scrubber, with over 40,000 weekly downloads. Eriksen warned that affected packages with high download volumes, some approaching 70,000 weekly downloads, underscore the widespread reach of the malware.

    Researchers from Wiz estimate that over 25,000 repositories across hundreds of users have been impacted, with new compromised repositories added every 30 minutes. The cybersecurity community urges immediate investigations and remediation efforts for any environment utilizing npm packages.

    Risk & affiliate notice: Crypto assets are volatile and capital is at risk. This article may contain affiliate links. Read full disclosure

    Crypto Breaking News
    • Website
    • Facebook
    • X (Twitter)
    • Pinterest
    • Instagram
    • Tumblr
    • LinkedIn

    The Crypto Breaking News editorial team curates the latest news, updates, and insights from the global cryptocurrency and blockchain industry.

    Related Posts

    Mastercard To Settle Card Payments Via Stablecoins

    Mastercard to Settle Card Payments via Stablecoins

    41 minutes ago
    Coinbase Trials Ai Agents On Slack And Email

    Coinbase Trials AI Agents on Slack and Email

    3 hours ago
    Microstrategy's Saylor Signals Larger Btc Buys Amid Dividend Chatter

    MicroStrategy’s Saylor signals larger BTC buys amid dividend chatter

    5 hours ago
    Bitcoin Slips From Weekend Highs As U.s.-Iran Ceasefire Talks Strain

    Bitcoin slips from weekend highs as U.S.-Iran ceasefire talks strain

    7 hours ago
    Moody's: Stablecoins Unlikely To Threaten Banks In Near Term

    Moody’s: Stablecoins Unlikely to Threaten Banks in Near Term

    13 hours ago
    Bitcoin's 2024 Halving Cycle Lags Earlier Cycles, Analysts Say

    Bitcoin’s 2024 halving cycle lags earlier cycles, analysts say

    15 hours ago

    Search Crypto News

    Featured Crypto News

    "money Magnet": The Ai Song That Turns Affirmations Into Music

    “Money Magnet”: The AI Song That Turns Affirmations Into Music

    1 April 2026

    Latest News

    • Mastercard to Settle Card Payments via Stablecoins
    • Coinbase Trials AI Agents on Slack and Email
    • MicroStrategy’s Saylor signals larger BTC buys amid dividend chatter
    • Bitcoin slips from weekend highs as U.S.-Iran ceasefire talks strain
    • Moody’s: Stablecoins Unlikely to Threaten Banks in Near Term
    • Bitcoin’s 2024 halving cycle lags earlier cycles, analysts say
    • Kelp exploit exposes non-isolated DeFi lending risks, crypto execs warn
    • Bitcoin Slides to $75K as Hormuz Strait Closure Elevates Oil Markets
    • Alcoa to sell dormant smelter to NYDIG, signaling Bitcoin mining
    • RaveDAO Denies Manipulation as Binance, Bitget Probe RAVE Trading

    Join 17,000+ Crypto Followers

    • Facebook2.3K
    • Twitter4.3K
    • Instagram5.6K
    • LinkedIn4K
    • Telegram52
    • Threads800
    eToro Crypto 300x300
    Global Games Show - Riyadh

    About Crypto Breaking News

    About Crypto Breaking News

    Crypto Breaking News is a fast-growing digital media platform focused on the latest developments in cryptocurrency, blockchain, and Web3 technologies. Our goal is to provide fast, reliable, and insightful content that helps our readers stay ahead in the ever-evolving digital asset space.

    Web3 Digital L.L.C-FZ
    License Number: 2527596
    📞 +971 50 449 2025
    ✉️ info@cryptobreaking.com
    📍Meydan Grandstand, 6th floor, Meydan Road, Nad Al Sheba, Dubai, United Arab Emirates

    FacebookX (Twitter)InstagramPinterestYouTubeTumblrBlueskyLinkedInRedditTikTokTelegramThreadsRSS

    Links

    • Crypto News
    • Submit a Press Release
    • Advertise
    • Contact Us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions

    advertising

    Global Blockchain Show - Riyadh
    © 2026 CryptoBreaking.com | All rights reserved | Powered by Web3 Digital & Osom One

    Type above and press Enter to search. Press Esc to cancel.

    Change Location
    Find awesome listings near you!