Security Agency: NPM Supply Chain Attacked, Developer qix Affected

ETH0.16%
SOL-0.68%
PANews September 9th news, according to Scam Sniffer, renowned developer qix had their npm packages injected with malicious code due to a phishing attack, with related packages including chalk, strip-ansi, color-convert, and others. The attack method involved hooking wallet functions, tampering with ETH/SOL transaction receiving addresses, and replacing addresses in network responses. User advice: Be sure to verify the recipient and amount on the wallet interface, check for changes in the pasted address, review recent transactions, and prioritize using a hardware wallet for high-value operations.
Disclaimer: The information on this page may come from third-party sources and is for reference only. It does not represent the views or opinions of Gate and does not constitute any financial, investment, or legal advice. Virtual asset trading involves high risk. Please do not rely solely on the information on this page when making decisions. For details, see the Disclaimer.
Comment
0/400
GateUser-579afc35vip
· 2025-09-09 00:00
Hold on tight, we are about to To da moon 🛫
View OriginalReply0