Close Menu
  • Latest News
    • Bitcoin
    • Ethereum
    • Altcoins
    • Meme Coins
    • Layer 2
  • Tech
    • Blockchain
    • Security and Privacy
    • Mining
  • Web 3
    • Web3 News
    • DeFi
  • Legal
    • Legal and Regulatory
    • Adoption
  • Analysis
  • Learn
    • Education
    • Wallets and Exchanges
  • Tools
    • Market Overview
    • Exchange Tool
  • Shop
What's Hot

H100 Group Targets $79 Million Raise to Power Bitcoin Strategy

16 June 2025

Bitcoin mining difficulty eases from all-time high – Here’s why miners aren’t backing down

16 June 2025

Security Firm Certik’s Account Hijacked to Spread Crypto Drainer

16 June 2025
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
  • Disclosure
Facebook X (Twitter) LinkedIn
The Coin VibeThe Coin Vibe
  • Latest News
    1. Bitcoin
    2. Ethereum
    3. Altcoins
    4. Meme Coins
    5. Layer 2
    6. View All

    Bitcoin mining difficulty eases from all-time high – Here’s why miners aren’t backing down

    16 June 2025

    Michael Saylor Joins Pakistan’s Crypto Mission

    16 June 2025

    Trader Predicts Rallies to New All-Time High for Bitcoin Amid Struggle To Clear $110,000 – But There’s a Big Catch

    16 June 2025

    Risk of Escalating Israel-Iran Conflict Keeps Bitcoin Around 105K Says QCP

    16 June 2025

    Ethereum recovers 20% in June -Will $3K be ETH’s next stop in Q3?

    16 June 2025

    Ethereum sees $153mln inflow – But THIS kept ETH price frozen

    16 June 2025

    Ethereum bears lose ground, but ETH bulls may not be safe just yet!

    16 June 2025

    Solana or Ethereum? – The fight for Q3 dominance starts now!

    15 June 2025

    $ 8 Dogecoin? Analyst says you regret sleeping on this graph

    16 June 2025

    A prediction of the price – a deeper retracement can be on the cards because …

    16 June 2025

    Founder of Cardano confirms XRP Defi package and RLUSD interviews

    16 June 2025

    Ethena: Can Mellow Finance’s $ 4.48 million bet Spark Ena’s recovery?

    16 June 2025

    Shiba Inu Burn Rate Spikes 3,484% as Kusama Teases AI Push

    14 June 2025

    Shiba Inu Enters AI-Gaming as SHIB Price Hits Critical Support

    13 June 2025

    The $CVB Launch Is Here — And It Starts With You

    13 June 2025

    Here’s What’s Pumping in June

    11 June 2025

    L2s are leaking value, L1s are the smarter bet

    16 June 2025

    Soneium layer 2 launches gaming incubator to support projects and drive ecosystem adoption

    9 June 2025

    Immutable price drops even as Guild of Guardians NFT sales jump

    6 June 2025

    Cryptocurrencies to watch this week: Pi, Immutable, Zebec

    1 June 2025

    H100 Group Targets $79 Million Raise to Power Bitcoin Strategy

    16 June 2025

    Bitcoin mining difficulty eases from all-time high – Here’s why miners aren’t backing down

    16 June 2025

    Security Firm Certik’s Account Hijacked to Spread Crypto Drainer

    16 June 2025

    Hyperliquid’s HYPE Becomes Fifth Largest Token in Futures Trading; XRP Remains Ahead

    16 June 2025
  • Tech
    1. Blockchain
    2. Security and Privacy
    3. Mining
    4. View All

    OpenPad AI Partners with OpGPU for Advanced Decentralized AI Investment 

    16 June 2025

    Mira and GoPlus Team Up to Verify AI Security Answers Across Web3

    16 June 2025

    AltLayer Partners with T-Rex for Web3 Scaling for 3.5B Consumers

    16 June 2025

    Upbit’s Banking Partner Joins Forces for South Korea Blockchain Advancement and Stablecoin Study

    16 June 2025

    Security Firm Certik’s Account Hijacked to Spread Crypto Drainer

    16 June 2025

    North Korean Hackers Stole $600m in Crypto in 2023

    16 June 2025

    Environmental Websites Hit by DDoS Surge in COP28 Crossfire

    16 June 2025

    Senators Demand Probe into SEC Hack After Bitcoin Price Spike

    15 June 2025

    H100 Group Targets $79 Million Raise to Power Bitcoin Strategy

    16 June 2025

    American Bitcoin’s 25 EH/s Dream Rests on Chinese Hardware

    16 June 2025

    Russian Police Bust Truck-Based Crypto Mine Stealing Village Power

    15 June 2025

    France eyes Bitcoin mining as means to manage energy

    15 June 2025

    H100 Group Targets $79 Million Raise to Power Bitcoin Strategy

    16 June 2025

    Bitcoin mining difficulty eases from all-time high – Here’s why miners aren’t backing down

    16 June 2025

    Security Firm Certik’s Account Hijacked to Spread Crypto Drainer

    16 June 2025

    Hyperliquid’s HYPE Becomes Fifth Largest Token in Futures Trading; XRP Remains Ahead

    16 June 2025
  • Web 3
    1. Web3 News
    2. DeFi
    3. View All

    Virtual Real Estate and Metaverse Market Forecast (2025-2030)

    16 June 2025

    Share issue to personnel – 14 June 2025

    16 June 2025

    How NFTs And Real-World Assets Will Reshape Global Markets

    16 June 2025

    XRP News: Vaultro Finance Presale on XRP ledger Skyrockets Past 50%, As Investors Race to Own $VLT Token

    15 June 2025

    Hyperliquid’s HYPE Becomes Fifth Largest Token in Futures Trading; XRP Remains Ahead

    16 June 2025

    Top 10 Alternative Chains Diversifying DeFi, Ethereum Maintains Dominance

    16 June 2025

    Bitcoin DeFi Is Taking Root on Sui—Here’s How It Works

    15 June 2025

    Sentora Highlights Capital Fragmentation and Infrastructure Gaps in Institutional DeFi

    15 June 2025

    H100 Group Targets $79 Million Raise to Power Bitcoin Strategy

    16 June 2025

    Bitcoin mining difficulty eases from all-time high – Here’s why miners aren’t backing down

    16 June 2025

    Security Firm Certik’s Account Hijacked to Spread Crypto Drainer

    16 June 2025

    Hyperliquid’s HYPE Becomes Fifth Largest Token in Futures Trading; XRP Remains Ahead

    16 June 2025
  • Legal
    1. Legal and Regulatory
    2. Adoption
    3. View All

    Crypto-Related Anti-Money Laundering Reports Rose by 8% in Germany Last Year: FIU

    16 June 2025

    David Sacks Optimistic On Clarity Act, More Regulatory Clarity

    16 June 2025

    Gemini and Coinbase set to secure EU licenses

    16 June 2025

    EU Crypto Rules Spark Backlash Over Fast-Track Licenses

    16 June 2025

    KuCoin EU Appoints Banking Veteran Christian Derler And Legal Expert Tamara Rubey

    10 June 2025

    GameStop Drives Strategic Diversification With Staggering 4,710 $BTC Buyout

    28 May 2025

    Bybit Receives Clearance From French Regulator, Eyes MiCA License For Compliance Boost

    22 May 2025

    Bitget Secures VASP License In Bulgaria, Strengthening EU Expansion

    22 May 2025

    H100 Group Targets $79 Million Raise to Power Bitcoin Strategy

    16 June 2025

    Bitcoin mining difficulty eases from all-time high – Here’s why miners aren’t backing down

    16 June 2025

    Security Firm Certik’s Account Hijacked to Spread Crypto Drainer

    16 June 2025

    Hyperliquid’s HYPE Becomes Fifth Largest Token in Futures Trading; XRP Remains Ahead

    16 June 2025
  • Analysis

    How High/Low Can Bitcoin Price Go This Week?

    16 June 2025

    Is $190 the Next Milestone?

    16 June 2025

    Can Pi Network Price Hit $100?

    16 June 2025

    Trader Says One Layer-1 Altcoin ‘Destined’ for New All-Time High, Warns of Potential 50% Correction for WIF and POPCAT

    16 June 2025

    Crypto Strategist Warns of up to 80% Bitcoin Correction in Next Bear Market Fueled by Selling of Major BTC Adoption Group

    15 June 2025
  • Learn
    1. Education
    2. Wallets and Exchanges
    3. View All

    What Are Internet Capital Markets? Why Companies Are Launching Meme Coins

    15 June 2025

    The Crypto Minimalist: Building Wealth by Doing Less

    15 June 2025

    The Crypto-Side Hustle Blueprint: How to Earn in Web3 Without Trading

    13 June 2025

    What is LIBRA? The Solana Meme Coin That Sparked a Political Scandal

    12 June 2025

    Binance Is Not Dumping SOL And ETH Through Wintermute

    23 May 2025

    US SEC Agency Drops Gemini & Tron ($TRX) Lawsuit

    23 May 2025

    Nischal Says Voting On The Wazirx Restructuring Scheme Will Start On 19 March

    22 May 2025

    Coinbase Secures Regulatory Approval To Resume Services In India

    22 May 2025

    H100 Group Targets $79 Million Raise to Power Bitcoin Strategy

    16 June 2025

    Bitcoin mining difficulty eases from all-time high – Here’s why miners aren’t backing down

    16 June 2025

    Security Firm Certik’s Account Hijacked to Spread Crypto Drainer

    16 June 2025

    Hyperliquid’s HYPE Becomes Fifth Largest Token in Futures Trading; XRP Remains Ahead

    16 June 2025
  • Tools
    • Market Overview
    • Exchange Tool
  • Shop
Subscribe
The Coin VibeThe Coin Vibe
Home»Security and Privacy»Solana Library Supply Chain Attack Exposes Cryptocurrency Wallets
Security and Privacy

Solana Library Supply Chain Attack Exposes Cryptocurrency Wallets

29 May 2025No Comments3 Mins Read
Share Facebook Twitter LinkedIn
Solana Library Supply Chain Attack Exposes Cryptocurrency Wallets
Share
Facebook Twitter LinkedIn

A supply chain attack on the commonly used @solana/web3.js NPM library, aimed at private keys to steal funds, has endangered developers and cryptocurrency -users. The malignant versions, 1.95.6 and 1.95.7, were briefly published on December 2, 2024, but have since been removed.

The attack exploited the library’s underholders, probably through phishing, so that attackers could inject malignant code. Security researchers have shown that the code has extracted private keys into an attacker-controlled server, SOL-RPC[.]XYZ, registered days before the infringement.

Christophe Taafani-Deeper, a cloud security investigator, identified the back-pass “addtoqueuee”, which hijacked key-sensitive processes within the package.

The malignant activity influenced projects that handled private keys directly and updated their dependencies within the five -hour attack window. These include decentralized applications (DAPPs) or automated bots that depend on private keys to work.

Non-right portfolios, which do not uncover private keys during transactions, were not influenced. The stolen assets, mainly in Sol -Tokens, are estimated to be between $ 130,000 and $ 160,000. Large portfolios such as Phantom and Coinbase confirmed that they were not influenced because they did not integrate the compromised versions.

Read more about threats aimed at cryptocurrency activa: US gets illegal cryptocurrency mixing service Samourai Wallet Down Down Down Down Down Down Down Down Down Down Down Down Down Down

Preventive steps for developers

Solana Labs and other experts have recommended these actions for developers:

  • Audit dependence to identify the use of @solana/web3.js versions 1.95.6 or 1.95.7

  • Update to version 1.95.8 Immediately

  • Rotate keys, including multi-sigs and program authorities, as a compromise is suspected

See also  Bitcoin whale wallets stir on Binance - Warning signs ahead for you?

The incident emphasizes constant vulnerabilities in open-source software feed chains. This attack follows other infringements on the NPM package, such as Crypto-Keccak and Solana system program-utils, which were in the same way aimed at cryptocurrency portfolios.

“We have seen many different attacks on crypto this year; the ease of stealing portfolios in combination with the value in the wallet is a tempting target,” said Katie Paxton-Fear, API researcher at Traceingable AI.

“Combined with the increase in attacks by Supply Chain, it might not be surprising to see that a threat actor combined the two attack from the supply chain that is aimed at the portfolios of web 3.0 developers.”

The wider impact

Although large portfolios such as Phantom and Coinbase were not affected, many developers who integrated the library were exposed into smaller Dapps and aids. Security firm socket called for increased vigilance in managing dependencies in risky environments.

This attack underlines the need for robust security of the supply chain, especially because cryptocurrency ecosystems continue to grow.

“To combat this growing threat, security programs must evolve beyond traditional CVE-based vulnerability management,” warned CEO of Spaiction, Joe Silva.

“A proactive approach that emphasizes the insight into the risks of software components and their runtime behavior will be crucial for effective managing of third-party software and securing the software feed chain.”

Attack Chain Cryptocurrency Exposes Library Solana supply wallets
Follow on X (Twitter)
Share. Facebook Twitter LinkedIn
Previous ArticleThe Susde van Ethena provides liquidity: is now a bearish break?
Next Article Ethereum Open Interest nears $20B as price soars – Is a bull run brewing?

Related Posts

Security and Privacy

Security Firm Certik’s Account Hijacked to Spread Crypto Drainer

16 June 2025
Security and Privacy

North Korean Hackers Stole $600m in Crypto in 2023

16 June 2025
Security and Privacy

Environmental Websites Hit by DDoS Surge in COP28 Crossfire

16 June 2025
Add A Comment
Leave A Reply Cancel Reply

Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Top Posts
DeFi

PWN Protocol Goes Live on Celo to Offer Fixed-Rate Lending

7 June 2025
Bitcoin

Bitcoin Builders Exist Because Of Users

31 May 2025
Top Posts

Can Solana Break the $180 Resistance? Here’s What SOL Price Will Be Worth in 2025!

24 May 2025128 Views

Trump Family Backed American Bitcoin To Go Public via Merger With Gryphon Digital

20 May 202516 Views

Wazirx’s Nischal Shetty Reports $478.5m Net Liquid Assets As Voting Starts

20 May 202512 Views

Our mission is to develop a community of people who try to make financially sound decisions. The website strives to educate individuals in making wise choices about Crypto, ICOs, Web3, Blockchain and more.


We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest
Top Insights

Bitcoin Builders Exist Because Of Users

31 May 2025

Hype stumbles 9% discount on its ATH: But why Bulls may not have been done yet

24 May 2025

Off The Grid Set to Launch on Steam With Optional NFTs

15 June 2025
Get Informed

Subscribe to Updates

Spice Up Your Crypto Knowledge – Get the Latest News & Insights Straight to Your Inbox!

Facebook X (Twitter) Instagram Pinterest
  • Contact
  • Privacy Policy
  • Terms & Conditions
  • Disclosure
© 2025 thecoinvibe.com - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.