No Result
View All Result
  • Login
Sunday, May 17, 2026
FeeOnlyNews.com
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading
No Result
View All Result
FeeOnlyNews.com
No Result
View All Result
Home Cryptocurrency

Axios NPM Package Compromised in Supply Chain Attack

by FeeOnlyNews.com
2 months ago
in Cryptocurrency
Reading Time: 2 mins read
A A
0
Axios NPM Package Compromised in Supply Chain Attack
Share on FacebookShare on TwitterShare on LInkedIn



Two malicious Axios npm releases have prompted warnings for developers to rotate credentials and treat affected systems as compromised after a supply chain attack poisoned the popular JavaScript HTTP client library.

The compromise was first reported by cybersecurity company Socket, which said [email protected] and [email protected] were modified to pull in [email protected], a malicious dependency that ran automatically during installation before the releases were removed from npm.

According to security company OX Security, the altered code can give attackers remote access to infected devices, allowing them to steal sensitive data such as login credentials, API keys and crypto wallet information.

The incident shows how a single compromised open-source component can potentially ripple across thousands of applications that rely on it, exposing not just developers but also platforms and users connected to the system. 

Security companies urge key rotation, system audits

OX Security warned developers who installed [email protected] or [email protected] to treat their systems as fully compromised and immediately rotate credentials, including API keys and session tokens.

Socket said the compromised Axios releases were modified to include a dependency on [email protected], a package published shortly before the incident and later identified as malicious.

Related: Trust Wallet browser extension knocked offline by Chrome Store ‘bug,’ CEO says

The company said the dependency was configured to run automatically during installation through a post-install script, allowing attackers to execute code on target systems without additional user interaction.

Socket advised developers to review their projects and dependency files for the affected Axios versions and the associated [email protected] package, and to remove or roll back any compromised versions immediately.

Earlier crypto incidents highlight supply chain risks

Earlier crypto incidents have shown how supply chain breaches can escalate from stolen developer information to user-facing wallet losses.

On Jan. 3, onchain investigator ZachXBT reported that “hundreds” of wallets across Ethereum Virtual Machine-compatible networks were drained in a broad attack that siphoned small amounts from each victim. 

Cybersecurity researcher Vladimir S. said the incident was potentially linked to a December breach affecting Trust Wallet, which resulted in roughly $7 million in losses across over 2,500 wallets. 

Trust Wallet later said the breach may have originated from a supply chain compromise involving npm packages used in its development workflow.

Magazine: Nobody knows if quantum secure cryptography will even work

Cointelegraph is committed to independent, transparent journalism. This news article is produced in accordance with Cointelegraph’s Editorial Policy and aims to provide accurate and timely information. Readers are encouraged to verify information independently. Read our Editorial Policy https://cointelegraph.com/editorial-policy



Source link

Tags: AttackAxiosChaincompromisedNPMPackageSupply
ShareTweetShare
Previous Post

BoI governor signals budget could delay interest rate cuts

Next Post

El Al demands changes to passenger compensation law

Related Posts

CLARITY Act is not law yet, but the markup is a major retail adoption trust catalyst

CLARITY Act is not law yet, but the markup is a major retail adoption trust catalyst

by FeeOnlyNews.com
May 17, 2026
0

Make CryptoSlate preferred on The Senate Banking Committee advanced the Digital Asset Market Clarity Act by a 15-9 vote, and...

Latam Insights: Coinbase Co-Founder Eyes Venezuela as Grupo Salinas Embraces Stablecoins

Latam Insights: Coinbase Co-Founder Eyes Venezuela as Grupo Salinas Embraces Stablecoins

by FeeOnlyNews.com
May 17, 2026
0

Key TakeawaysWorth $2.6B, Coinbase’s Fred Ersham met officials to explore investments in Venezuela’s financial revival.Mexico’s Grupo Salinas tapped Anchorage Digital...

Ethereum Triangle Breakdown Adds Pressure On Its Recovery Outlook

Ethereum Triangle Breakdown Adds Pressure On Its Recovery Outlook

by FeeOnlyNews.com
May 16, 2026
0

Ethereum pressure mounts as the ETHBTC pair breaks down from a key descending triangle structure. The weakening performance against Bitcoin...

Tata Electronics partners with ASML to build India’s first semiconductor fab

Tata Electronics partners with ASML to build India’s first semiconductor fab

by FeeOnlyNews.com
May 16, 2026
0

India just took its most concrete step toward becoming a semiconductor manufacturing nation. Tata Electronics and ASML, the Dutch company...

US CLARITY Act Will Be a ‘Boon For Domestic Innovation’: A16z

US CLARITY Act Will Be a ‘Boon For Domestic Innovation’: A16z

by FeeOnlyNews.com
May 16, 2026
0

The US CLARITY Act, which aims to provide the US crypto industry with more regulatory clarity, could have a positive...

Bitcoin Treasury Firm Strategy To Repurchase .5B Of Convertible Notes — Details

Bitcoin Treasury Firm Strategy To Repurchase $1.5B Of Convertible Notes — Details

by FeeOnlyNews.com
May 16, 2026
0

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure Bitcoin treasury company Strategy (formerly MicroStrategy) has...

Next Post
El Al demands changes to passenger compensation law

El Al demands changes to passenger compensation law

How Can a Surgical Procedure Volume Database Improve GI Market Insights?

How Can a Surgical Procedure Volume Database Improve GI Market Insights?

  • Trending
  • Comments
  • Latest
The New Medicare Coding Change Confusing Pharmacies Across Multiple States

The New Medicare Coding Change Confusing Pharmacies Across Multiple States

May 11, 2026
10 States Offering Free or Low‑Cost College Courses for Residents Over 60

10 States Offering Free or Low‑Cost College Courses for Residents Over 60

May 13, 2026
Week 14: A Peek Into This Past Week + What I’m Reading, Listening to, and Watching!

Week 14: A Peek Into This Past Week + What I’m Reading, Listening to, and Watching!

April 6, 2026
The 16 Largest Global Startup Funding Rounds of March 2026 – AlleyWatch

The 16 Largest Global Startup Funding Rounds of March 2026 – AlleyWatch

April 21, 2026
The 27 Largest US Funding Rounds of March 2024 – AlleyWatch

The 27 Largest US Funding Rounds of March 2024 – AlleyWatch

April 17, 2026
Latam Insights: Coinbase Co-Founder Eyes Venezuela as Grupo Salinas Embraces Stablecoins

Latam Insights: Coinbase Co-Founder Eyes Venezuela as Grupo Salinas Embraces Stablecoins

May 17, 2026
What does an import restriction mean for silver investments?

What does an import restriction mean for silver investments?

0
Talos Energy Jumps 5.3% Amid Sector-Wide Rally

Talos Energy Jumps 5.3% Amid Sector-Wide Rally

0
CLARITY Act is not law yet, but the markup is a major retail adoption trust catalyst

CLARITY Act is not law yet, but the markup is a major retail adoption trust catalyst

0
Sugar Crackdown: 4 States Ban Candy & Soda for SNAP Users – Are More Restrictions Coming?

Sugar Crackdown: 4 States Ban Candy & Soda for SNAP Users – Are More Restrictions Coming?

0
BlackRock private credit fund’s valuations are probed by DOJ

BlackRock private credit fund’s valuations are probed by DOJ

0
Predicting Recession | Mises Institute

Predicting Recession | Mises Institute

0
Sugar Crackdown: 4 States Ban Candy & Soda for SNAP Users – Are More Restrictions Coming?

Sugar Crackdown: 4 States Ban Candy & Soda for SNAP Users – Are More Restrictions Coming?

May 17, 2026
BlackRock private credit fund’s valuations are probed by DOJ

BlackRock private credit fund’s valuations are probed by DOJ

May 17, 2026
New Medicare Deductible Shock: Part A Hospital Costs Climb to ,736 and Nursing Facility Coinsurance Hits 7 Per Day

New Medicare Deductible Shock: Part A Hospital Costs Climb to $1,736 and Nursing Facility Coinsurance Hits $217 Per Day

May 17, 2026
Trump: US Taking Over Cuba On the Way Back from Iran – Full Episode – LN Radio

Trump: US Taking Over Cuba On the Way Back from Iran – Full Episode – LN Radio

May 17, 2026
CLARITY Act is not law yet, but the markup is a major retail adoption trust catalyst

CLARITY Act is not law yet, but the markup is a major retail adoption trust catalyst

May 17, 2026
SolarEdge revival gains momentum – Globes

SolarEdge revival gains momentum – Globes

May 17, 2026
FeeOnlyNews.com

Get the latest news and follow the coverage of Business & Financial News, Stock Market Updates, Analysis, and more from the trusted sources.

CATEGORIES

  • Business
  • Cryptocurrency
  • Economy
  • Financial Planning
  • Investing
  • Market Analysis
  • Markets
  • Money
  • Personal Finance
  • Startups
  • Stock Market
  • Trading

LATEST UPDATES

  • Sugar Crackdown: 4 States Ban Candy & Soda for SNAP Users – Are More Restrictions Coming?
  • BlackRock private credit fund’s valuations are probed by DOJ
  • New Medicare Deductible Shock: Part A Hospital Costs Climb to $1,736 and Nursing Facility Coinsurance Hits $217 Per Day
  • Our Great Privacy Policy
  • Terms of Use, Legal Notices & Disclaimers
  • About Us
  • Contact Us

Copyright © 2022-2024 All Rights Reserved
See articles for original source and related links to external sites.

Welcome Back!

Sign In with Facebook
Sign In with Google
Sign In with Linked In
OR

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading

Copyright © 2022-2024 All Rights Reserved
See articles for original source and related links to external sites.