{"id":212175,"date":"2025-04-23T05:12:21","date_gmt":"2025-04-23T10:12:21","guid":{"rendered":"https:\/\/lifeboat.com\/blog\/2025\/04\/ripples-xrpl-js-npm-package-backdoored-to-steal-private-keys-in-major-supply-chain-attack"},"modified":"2025-04-23T05:12:21","modified_gmt":"2025-04-23T10:12:21","slug":"ripples-xrpl-js-npm-package-backdoored-to-steal-private-keys-in-major-supply-chain-attack","status":"publish","type":"post","link":"https:\/\/lifeboat.com\/blog\/2025\/04\/ripples-xrpl-js-npm-package-backdoored-to-steal-private-keys-in-major-supply-chain-attack","title":{"rendered":"Ripple\u2019s xrpl.js npm Package Backdoored to Steal Private Keys in Major Supply Chain Attack"},"content":{"rendered":"<p style=\"padding-right: 20px\"><a class=\"aligncenter blog-photo\" href=\"https:\/\/lifeboat.com\/blog.images\/ripples-xrpl-js-npm-package-backdoored-to-steal-private-keys-in-major-supply-chain-attack2.jpg\"><\/a><\/p>\n<p>The Ripple cryptocurrency npm JavaScript library named <a href=\"https:\/\/www.npmjs.com\/package\/xrpl\" rel=\"noopener\" target=\"_blank\">xrpl.js<\/a> has been compromised by unknown threat actors as part of a software supply chain attack designed to harvest and exfiltrate users\u2019 private keys.<\/p>\n<p>The malicious activity has been found to affect five different versions of the package: 4.2.1, 4.2.2, 4.2.3, 4.2.4, and 2.14.2. The issue has been <a href=\"https:\/\/github.com\/XRPLF\/xrpl.js\/releases\/tag\/xrpl%404.2.5\" rel=\"noopener\" target=\"_blank\">addressed<\/a> in versions 4.2.5 and 2.14.3.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Ripple cryptocurrency npm JavaScript library named xrpl.js has been compromised by unknown threat actors as part of a software supply chain attack designed to harvest and exfiltrate users\u2019 private keys. The malicious activity has been found to affect five different versions of the package: 4.2.1, 4.2.2, 4.2.3, 4.2.4, and 2.14.2. The issue has been [\u2026]<\/p>\n","protected":false},"author":427,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1761],"tags":[],"class_list":["post-212175","post","type-post","status-publish","format-standard","hentry","category-cryptocurrencies"],"_links":{"self":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/212175","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/users\/427"}],"replies":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/comments?post=212175"}],"version-history":[{"count":0,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/212175\/revisions"}],"wp:attachment":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/media?parent=212175"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/categories?post=212175"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/tags?post=212175"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}