Ledger CTO Raises Urgent Concern: JavaScript Ecosystem Under Threat

Charles Guillemet, Ledger’s Chief Technology Officer, has issued a serious alert regarding a pervasive attack targeting the global JavaScript ecosystem used by crypto applications. A popular package from the Node Package Manager (NPM) has been compromised, enabling attackers to inject malicious code that silently alters wallet addresses during transactions. This manipulation allows for real-time address redirection and fund transfers without user knowledge.