Close Menu
  • Latest News
    • Bitcoin
    • Ethereum
    • Altcoins
    • Meme Coins
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Gaming
  • Legal
    • Legal and Regulatory
    • Adoption
  • Analysis
  • Learn
    • Education
    • Wallets and Exchanges
  • Tools
    • Market Overview
    • Exchange Tool
  • INFO@FREE.CC
What's Hot

What Is the CLARITY Act? The US Crypto Bill That Could Reshape Digital Asset Regulation This Week

May 14, 2026

Stables Taps T-0 Network as Asia’s 60% Stablecoin Payment Share Tests USDT Rails

May 14, 2026

Exodus slashes Bitcoin holdings by 50% in Q1 2026 – Is BTC’s volatility why?

May 14, 2026
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
  • Disclosure
Facebook X (Twitter) Instagram
Free.cc (Free Cryptocurrency)Free.cc (Free Cryptocurrency)
  • Latest News
    1. Bitcoin
    2. Ethereum
    3. Altcoins
    4. Meme Coins
    5. View All

    Exodus slashes Bitcoin holdings by 50% in Q1 2026 – Is BTC’s volatility why?

    May 14, 2026

    ZachXBT Names Teen Behind $19 Million Crypto Theft Who Flaunted It On Instagram

    May 14, 2026

    Analyst Says No Reason for Bitcoin Reversal, Sees BTC Approaching Next Resistance Levels – Here Are His Targets

    May 14, 2026

    70% of long-term holders are in profit as the bitcoin floor hardens

    May 13, 2026

    Bitcoin, Ethereum and XRP Price Analysis: What’s Coming Next?

    May 13, 2026

    Wells Fargo Boosts Ethereum ETF Holdings in Q1

    May 13, 2026

    Why Market Experts Are Still Predicting A Rise Above $10,000

    May 13, 2026

    Bitmine ETH Holdings Cross 5.2 Million—CEO Announces New Phase For Crypto Markets

    May 12, 2026

    XRP Holds Key Level, But Binance Flow Data Signals Weakening Demand

    May 14, 2026

    Bitcoin Just Entered A Deceptive Territory, Here’s What You Should Know

    May 14, 2026

    XRP Ledger Hits Record High In 10K+ Wallets: Santiment

    May 13, 2026

    Mysterious Bitcoin Whale Transfers $40B After Years Of Silence

    May 13, 2026

    Meme Coin Market Faces Imbalance as Supply Rises, Demand Falls

    April 4, 2026

    Crypto Interest Rising Toward Meme Coin Sector

    January 9, 2026

    Memes Market Cap Adds $10B in Days: Fresh Capital or Dead-Cat-Bounce?

    January 5, 2026

    Meme Coin Market Surges Past $45B as Shiba Inu, PEPE, BONK Stage 54% Price Pump

    January 4, 2026

    What Is the CLARITY Act? The US Crypto Bill That Could Reshape Digital Asset Regulation This Week

    May 14, 2026

    Stables Taps T-0 Network as Asia’s 60% Stablecoin Payment Share Tests USDT Rails

    May 14, 2026

    Exodus slashes Bitcoin holdings by 50% in Q1 2026 – Is BTC’s volatility why?

    May 14, 2026

    XRP Holds Key Level, But Binance Flow Data Signals Weakening Demand

    May 14, 2026
  • Tech
    1. Blockchain
    2. Security and Privacy
    3. View All

    Stables Taps T-0 Network as Asia’s 60% Stablecoin Payment Share Tests USDT Rails

    May 14, 2026

    UBOX Taps ClawWorks to Accelerate Independent AI Agent Economics

    May 14, 2026

    UXLINK And Origins Network Partner To Power Scalable AI-Driven Web3 Applications Using Decentralized Computing

    May 13, 2026

    WheelX.fi Expands Cross-Chain Liquidity Access Through KiteAI Integration

    May 13, 2026

    Ripple Shares DPRK Threat Data on Fraud Domains, Wallets, Campaigns

    May 5, 2026

    Digital Asset Security Moves Beyond Keys as Bitgo Adds 5-Layer Checks

    May 1, 2026

    Defillama Confirms April 2026 as Crypto’s Most-Hacked Month With 30 Incidents

    May 1, 2026

    Malicious npm Dependency Linked to AI Assisted Commit Targets Crypto W

    April 29, 2026

    What Is the CLARITY Act? The US Crypto Bill That Could Reshape Digital Asset Regulation This Week

    May 14, 2026

    Stables Taps T-0 Network as Asia’s 60% Stablecoin Payment Share Tests USDT Rails

    May 14, 2026

    Exodus slashes Bitcoin holdings by 50% in Q1 2026 – Is BTC’s volatility why?

    May 14, 2026

    XRP Holds Key Level, But Binance Flow Data Signals Weakening Demand

    May 14, 2026
  • Web 3
    1. Gaming
    2. View All

    NUMINE Joins Outer Ring MMO for the Expansion of Web3 Gaming Experiences

    May 13, 2026

    GMatrixs And MiniverseCore Join Forces To Unlock Web3 Gaming Experience With Cross-Chain DApp, DeFi Applications

    May 11, 2026

    The Identity Crisis of 2026: NFTs, AI Agents and Trust on the Agentic Web

    May 11, 2026

    DTCC’s May 2026 Tokenization Announcement Explained: What It Means for U.S. Securities and Real-World Assets

    May 11, 2026

    What Is the CLARITY Act? The US Crypto Bill That Could Reshape Digital Asset Regulation This Week

    May 14, 2026

    Stables Taps T-0 Network as Asia’s 60% Stablecoin Payment Share Tests USDT Rails

    May 14, 2026

    Exodus slashes Bitcoin holdings by 50% in Q1 2026 – Is BTC’s volatility why?

    May 14, 2026

    XRP Holds Key Level, But Binance Flow Data Signals Weakening Demand

    May 14, 2026
  • Legal
    1. Legal and Regulatory
    2. Adoption
    3. View All

    What Is the CLARITY Act? The US Crypto Bill That Could Reshape Digital Asset Regulation This Week

    May 14, 2026

    Michael Saylor Says the Transparency Act in the US Congress Will Positively Impact Bitcoin! Here Are the Details

    May 14, 2026

    Consensys Urges SEC to Exempt Self-Custody Wallets, Citing Regulatory Gap for 99% of Tokens

    May 14, 2026

    Three men charged in US over crypto wrench attack spree

    May 13, 2026

    Tether launches decentralized local AI using Isaac Asimov’s Psychohistory straight out of Foundation

    May 11, 2026

    Has Donald Trump been a net positive for Bitcoin or created an unbreakable partisan divide?

    May 10, 2026

    BlackRock looks to sidestep Clarity yield issues, filing for two new tokenized money market funds

    May 10, 2026

    Cardano’s Charles Hoskinson says the future of crypto wallets will be inside iPhones and Androids

    May 8, 2026

    What Is the CLARITY Act? The US Crypto Bill That Could Reshape Digital Asset Regulation This Week

    May 14, 2026

    Stables Taps T-0 Network as Asia’s 60% Stablecoin Payment Share Tests USDT Rails

    May 14, 2026

    Exodus slashes Bitcoin holdings by 50% in Q1 2026 – Is BTC’s volatility why?

    May 14, 2026

    XRP Holds Key Level, But Binance Flow Data Signals Weakening Demand

    May 14, 2026
  • Analysis

    Trump’s CEO-filled China visit can decide whether Bitcoin’s $80,000 risk rally survives this week

    May 14, 2026

    Wall Street is buying XRP while Binance traders keep betting against it

    May 13, 2026

    Is a Drop Below $1 Coming Next?

    May 13, 2026

    UB Price Breakout Enters Discovery Phase

    May 13, 2026

    Billions Network Rally Accelerates After Binance Futures Launch

    May 13, 2026
  • Learn
    1. Education
    2. Wallets and Exchanges
    3. View All

    What’s on the Ethereum Roadmap: Glamsterdam, Hegota and Beyond

    March 30, 2026

    What Is Bluesky? The Decentralized Social Media Rival to Elon Musk’s X

    March 27, 2026

    What Is Strategy (MSTR)? The Bitcoin Treasury Company

    February 21, 2026

    What Are Prediction Markets? How Polymarket, Kalshi and Myriad Work

    February 13, 2026

    Coinbase went down for over 5 hours after missing earnings. Bulls still see a path to $300 billion by 2030

    May 8, 2026

    Coinbase cuts 14% of staff as Armstrong ties cost reset to AI and market volatility

    May 6, 2026

    Bitcoin is still in charge

    May 3, 2026

    CLARITY Act stablecoin fight shifts from yield to who captures digital-dollar economics

    April 29, 2026

    What Is the CLARITY Act? The US Crypto Bill That Could Reshape Digital Asset Regulation This Week

    May 14, 2026

    Stables Taps T-0 Network as Asia’s 60% Stablecoin Payment Share Tests USDT Rails

    May 14, 2026

    Exodus slashes Bitcoin holdings by 50% in Q1 2026 – Is BTC’s volatility why?

    May 14, 2026

    XRP Holds Key Level, But Binance Flow Data Signals Weakening Demand

    May 14, 2026
  • Tools
    • Market Overview
    • Exchange Tool
  • INFO@FREE.CC
Free.cc (Free Cryptocurrency)Free.cc (Free Cryptocurrency)
Home»Security and Privacy»Solana Library Supply Chain Attack Exposes Cryptocurrency Wallets
Solana Library Supply Chain Attack Exposes Cryptocurrency Wallets
Security and Privacy

Solana Library Supply Chain Attack Exposes Cryptocurrency Wallets

September 15, 2025No Comments3 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

A supply chain attack on the widely used @solana/web3.js npm library, targeting private keys to steal funds, has put developers and cryptocurrency users at risk. The malicious versions, 1.95.6 and 1.95.7, were published briefly on December 2 2024, but have since been removed.

The attack exploited the library’s maintainers, likely through phishing, allowing attackers to inject malicious code. Security researchers revealed that the code exfiltrated private keys to an attacker-controlled server, sol-rpc[.]xyz, registered days before the breach.

Christophe Tafani-Dereeper, a cloud security researcher, identified the “addToQueue” backdoor function, which hijacked key-sensitive processes within the package.

The malicious activity affected projects that directly handled private keys and updated their dependencies within the five-hour attack window. These include decentralized applications (dApps) or automated bots that rely on private keys to operate.

Non-custodial wallets, which do not expose private keys during transactions, were not impacted. The stolen assets, primarily in SOL tokens, are estimated to total between $130,000 and $160,000. Major wallets like Phantom and Coinbase confirmed they were unaffected as they did not integrate the compromised versions.

Read more on threats targeting cryptocurrency assets: US Takes Down Illegal Cryptocurrency Mixing Service Samourai Wallet

Preventive Steps for Developers

Solana Labs and other experts recommended these actions for developers:

  • Audit dependencies to identify usage of @solana/web3.js versions 1.95.6 or 1.95.7

  • Update to version 1.95.8 immediately

  • Rotate keys, including multi-sigs and program authorities, if compromise is suspected

The incident highlights ongoing vulnerabilities in open-source software supply chains. This attack follows other npm package breaches, such as crypto-keccak and solana-systemprogram-utils, which similarly targeted cryptocurrency wallets.

See also  Solana Foundation launches new advertising campaign in San Francisco amid push for seamless blockchain payments

“We’ve seen a lot of different attacks on crypto this year; the ease of stealing wallets combined with the value inside the wallets is a tempting target,” said Katie Paxton-Fear, API researcher at Traceable AI.

“Combined with the rise in supply chain attacks, it perhaps was not surprising to see a threat actor combine the two with a supply chain attack targeting the wallets of Web 3.0 developers.”

The Broader Impact

Although major wallets like Phantom and Coinbase were unaffected, many developers who integrated the library into smaller dApps and tools were exposed. Security firm Socket called for increased vigilance when managing dependencies in high-risk environments.

This attack underscores the need for robust supply chain security, especially as cryptocurrency ecosystems continue to grow.

“To combat this growing threat, security programs must evolve beyond traditional CVE-based vulnerability management,” warned Spektion CEO, Joe Silva.

“A proactive approach that emphasizes understanding the risks posed by software components and their runtime behaviors will be critical for effectively managing third-party software risk and securing the software supply chain.”

Attack Chain Cryptocurrency Exposes Library Solana Supply wallets
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Consensys Urges SEC to Exempt Self-Custody Wallets, Citing Regulatory Gap for 99% of Tokens

May 14, 2026

Three men charged in US over crypto wrench attack spree

May 13, 2026

XRP Ledger Hits Record High In 10K+ Wallets: Santiment

May 13, 2026

Crypto wallets are being rebuilt for AI agents, Trust Wallet and Mesh executives say at Consensus Miami

May 12, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

Rayls & AmFi Alliance Targets $1B On-Chain by 2027 In An Institutional RWA Breakthrough 

December 8, 2025

CZ Breaks Silence on BNB’s Latest Rally After Tariff-Induced Market Crash

October 12, 2025

Stay ahead with the latest crypto news, market updates, blockchain insights, and trends. Your trusted source for everything happening in the digital asset world.


We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

What Is the CLARITY Act? The US Crypto Bill That Could Reshape Digital Asset Regulation This Week

May 14, 2026

Stables Taps T-0 Network as Asia’s 60% Stablecoin Payment Share Tests USDT Rails

May 14, 2026

Exodus slashes Bitcoin holdings by 50% in Q1 2026 – Is BTC’s volatility why?

May 14, 2026
Get Informed

Subscribe to Updates

Get the latest creative news From Free.cc directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
  • Disclosure
© 2026 free.cc - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.