Menu

Categories:

Hot right now:

Follow on:

Coinsurges provides coverage of fintech, blockchain, and Bitcoin, delivering the most recent news and analyses on the future of money. Stay up-to-date with live prices, charts, and trading options for the top exchanges. Keep track of the day's top cryptocurrency gainers and losers, as well as which coins have experienced gains and losses in the past 24 hours.
Trust Coinsurges as your go-to source for all news and updates in the industry.

Menu

Categories:

Hot right now:

Follow on:

Coinsurges provides coverage of fintech, blockchain, and Bitcoin, delivering the most recent news and analyses on the future of money. Stay up-to-date with live prices, charts, and trading options for the top exchanges. Keep track of the day's top cryptocurrency gainers and losers, as well as which coins have experienced gains and losses in the past 24 hours.
Trust Coinsurges as your go-to source for all news and updates in the industry.

Solana supply chain attack contained, but users face six-figure losses

Share This Post

A supply chain attack on the Solana network ecosystem was quickly contained during the past day.

On Dec. 3, Anza, a Solana-focused development team, revealed that an account with publish access to the solana/web3.js JavaScript library was compromised.

This allowed the attacker to inject unauthorized packages containing malicious code that stole private key information and drained funds from decentralized applications (dApps) that interact with private keys.

Solana blockchain safe

The attack did not affect non-custodial wallets, as these wallets do not expose private keys during transactions. Developers clarified that the issue is specific to the JavaScript client library and does not involve the Solana protocol.

A staunch Solana advocate, Mert Mumtaz, reassured the community that the attack was contained while pointing out that the incident had “nothing to do with the security of the [Solana] blockchain itself.”

He also explained that the issue mainly impacted developers who had updated their systems within a short time window, specifically those running JavaScript bots or similar backend systems using private keys. End-users and wallets were largely unaffected, as they do not expose private keys.

Meanwhile, several Solana-based projects, including Phantom and the Backpack exchange, confirmed that the exploit did not impact them.

Phantom, the most popular Solana wallet, emphasized that they had never used the compromised versions of @solana/web3.js, ensuring their users’ security remained intact.

Six-figure loss

While the attack was promptly contained, the pseudonymous developer of DeFiLlama 0xngmi reported that some investors lost six figures due to the incident.

On-chain data suggest that the malicious attack resulted in an estimated $160,000 in stolen assets, primarily in SOL. The attacker’s address held over $161,000 worth of SOL and additional tokens valued at over $31,000.

While the loss is significant, 0xngmi believes the damage could have been far worse. He explained that the hacker’s direct targeting of private keys may have limited the attack’s potential as a more sophisticated exploit, such as the one seen in last year’s Ledger hardware wallet compromise, could have been far more destructive.

In that incident, attackers replaced a legitimate library with a malicious one, resulting in losses exceeding $610,000

The post Solana supply chain attack contained, but users face six-figure losses appeared first on CryptoSlate.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

From Store Of Value To DeFi Powerhouse: Solana Unlocks Bitcoin’s True Utility — Here’s How

Bitcoin has been celebrated as digital gold and a secure store of value with limited functionality, but Solana’s high-speed, low-cost blockchain is changing that narrative By bridging BTC into

Crypto Liquidations Hit $1.7 Billion As Bitcoin Crashes Below $113,000

Data shows the cryptocurrency derivatives market has seen liquidations of a whopping $17 billion as Bitcoin and other assets have plunged Bitcoin Has Erased Its Recent Recovery With A Drop Under

Crypto Bloodbath Shakes Market—But Is The Real Storm Still To Come?

Crypto absorbed its largest liquidation shock of 2025, with the heaviest single-day wipeouts since summer 2023 for ETH and SOL and the biggest since June for BTC, triggering a sharp, sentiment-driven

European Blockchain Convention Drives Digital Finance Revival Amid 90% Blockchain Job Postings Decline

This content is provided by a sponsor PRESS RELEASE Global leaders convene in Barcelona showcasing resilience as EU advances digital euro and fintech investment reaches €36bn in H1, 2025 Barcelona,

Bitcoin Falls Below $113,000, But This Indicator Says It’s Time To Buy

Bitcoin has slipped under the $113,000 level during the past day, but an analyst has pointed out how a technical indicator could suggest this is a buying opportunity TD Sequential Has Just Given A

East vs West stablecoin cold war emerges in battle for the first trillion dollar stablecoin

MetaMask’s mUSD, the European Union’s digital euro initiative, and Hong Kong’s offshore yuan token AxCNH set up a three-way contest for on-chain payments The prize is not trading volume or
You have not selected any currencies to display