Ripple NPM Package xrpl.js Targeted by Hackers with a Backdoor that Steals Private Keys

  • The official Ripple package XRP Ledger (XRPL), an NPM package, was compromised by sophisticated attackers who installed a backdoor to extract crypto keys, gaining access to private wallets. Ripple discovered the breach when five new packages were added to the XRP Ledger (XRPL) repository.