XRP Ledger Avoids Major Exploit After Malicious Code Found in SDK

  • A potential security breach involving the XRP Ledger was swiftly mitigated after malicious code was discovered in its JavaScript SDK, xrpl.js. The vulnerability stemmed from a stolen developer access token on the Node Package Manager (NPM) platform, enabling a threat actor to publish compromised versions of the software package.