Sunday, May 25, 2025
LBNN
  • Business
  • Markets
  • Politics
  • Crypto
  • Finance
  • Energy
  • Technology
  • Taxes
  • Creator Economy
  • Wealth Management
  • Documentaries
No Result
View All Result
LBNN

Solana supply chain attack contained, but users face six-figure losses

Simon Osuji by Simon Osuji
December 4, 2024
in Crypto
0
Solana supply chain attack contained, but users face six-figure losses
0
SHARES
2
VIEWS
Share on FacebookShare on Twitter

Join Japan's Web3 Evolution TodayJoin Japan's Web3 Evolution Today

A supply chain attack on the Solana network ecosystem was quickly contained during the past day.

On Dec. 3, Anza, a Solana-focused development team, revealed that an account with publish access to the solana/web3.js JavaScript library was compromised.

This allowed the attacker to inject unauthorized packages containing malicious code that stole private key information and drained funds from decentralized applications (dApps) that interact with private keys.

Solana blockchain safe

The attack did not affect non-custodial wallets, as these wallets do not expose private keys during transactions. Developers clarified that the issue is specific to the JavaScript client library and does not involve the Solana protocol.

A staunch Solana advocate, Mert Mumtaz, reassured the community that the attack was contained while pointing out that the incident had “nothing to do with the security of the [Solana] blockchain itself.”

He also explained that the issue mainly impacted developers who had updated their systems within a short time window, specifically those running JavaScript bots or similar backend systems using private keys. End-users and wallets were largely unaffected, as they do not expose private keys.

Meanwhile, several Solana-based projects, including Phantom and the Backpack exchange, confirmed that the exploit did not impact them.

Phantom, the most popular Solana wallet, emphasized that they had never used the compromised versions of @solana/web3.js, ensuring their users’ security remained intact.

Six-figure loss

While the attack was promptly contained, the pseudonymous developer of DeFiLlama 0xngmi reported that some investors lost six figures due to the incident.

On-chain data suggest that the malicious attack resulted in an estimated $160,000 in stolen assets, primarily in SOL. The attacker’s address held over $161,000 worth of SOL and additional tokens valued at over $31,000.

While the loss is significant, 0xngmi believes the damage could have been far worse. He explained that the hacker’s direct targeting of private keys may have limited the attack’s potential as a more sophisticated exploit, such as the one seen in last year’s Ledger hardware wallet compromise, could have been far more destructive.

In that incident, attackers replaced a legitimate library with a malicious one, resulting in losses exceeding $610,000

Latest Alpha Market Report

Source link

Related posts

Hyperliquid’s Solana moment is near as HYPE mirrors SOL-like 300% rally structure

Hyperliquid’s Solana moment is near as HYPE mirrors SOL-like 300% rally structure

May 25, 2025
Bad tokenomics kill good projects (here’s how to improve them)

Bad tokenomics kill good projects (here’s how to improve them)

May 24, 2025
Previous Post

‘Anger’ over Scottish budget plan to raid ScotWind windfall

Next Post

Amazon launches AI models to challenge rivals

Next Post
Amazon launches AI models to challenge rivals

Amazon launches AI models to challenge rivals

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

RECOMMENDED NEWS

New Economic Report: San Diego County Winery Sales Reach All-Time Record of $54.5 Million in 2023, an 11% Increase Over 2022

New Economic Report: San Diego County Winery Sales Reach All-Time Record of $54.5 Million in 2023, an 11% Increase Over 2022

1 year ago
Dubai’s RTA conducts 23,000 tyre safety inspections for heavy vehicles in H1 2024

Dubai’s RTA conducts 23,000 tyre safety inspections for heavy vehicles in H1 2024

9 months ago
Does Cash App Deposit Checks Instantly? (2023 Update)

How to Borrow Money From Cash App?

2 years ago
7.1m customers on estimated billing

Power supply gradually restored after collapse of National Grid

1 year ago

POPULAR NEWS

  • Ghana to build three oil refineries, five petrochemical plants in energy sector overhaul

    Ghana to build three oil refineries, five petrochemical plants in energy sector overhaul

    0 shares
    Share 0 Tweet 0
  • When Will SHIB Reach $1? Here’s What ChatGPT Says

    0 shares
    Share 0 Tweet 0
  • Matthew Slater, son of Jackson State great, happy to see HBCUs back at the forefront

    0 shares
    Share 0 Tweet 0
  • Dolly Varden Focuses on Adding Ounces the Remainder of 2023

    0 shares
    Share 0 Tweet 0
  • US Dollar Might Fall To 96-97 Range in March 2024

    0 shares
    Share 0 Tweet 0
  • Privacy Policy
  • Contact

© 2023 LBNN - All rights reserved.

No Result
View All Result
  • Home
  • Business
  • Politics
  • Markets
  • Crypto
  • Economics
    • Manufacturing
    • Real Estate
    • Infrastructure
  • Finance
  • Energy
  • Creator Economy
  • Wealth Management
  • Taxes
  • Telecoms
  • Military & Defense
  • Careers
  • Technology
  • Artificial Intelligence
  • Investigative journalism
  • Art & Culture
  • Documentaries
  • Quizzes
    • Enneagram quiz
  • Newsletters
    • LBNN Newsletter
    • Divergent Capitalist

© 2023 LBNN - All rights reserved.