Ripple’s Chief Technology Officer, David Schwartz, has commended Xaman, a leading XRP wallet, for its quick action in addressing a major supply chain attack on the Node Package Manager (NPM) ecosystem. The incident unfolded after a reputable developer’s NPM account was compromised, leading to malicious code being injected into widely used JavaScript packages.
The malware was specifically designed to target popular cryptocurrency wallets, including MetaMask, by secretly altering wallet addresses to redirect funds to attackers. This type of supply chain attack has become a growing concern in the crypto industry, posing serious risks to unsuspecting users.
In response, the Xaman team conducted an immediate internal audit to ensure its systems and users remained safe. Their findings confirmed that the Xaman wallet was unaffected by the malicious code. The swift and transparent reaction reassured XRP users and highlighted Xaman’s commitment to security.
The incident also drew warnings from security experts. Ledger CTO Charles Guillemet advised crypto holders without hardware wallets featuring clear signing to temporarily avoid conducting on-chain transactions until the threat was fully assessed. Meanwhile, XRPL Labs co-founder Wietse Wind emphasized that supply chain attacks are becoming “more and more common,” underscoring the need for proactive defenses.
By quickly auditing and confirming its safety, Xaman demonstrated strong risk management and reinforced trust among its users. The attack itself serves as a reminder of the increasing sophistication of cyber threats in the blockchain ecosystem. As Ripple’s CTO highlighted, fast, decisive responses from wallet providers play a crucial role in protecting the broader crypto community.
Comment 0