search
Homeweb3.0The XRP Ledger Foundation has identified a 'serious vulnerability” in its official JavaScript library

On April 22, blockchain security specialist Aikido said in a blog post that XRP Ledger’s open-source JavaScript library was “compromised by sophisticated attackers”

The XRP Ledger Foundation has identified a 'serious vulnerability” in its official JavaScript library

The XRP Ledger Foundation has identified a “serious vulnerability” in the official JavaScript library used for interacting with the XRP Ledger blockchain network, the nonprofit said.

On April 22, blockchain security specialist Aikido said in a blog post that XRP Ledger’s open-source JavaScript library was “compromised by sophisticated attackers who put in a backdoor to steal cryptocurrency private keys and gain access to cryptocurrency wallets.”

The JavaScript library includes programs enabling developers to interact with the XRP Ledger and is distinct from the blockchain network itself.

“[T]his package is used by hundreds of thousands of applications and websites making it a potentially catastrophic supply chain attack on the cryptocurrency ecosystem,” Aikido said.

The XRP Ledger Foundation has already upgraded the code repository to “remove the previously compromised version,” it said in an April 22 post on the X platform.

We've identified a serious vulnerability in the official JavaScript library used for interacting with the XRP Ledger. This package is used by developers to integrate their applications with the XRP Ledger.

Several projects in the XRP Ledger ecosystem—including XRPScan, First Ledger, and Gen3 Games—have confirmed that they are not impacted by this incident.

The vulnerability has been patched, and the code repository has been upgraded to remove the previously compromised version.

The Foundation is committed to the security and stability of the XRP Ledger ecosystem. We are grateful to the researchers at Aikido for their swift discovery and disclosure of this vulnerability.

We will continue to monitor the situation and provide updates as needed.

— XRP Ledger Foundation (@XRPLF) April 22, 2024

It added that several XRP Ledger ecosystem projects — including XRPScan, First Ledger, and Gen3 Games — confirmed that they were not impacted by the incident.

The XRP token ended the US trading day up more than 3.5% despite news of the security breach, according to CoinGecko.

The token has a market capitalization of more than $125 billion and a fully diluted value of approximately $215 billion.

Institutional adoption

Launched in 2012, XRP Ledger is among the oldest blockchain networks and specializes in payments and decentralized finance (DeFi) applications for institutions.

It has been gaining prominence in recent months as a friendlier US regulatory environment paves the way for broader institutional adoption of the network’s token and ecosystem projects.

The XRP token’s price increased by upward of 300% after crypto-friendly US President Donald Trump prevailed in the November presidential election, according to CoinGecko.

Since then, several asset managers have asked the US Securities and Exchange Commission (SEC) to approve US-listed exchange-traded funds (ETFs) holding the XRP token.

On April 21, Coinbase listed futures contracts for the XRP token on its US derivatives exchange.

News data source: kdj.com

The above is the detailed content of The XRP Ledger Foundation has identified a 'serious vulnerability” in its official JavaScript library. For more information, please follow other related articles on the PHP Chinese website!

Statement
The content of this article is voluntarily contributed by netizens, and the copyright belongs to the original author. This site does not assume corresponding legal responsibility. If you find any content suspected of plagiarism or infringement, please contact admin@php.cn
Bitcoin (BTC) Soars Past $90,000, But Headwinds Persist That Could Cap Further UpsideBitcoin (BTC) Soars Past $90,000, But Headwinds Persist That Could Cap Further UpsideApr 23, 2025 am 11:22 AM

Bitcoin (BTC) surged past $91,000 on Tuesday, climbing nearly 5% amid renewed investor optimism and fresh hopes of a thaw in U.S.-China trade tensions,

As XRP Seemed to Gain Clearer Federal Standing, a New Oregon Lawsuit Targeting Crypto Exchange Coinbase Stirs Fresh ConcernsAs XRP Seemed to Gain Clearer Federal Standing, a New Oregon Lawsuit Targeting Crypto Exchange Coinbase Stirs Fresh ConcernsApr 23, 2025 am 11:20 AM

As XRP seemed to gain clearer federal standing, a new Oregon lawsuit targeting crypto exchange Coinbase stirs fresh concerns about potential state-level clampdowns.

Cardano (ADA) vs Ethereum (ETH): Early Proof-of-Stake and Network DesignCardano (ADA) vs Ethereum (ETH): Early Proof-of-Stake and Network DesignApr 23, 2025 am 11:18 AM

Cardano launched with a proof-of-stake (PoS) system. Ethereum originally used proof-of-work and switched to PoS years later.

XploraDEX (XPL) Token Distribution Begins, Signaling the Platform's Transition to Active DeploymentXploraDEX (XPL) Token Distribution Begins, Signaling the Platform's Transition to Active DeploymentApr 23, 2025 am 11:16 AM

ZURICH, April 22, 2025 (GLOBE NEWSWIRE) — The long-awaited $XPL token distribution has officially begun, signaling a pivotal moment in the XploraDEX journey

Chainlink (LINK) Is Again in the Spotlight Amidst Price DiscoveryChainlink (LINK) Is Again in the Spotlight Amidst Price DiscoveryApr 23, 2025 am 11:14 AM

Decentralized blockchain oracle network Chainlink (LINK) is again in the spotlight amid price discovery.

UXLink is excited to announce its strategic partnership with SolV protocol to unite decentralized technology and traditional finance.UXLink is excited to announce its strategic partnership with SolV protocol to unite decentralized technology and traditional finance.Apr 23, 2025 am 11:12 AM

UXLink is excited to announce its strategic partnership with SolV protocol to unite decentralized technology and traditional finance.

BlackRock's Spot Bitcoin ETF (IBIT) Records a Massive $4.2 Billion in Trading Volume TodayBlackRock's Spot Bitcoin ETF (IBIT) Records a Massive $4.2 Billion in Trading Volume TodayApr 23, 2025 am 11:10 AM

BlackRock’s spot Bitcoin ETF, IBIT, recorded a massive $4.2 billion in trading volume today as the price of Bitcoin soared above $90,000 for the first time since early March

India's Crypto Investors Shift From Long-Term Holdings to High-Frequency Trading of Meme CoinsIndia's Crypto Investors Shift From Long-Term Holdings to High-Frequency Trading of Meme CoinsApr 23, 2025 am 11:08 AM

CoinSwitch, India's largest crypto trading platform, has released fresh insights into the investment and trading behavior of Indian crypto investors for Q1 2025.

Hot AI Tools

Undresser.AI Undress

Undresser.AI Undress

AI-powered app for creating realistic nude photos

AI Clothes Remover

AI Clothes Remover

Online AI tool for removing clothes from photos.

Undress AI Tool

Undress AI Tool

Undress images for free

Clothoff.io

Clothoff.io

AI clothes remover

Video Face Swap

Video Face Swap

Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Tools

Dreamweaver CS6

Dreamweaver CS6

Visual web development tools

WebStorm Mac version

WebStorm Mac version

Useful JavaScript development tools

ZendStudio 13.5.1 Mac

ZendStudio 13.5.1 Mac

Powerful PHP integrated development environment

SecLists

SecLists

SecLists is the ultimate security tester's companion. It is a collection of various types of lists that are frequently used during security assessments, all in one place. SecLists helps make security testing more efficient and productive by conveniently providing all the lists a security tester might need. List types include usernames, passwords, URLs, fuzzing payloads, sensitive data patterns, web shells, and more. The tester can simply pull this repository onto a new test machine and he will have access to every type of list he needs.

SublimeText3 Mac version

SublimeText3 Mac version

God-level code editing software (SublimeText3)