Crypto2Community
HomeCrypto NewsReviewsGuidesGamblingTradingPress Release

Crypto 2 Community

  • About Us
  • Editorial Policy
  • Why Trust Us
  • Contact Us
  • Privacy Policy
  • Submit a Press Release

Cryptocurrency

  • Best Cryptos to Buy Now
  • Best Crypto Exchanges
  • How To Buy Cryptocurrency
  • Best Crypto Wallets
  • Best Altcoins to Buy

Gambling

  • Best Bitcoin Casinos
  • Best Ethereum Casinos
  • Best Crypto Live Casinos
  • Best Crypto Faucet Casinos
  • Provably Fair Bitcoin Casinos

Best Platforms

  • eToro Review
  • BC.Game Review
  • Jackbit Review
  • Metaspins Review
  • CryptoLeo Review

© 2026 Crypto2Community.com

CAUTION: The content presented on this platform is not intended as financial guidance, and we lack the authorization to offer investment advice. Any material found on this website should not be construed as an endorsement or recommendation of any specific trading strategy or investment decision. The information provided herein is of a general nature, and therefore it is essential to evaluate it in the context of your objectives, financial circumstances, and requirements.

Investment activities involve speculation and entail inherent risks to your capital. This website is not intended for utilization in jurisdictions where the described trading or investment activities are prohibited, and it should only be accessed by individuals who are legally permitted to do so. Depending on your country or state of residence, your investment may not be eligible for investor protection, hence it is advisable to conduct thorough research independently or seek appropriate guidance. While this website is accessible to you free of charge, please note that we may receive commissions from the companies featured on this site.

Disclosure: 18+ Rules regarding online gambling vary from country to country, please ensure you are following them and gamble responsibly. The content on this website is provided for entertainment purposes only. We may utilise affiliate links within our content, and receive commission.

Home/Crypto News
Crypto News

XRP Ledger Faces Security Threat as Developer Tool Compromised

Author
Austin Mwendia
Austin Mwendia
Crypto Writer
Fact Checked by Joshua Downes
Last updated: April 23, 2025
Cryptocurrency trading is speculative and your capital is at risk when you trade. We may earn affiliate commissions from some of the products on this page - at no extra cost to you.
TweetShareLinkedIn0
XRP Ledger Faces Security Threat as Developer Tool Compromised

Highlights:

  • Malicious code in xrpl.js put many XRP wallets at risk but was removed with a quick update from the foundation.
  • Developers must upgrade to the safe version of xrpl.js to avoid exposure to stolen private keys.
  • The attack used a stolen access token and showed how risky open-source tools can be in blockchain projects.

Aikido Intel, a security specialist, recently discovered a security issue in xrpl.js, a token used to interact with the XRP Ledger. On April 22, Aikido Security flagged unusual activity involving several newly published versions of the library. The problem was caused by a developer access token that was stolen and used to publish these versions on the Node Package Manager platform.

Advertisement

Banner

🚨We have discovered a backdoor in the official #xrpl NPM package. This back door steals private keys and sends them to attackers. The affected versions 4.2.1 – 4.2.4, if you are using an earlier version, do not upgrade.#crypto #malware #npm pic.twitter.com/wshcTFKjbR

— Aikido Security (@AikidoSecurity) April 22, 2025

The malicious versions included hidden code that attackers could use to collect private keys from users. If used, the code allowed attackers to take control of wallets and move funds. The move posed a serious threat to developers and users who rely on this library to connect with the XRP Ledger.

The XRP Ledger Foundation reacted promptly to the security warning. They released a new patched version of the library, 4.2.5, to remove the harmful code. They also confirmed that the main XRP Ledger codebase and GitHub repository were secure and no one changed them.

For users of the 2.14.x branch we've just published an updated npm package to remove the previously compromised version. If you’re using the 2.14.x branch, please update to 2.14.3 immediately:https://t.co/ZgCiSPf8px

— XRP Ledger Foundation (Official) (@XRPLF) April 22, 2025

This library sees over 140,000 downloads each week and is used in many applications and websites. Because of this, the problem could have affected a wide range of users across the XRP ecosystem. Fortunately, key services like Xaman Wallet and XRPScan were not affected, and several ecosystem projects confirmed the same.

Foundation Advises Developers to Act Quickly

After detecting the threat, the foundation acted fast to remove the affected versions and inform developers. Specifically, the foundation advised them to upgrade to two other versions. They also recommended rotating private keys or seed phrases if the affected versions were used in any project.

Aikido performed further checks and found that the attacker had stolen the data on a specific domain, 0x9c.xyz. The harmful versions of the library activated the backdoor as soon as the victim created a new wallet. This allowed the attacker to receive private keys without alerting the user.

The malicious code was only discovered in early versions in the built JavaScript files. This approach made it difficult for standard reviews to notice the problem. Later versions of the package included the backdoor in the original TypeScript files, making the threat more persistent.

Aikido Security also encouraged developers to check their network logs for any connections to the suspicious domain. They noted that bad actors had refined their methods across the fake versions to avoid early detection.

Identity Of Hacker Still Unknown

Authorities have not revealed the identity of the attacker, and the way the access token was stolen remains unknown. While the core XRP Ledger itself was not affected, the event underscored just how dangerous supply chain attacks can be for blockchain projects.

The XRP Ledger Foundation confirmed that it had removed the compromised versions from its code repository. Moreover, it also shared that key ecosystem partners such as Gen3 Games and First Ledger had not been affected.

Many have confirmed that they are not affected including @XamanWallet, @xrpscan, @First_Ledger, @gen3games and others.

— XRP Ledger Foundation (Official) (@XRPLF) April 22, 2025

eToro Platform

Best Crypto Exchange

  • Over 90 top cryptos to trade
  • Regulated by top-tier entities
  • User-friendly trading app
  • 30+ million users
9.9

5 Stars

Visit eToro

eToro is a multi-asset investment platform. The value of your investments may go up or down. Your capital is at risk. Don’t invest unless you’re prepared to lose all the money you invest. This is a high-risk investment, and you should not expect to be protected if something goes wrong.

Advertisement

Banner

Tags

Aikido Intelcrypto hackTypeScript filesXRP Ledger
Austin Mwendia
Author

Austin Mwendia

Austin Mwendia is a passionate crypto journalist with three years of experience. He has contributed to various media outlets, covering blockchain technology, market analysis, and financial trends. He is committed to educating readers and expanding the adoption of blockchain and decentralized finance.

View full profile ›

ℹ️About Crypto2Community's Editorial Process

Crypto2Community's editorial policy is centered on delivering thoroughly researched, accurate, and unbiased content. We uphold strict editorial policy and sourcing standards, and each page undergoes diligent review by our team of top crypto industry experts and seasoned editors. This process ensures the integrity, relevance, and value of our content for our readers.

More by this author:

  • OKX Launches Exchange OS to Help Developers Build Onchain Trading Markets
  • Crypto Weekly Market Wrap May 25 – Policy Shifts, Treasury Moves & Security Breaches
  • Bitcoin Demand Falls to Lowest Level as Market Sentiment Turns Bearish

Related Articles:

OKX Launches Exchange OS to Help Developers Build Onchain Trading Markets
OKX Launches Exchange OS to Help Developers Build Onchain Trading Markets
Crypto News7 minutes ago
Syed Ali Haider
By Syed Ali Haider5/26/2026
Crypto Weekly Market Wrap May 25 – Policy Shifts, Treasury Moves & Security Breaches
Crypto Weekly Market Wrap May 25 – Policy Shifts, Treasury Moves & Security Breaches
Crypto News•Weekly Crypto Market Wrap14 hours ago
Raymond Munene
By Raymond Munene5/25/2026
Bitcoin Demand Falls to Lowest Level as Market Sentiment Turns Bearish
Bitcoin Demand Falls to Lowest Level as Market Sentiment Turns Bearish
Crypto News16 hours ago
Chinedu Agbakwusi
By Chinedu Agbakwusi5/25/2026

Advertisement

Banner

Advertisement

Banner

🔥Latest offers

Play Now

9.85 Stars

🔥 Get up to 60% with all rewards

Claim Bonus

9.65 Stars

💸 300% deposit bonus up to 20,000 USD

Visit eToro

9.95 Stars

Best Crypto Exchange 2025

Virtual currencies are highly volatile. Your capital is at risk.

Visit KuCoin

9.55 Stars

Trading features & low fees

Popular Topics

  • Sei Price Prediction 2025, 2030, 2040
  • Uniswap Price Prediction 2025, 2030, 2040
  • Near Protocol Price Prediction 2025, 2030, 2040
  • Loopring Price Prediction 2025, 2030, 2040
  • Chainlink Price Prediction 2025, 2030, 2040

Trending News

  • OKX Launches Exchange OS to Help Developers Build Onchain Trading Markets
  • Crypto Weekly Market Wrap May 25 – Policy Shifts, Treasury Moves & Security Breaches
  • Bitcoin Demand Falls to Lowest Level as Market Sentiment Turns Bearish
  • Blockaid Flags $3M SquidRouterModule Exploit Draining 86 Gnosis Safes
  • Ethereum Price Analysis – Staking and Institutional Demand Fuel Bullish Outlook Toward $3,000
  • Bitcoin Price Prediction – Weak Institutional Demand Puts BTC at Risk of Drop Toward $65K
  • Tether, Georgia Move to Bring Georgian Lari On-Chain with GEL₮ Stablecoin
  • Top Cryptos to Watch Today, May 25 – BNB, Tron, Hyperliquid
  • Socket Warns TrapDoor Malware Is Targeting Crypto Developers
  • Coinbase CEO Outlines Eight Crypto Upgrades Needed to Fix Global Finance
  • Why the Crypto Market is Down Today?
  • Bitcoin ETFs Bleed $1.26B, But Santiment Says the Signal Is Not Clearly Bearish
  • Grayscale Files Third S-1 Amendment with SEC for HYPE ETF
  • SEC Approves Nasdaq QBTC Bitcoin Index Options for Wall Street Traders
  • Grayscale Names Top Blockchains Set to Benefit From U.S. Crypto Clarity
  • ECB Resists Euro Stablecoins Push Over Bank Stability Concerns
  • Best Memecoins to Purchase Today, May 23 – BONK, PEPE, SIREN
  • Bank of America Holds $53M in Crypto ETF Exposure, BlackRock’s IBIT Takes the Lead
  • BlackRock Moves Over $150M in BTC and ETH to Coinbase Prime
  • THORChain Restart Vote Opens as ADR028 Sets Exploit Recovery Path