{"id":7723,"date":"2025-09-10T10:42:02","date_gmt":"2025-09-10T01:42:02","guid":{"rendered":"https:\/\/www.coinspeaker.com\/jp\/?p=7723"},"modified":"2025-09-10T10:42:02","modified_gmt":"2025-09-10T01:42:02","slug":"ledger-cto-warns-npm-supply-chain-attack-unsuccessful","status":"publish","type":"post","link":"https:\/\/www.coinspeaker.com\/jp\/ledger-cto-warns-npm-supply-chain-attack-unsuccessful\/","title":{"rendered":"\u4eee\u60f3\u901a\u8ca8\u72d9\u3063\u305fNPM\u653b\u6483\u3001Ledger CTO\u304c\u300c\u5931\u6557\u300d\u3068\u5831\u544a"},"content":{"rendered":"
\u30cf\u30fc\u30c9\u30a6\u30a7\u30a2\u30a6\u30a9\u30ec\u30c3\u30c8\u30e1\u30fc\u30ab\u30fcLedger\u306e\u30c1\u30e3\u30fc\u30eb\u30ba\u30fb\u30ae\u30e6\u30e1\u6700\u9ad8\u6280\u8853\u8cac\u4efb\u8005\uff08CTO\uff09\u306f9\u65e5\u3001Node Package Manager\uff08NPM\uff09\u306e\u30b5\u30d7\u30e9\u30a4\u30c1\u30a7\u30fc\u30f3\u306b\u5bfe\u3059\u308b\u5927\u898f\u6a21\u653b\u6483\u304c\u300c\u5e78\u3044\u306b\u3082\u5931\u6557\u300d\u3057\u3001\u300c\u88ab\u5bb3\u306f\u307b\u3068\u3093\u3069\u306a\u304b\u3063\u305f\u300d\u3068\u5831\u544a\u3057\u305f\u3002<\/a><\/p>\n Update on the NPM attack: The attack fortunately failed, with almost no victims.\ud83d\udd12<\/p>\n It began with a phishing email from a fake npm support domain that stole credentials and gave attackers access to publish malicious package updates. The injected code targeted web crypto activity,\u2026 https:\/\/t.co\/Ud1SBSJ52v<\/a> pic.twitter.com\/lOik6k7Dkp<\/a><\/p>\n — Charles Guillemet (@P3b7_) September 9, 2025<\/a><\/p><\/blockquote>\n\n