{"id":1120,"date":"2026-08-19T20:03:37","date_gmt":"2026-08-19T14:33:37","guid":{"rendered":"https:\/\/www.hexnode.com\/threat-watch\/?p=1120"},"modified":"2026-08-19T20:05:15","modified_gmt":"2026-08-19T14:35:15","slug":"injective-sdk-npm-compromise-wallet-key-stealer","status":"publish","type":"post","link":"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/","title":{"rendered":"Injective SDK npm Compromise: Supply-Chain Attack Steals Wallet Keys"},"content":{"rendered":"<p>A compromised release of the Injective Labs TypeScript SDK on npm demonstrates how quickly a trusted software dependency can become a software supply-chain attack. A single malicious package update briefly exposed developers who generated or imported cryptocurrency wallets, highlighting how compromised dependencies can place sensitive credentials, secrets, and development environments at risk before organizations have time to respond.<\/p>\n<h2>Technical Analysis<\/h2>\n<p>According to public reporting, the attack began after a legitimate project contributor&#8217;s GitHub account was compromised. Using that trusted access, the attacker published version 1.20.21 of @injectivelabs\/sdk-ts and propagated the compromised dependency across multiple related npm packages that referenced the same SDK version.<\/p>\n<p>Unlike many supply-chain attacks that execute malicious code during package installation, the injected payload remained dormant until developers invoked wallet creation or wallet import functions within the SDK. This conditional execution reduced unnecessary exposure while targeting the operations most likely to handle sensitive cryptographic material.<\/p>\n<p>Once activated, the malicious code:<\/p>\n<ul>\n<li>Captured mnemonic seed phrases and private keys during wallet generation or import.<\/li>\n<li>Base64-encoded the stolen data before transmission.<\/li>\n<li>Buffered multiple captured secrets before exfiltration.<\/li>\n<li>Sent the data through an HTTP POST request to an endpoint hosted on Injective Labs&#8217; public infrastructure, helping the outbound traffic appear legitimate and making detection more difficult through simple domain-based monitoring.<\/li>\n<\/ul>\n<p>By abusing a trusted software dependency and legitimate project infrastructure, the attacker reduced the likelihood of immediate detection while targeting one of the most sensitive assets in cryptocurrency development: wallet recovery material. Although this campaign focused on cryptocurrency credentials, the underlying technique illustrates how compromised developer dependencies can just as easily be adapted to steal API keys, cloud credentials, repository tokens, signing certificates, or other secrets handled during software development and CI\/CD workflows.<br \/>\n<div class=\"next_blog\"><div class=\"post-next\"><div class=\"hex_blog_box_parent\"><div class=\"blog_warp_next\"><div class=\"next_blog_thumb\" style=\"background-image:url(https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/From-Detection-to-Defense-The-Evolution-of-Endpoint-Security-in-Modern-Enterprises.webp?format=webp)\"><\/div><div class=\"next_post_content\"><div class=\"center_box\"><h4>From Detection to Defense: The Evolution of Endpoint Security in Modern Enterprises<\/h4><p>Find out how endpoint security evolved from malware detection to continuous defense with visibility, patching, and automation.<\/p><\/div><\/div><\/div><a class=\"hex_blog_box_link hn-cta__blogs--blog-box\" href=\"https:\/\/www.hexnode.com\/blogs\/evolution-of-endpoint-security-modern-enterprises\/\" aria-label=\"From Detection to Defense: The Evolution of Endpoint Security in Modern Enterprises\"><\/a><\/div><\/div><\/div><\/p>\n<h2>How Hexnode Helps Reduce the Risk<\/h2>\n<p>Organizations can reduce the impact of software supply-chain incidents by combining endpoint management, device compliance, and endpoint threat detection. <a href=\"https:\/\/www.hexnode.com\/uem\/\" rel=\"noopener\">Hexnode UEM<\/a> helps security teams maintain secure developer endpoints by enforcing compliance policies, maintaining software inventory, restricting unapproved applications, and enabling remote remediation of noncompliant devices.<\/p>\n<p><a href=\"https:\/\/www.hexnode.com\/xdr\/\" rel=\"noopener\">Hexnode XDR<\/a> and endpoint security capabilities provide visibility into endpoint activity that may indicate a compromised development environment. Security teams can investigate behaviors such as:<\/p>\n<ul>\n<li>Suspicious process execution associated with unauthorized applications or scripts.<\/li>\n<li>Potential credential access activity that warrants investigation.<\/li>\n<li>Unexpected outbound network connections that could indicate data exfiltration.<\/li>\n<li>Indicators of post-compromise activity on managed endpoints.<\/li>\n<\/ul>\n<p>If malicious activity is detected, security teams can respond quickly using One-Click Remediation, including Network Isolation to contain an affected endpoint and Process Kill to terminate suspicious processes while the incident is investigated.<\/p>\n<p>Organizations can further reduce risk by enforcing device compliance and conditional access policies so that only trusted, managed devices can access source code repositories, cloud resources, and CI\/CD environments. This approach helps limit the blast radius of a compromised developer endpoint and strengthens overall software supply-chain security.<br \/>\n<section id='resource-single'>\n                    <div class='resource-box'>\n                        <div class='resource-box__image-section'>\n                            <div class='resource-box__image-wrap'>\n                                <img decoding=\"async\" src=\"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/HexnodeUEM-InfoSheet-Thumbnail.webp?format=webp\" class=\"resource-box__image\" alt=\"HexnodeUEM-InfoSheet-Thumbnail\" loading=\"lazy\" srcset=\"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/HexnodeUEM-InfoSheet-Thumbnail.webp?format=webp 960w, https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/HexnodeUEM-InfoSheet-Thumbnail-300x225.webp?format=webp 300w, https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/HexnodeUEM-InfoSheet-Thumbnail-768x576.webp?format=webp 768w, https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/HexnodeUEM-InfoSheet-Thumbnail-133x100.webp?format=webp 133w\" sizes=\"auto, (max-width: 960px) 100vw, 960px\" title=\"HexnodeUEM-InfoSheet-Thumbnail\" \/>\n                            <\/div>\n                        <\/div>\n                        <div class='resource-box__content-section'>\n                            <h5 class='resource-box__content-subheading'>\n                            Featured Resource\n                            <\/h5>\n                            <h4 class='resource-box__content-heading'>\n                            Introduction to Hexnode\n                            <\/h4>\n                            <p class='resource-box__contents'>\n                            Download to discover how Hexnode can transform your endpoint management strategy.\n                            <\/p>\n                            <a class='resource-box__content-link hn-cta__blogs--resource-box' href='https:\/\/www.hexnode.com\/resources\/introduction-to-hexnode\/'>\n                            Get the Intro Sheet\n                            <svg xmlns='http:\/\/www.w3.org\/2000\/svg' width='20' height='20' viewBox='0 0 20 20'>\n                            <g id='arrow' transform='translate(-309 -191)' opacity='0'>\n                                <rect id='base' width='20' height='20' transform='translate(309 191)' fill='none'\/>\n                                <path id='arrow-2' data-name='arrow' d='M13.093.5,6.8,6.8.5.5' transform='translate(315 207.594) rotate(-90)' fill='none' stroke='#0549d1' stroke-linecap='round' stroke-linejoin='round' stroke-width='1.2'\/>\n                            <\/g>\n                            <\/svg>\n\n                            <\/a>\n                        <\/div>\n                    <\/div>\n                <\/section><\/p>\n<h2>Conclusion<\/h2>\n<p>The Injective SDK incident reinforces that software package ecosystems are part of the enterprise attack surface. Even short-lived compromises of trusted dependencies can expose sensitive credentials and undermine developer workflows before traditional security controls detect malicious activity.<\/p>\n<p>Organizations should strengthen their software supply-chain defenses by combining dependency monitoring, rapid secret rotation, endpoint visibility, CI\/CD hardening, and policy-driven endpoint management. Together, these controls help reduce the impact of compromised dependencies, limit the blast radius of developer endpoint compromises, and improve resilience against future supply-chain attacks.<br \/>\n<div class=\"signup_box\"><div class=\"signup_wrap_img\"><div class=\"signup-bg\" style=\"background-image:url(https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Hexnode-MDM-free-trial.jpg?format=webp)\"><\/div><\/div><div class=\"signup_wrap\"><h5>Try Hexnode free for 14 days<\/h5><p>Protect developer endpoints before compromised packages become enterprise incidents. Start with Hexnode.<\/p><a href=\"https:\/\/www.hexnode.com\/mobile-device-management\/cloud\/signup\/\" class=\"hn-cta__blogs--signup-stripe\" target=\"_blank\"> Sign Up Today<\/a><\/div><\/div><\/p>\n","protected":false},"excerpt":{"rendered":"<p>A compromised release of the Injective Labs TypeScript SDK on npm demonstrates how quickly a&#8230;<\/p>\n","protected":false},"author":8,"featured_media":1121,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[13,15],"class_list":["post-1120","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-identity-abuse","category-malware","product_category-extended-detection-and-response","tab_group-malware-and-ransomware"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Injective SDK npm Compromise: Supply-Chain Attack Steals Wallet Keys<\/title>\n<meta name=\"description\" content=\"Injective SDK npm compromise exposed wallet keys. Learn supply-chain security lessons for developer endpoints, CI\/CD, XDR, and UEM.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Injective SDK npm Compromise: Supply-Chain Attack Steals Wallet Keys\" \/>\n<meta property=\"og:description\" content=\"Injective SDK npm compromise exposed wallet keys. Learn supply-chain security lessons for developer endpoints, CI\/CD, XDR, and UEM.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/\" \/>\n<meta property=\"og:site_name\" content=\"Hexnode Threat Watch\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/Hexnode\/\" \/>\n<meta property=\"article:published_time\" content=\"2026-08-19T14:33:37+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-08-19T14:35:15+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Injective-SDK-npm-compromise.webp?format=webp\" \/>\n\t<meta property=\"og:image:width\" content=\"1024\" \/>\n\t<meta property=\"og:image:height\" content=\"535\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/webp\" \/>\n<meta name=\"author\" content=\"Alanna River\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@thehexnode\" \/>\n<meta name=\"twitter:site\" content=\"@thehexnode\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Alanna River\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":[\"Article\",\"BlogPosting\"],\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/injective-sdk-npm-compromise-wallet-key-stealer\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/injective-sdk-npm-compromise-wallet-key-stealer\\\/\"},\"author\":{\"name\":\"Alanna River\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/person\\\/c2ed050402be36f7ece23a9b07bc9e64\"},\"headline\":\"Injective SDK npm Compromise: Supply-Chain Attack Steals Wallet Keys\",\"datePublished\":\"2026-08-19T14:33:37+00:00\",\"dateModified\":\"2026-08-19T14:35:15+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/injective-sdk-npm-compromise-wallet-key-stealer\\\/\"},\"wordCount\":574,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/injective-sdk-npm-compromise-wallet-key-stealer\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/Injective-SDK-npm-compromise.webp?format=webp\",\"articleSection\":[\"Identity Abuse\",\"Malware\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/injective-sdk-npm-compromise-wallet-key-stealer\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/injective-sdk-npm-compromise-wallet-key-stealer\\\/\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/injective-sdk-npm-compromise-wallet-key-stealer\\\/\",\"name\":\"Injective SDK npm Compromise: Supply-Chain Attack Steals Wallet Keys\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/injective-sdk-npm-compromise-wallet-key-stealer\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/injective-sdk-npm-compromise-wallet-key-stealer\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/Injective-SDK-npm-compromise.webp?format=webp\",\"datePublished\":\"2026-08-19T14:33:37+00:00\",\"dateModified\":\"2026-08-19T14:35:15+00:00\",\"description\":\"Injective SDK npm compromise exposed wallet keys. Learn supply-chain security lessons for developer endpoints, CI\\\/CD, XDR, and UEM.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/injective-sdk-npm-compromise-wallet-key-stealer\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/injective-sdk-npm-compromise-wallet-key-stealer\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/injective-sdk-npm-compromise-wallet-key-stealer\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/Injective-SDK-npm-compromise.webp?format=webp\",\"contentUrl\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/Injective-SDK-npm-compromise.webp?format=webp\",\"width\":1024,\"height\":535,\"caption\":\"Injective-SDK-npm-compromise\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/injective-sdk-npm-compromise-wallet-key-stealer\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Injective SDK npm Compromise: Supply-Chain Attack Steals Wallet Keys\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#website\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/\",\"name\":\"Hexnode Threat Watch\",\"description\":\"Latest cyber threats, smarter enterprise response.\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#organization\"},\"alternateName\":\"Threat Watch\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#organization\",\"name\":\"Hexnode\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/hexnode-2.png?format=webp\",\"contentUrl\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/hexnode-2.png?format=webp\",\"width\":100,\"height\":100,\"caption\":\"Hexnode\"},\"image\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/Hexnode\\\/\",\"https:\\\/\\\/x.com\\\/thehexnode\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/hexnode\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/person\\\/c2ed050402be36f7ece23a9b07bc9e64\",\"name\":\"Alanna River\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/1d91e52e837001aa3e782febef8d4339b30257abee06ef86933aebc57aa48248?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/1d91e52e837001aa3e782febef8d4339b30257abee06ef86933aebc57aa48248?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/1d91e52e837001aa3e782febef8d4339b30257abee06ef86933aebc57aa48248?s=96&d=mm&r=g\",\"caption\":\"Alanna River\"},\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/author\\\/alanna-river\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Injective SDK npm Compromise: Supply-Chain Attack Steals Wallet Keys","description":"Injective SDK npm compromise exposed wallet keys. Learn supply-chain security lessons for developer endpoints, CI\/CD, XDR, and UEM.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/","og_locale":"en_US","og_type":"article","og_title":"Injective SDK npm Compromise: Supply-Chain Attack Steals Wallet Keys","og_description":"Injective SDK npm compromise exposed wallet keys. Learn supply-chain security lessons for developer endpoints, CI\/CD, XDR, and UEM.","og_url":"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/","og_site_name":"Hexnode Threat Watch","article_publisher":"https:\/\/www.facebook.com\/Hexnode\/","article_published_time":"2026-08-19T14:33:37+00:00","article_modified_time":"2026-08-19T14:35:15+00:00","og_image":[{"width":1024,"height":535,"url":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Injective-SDK-npm-compromise.webp?format=webp","type":"image\/webp"}],"author":"Alanna River","twitter_card":"summary_large_image","twitter_creator":"@thehexnode","twitter_site":"@thehexnode","twitter_misc":{"Written by":"Alanna River","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":["Article","BlogPosting"],"@id":"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/#article","isPartOf":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/"},"author":{"name":"Alanna River","@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/person\/c2ed050402be36f7ece23a9b07bc9e64"},"headline":"Injective SDK npm Compromise: Supply-Chain Attack Steals Wallet Keys","datePublished":"2026-08-19T14:33:37+00:00","dateModified":"2026-08-19T14:35:15+00:00","mainEntityOfPage":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/"},"wordCount":574,"commentCount":0,"publisher":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#organization"},"image":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/#primaryimage"},"thumbnailUrl":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Injective-SDK-npm-compromise.webp?format=webp","articleSection":["Identity Abuse","Malware"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/","url":"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/","name":"Injective SDK npm Compromise: Supply-Chain Attack Steals Wallet Keys","isPartOf":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/#primaryimage"},"image":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/#primaryimage"},"thumbnailUrl":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Injective-SDK-npm-compromise.webp?format=webp","datePublished":"2026-08-19T14:33:37+00:00","dateModified":"2026-08-19T14:35:15+00:00","description":"Injective SDK npm compromise exposed wallet keys. Learn supply-chain security lessons for developer endpoints, CI\/CD, XDR, and UEM.","breadcrumb":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/#primaryimage","url":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Injective-SDK-npm-compromise.webp?format=webp","contentUrl":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Injective-SDK-npm-compromise.webp?format=webp","width":1024,"height":535,"caption":"Injective-SDK-npm-compromise"},{"@type":"BreadcrumbList","@id":"https:\/\/www.hexnode.com\/threat-watch\/injective-sdk-npm-compromise-wallet-key-stealer\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.hexnode.com\/threat-watch\/"},{"@type":"ListItem","position":2,"name":"Injective SDK npm Compromise: Supply-Chain Attack Steals Wallet Keys"}]},{"@type":"WebSite","@id":"https:\/\/www.hexnode.com\/threat-watch\/#website","url":"https:\/\/www.hexnode.com\/threat-watch\/","name":"Hexnode Threat Watch","description":"Latest cyber threats, smarter enterprise response.","publisher":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#organization"},"alternateName":"Threat Watch","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.hexnode.com\/threat-watch\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.hexnode.com\/threat-watch\/#organization","name":"Hexnode","url":"https:\/\/www.hexnode.com\/threat-watch\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/logo\/image\/","url":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/hexnode-2.png?format=webp","contentUrl":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/hexnode-2.png?format=webp","width":100,"height":100,"caption":"Hexnode"},"image":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/Hexnode\/","https:\/\/x.com\/thehexnode","https:\/\/www.linkedin.com\/company\/hexnode"]},{"@type":"Person","@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/person\/c2ed050402be36f7ece23a9b07bc9e64","name":"Alanna River","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/1d91e52e837001aa3e782febef8d4339b30257abee06ef86933aebc57aa48248?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/1d91e52e837001aa3e782febef8d4339b30257abee06ef86933aebc57aa48248?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/1d91e52e837001aa3e782febef8d4339b30257abee06ef86933aebc57aa48248?s=96&d=mm&r=g","caption":"Alanna River"},"url":"https:\/\/www.hexnode.com\/threat-watch\/author\/alanna-river\/"}]}},"_links":{"self":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts\/1120","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/comments?post=1120"}],"version-history":[{"count":3,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts\/1120\/revisions"}],"predecessor-version":[{"id":1125,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts\/1120\/revisions\/1125"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/media\/1121"}],"wp:attachment":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/media?parent=1120"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/categories?post=1120"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}