AI-generated npm pkg stole Solana wallets

Tombstone icon
Jul 2025

Threat actors pushed an AI-generated npm package that acted as a wallet drainer, emptying Solana users’ funds.

Incident Details

Perpetrator:Developer
Severity:Catastrophic
Blast Radius:Supply-chain compromise of devs; user funds drained.