A threat actor seemingly exploited an XRP Ledger’s developer access token to publish illicit code to the burgeoning network in a move that could have been “catastrophic” for the network, the security team that spotted the issue said in an update.Charlie Eriksen, a researcher at Aikido Security who first spotted the problem, said a hidden issue was added to recent versions of a new toolkit used to build apps that work with the XRP Ledger.“A developer's NPM access token was stolen by the threat actors,” Aikido said on X. “It is unclear how right now
source: https://www.coindesk.com/markets/2025/04/23/xrp-ledger-bug-patched-after-serious-flaw-spotted-in-xrpl-library