According to Eriksen, a backdoor was inserted into recently released versions of a software-development kit used to build applications and interact with the XRP Ledger.
Quote
Sources
XRP Ledger Foundation discloses 'serious vulnerability' in recently updated version of XRPL JavaScript library
Referenced by
JavaScript library xrpl.js, was compromised in April 2025 by attackers who inserted a backdoor enabling potential theft of private keys and unauthorized access to wallets
Crypto news
Claim
News event