JavaScript library used for sneak attack on Copay Bitcoin wallet

A mystery payload that was sneaked into a hugely popular JavaScript library seems to have been a deliberate plot to ransack bitcoins from a mobile cryptocoin wallet known as Copay, from a company called BitPay. Back in September 2018, the author of a popular Node.js utility package called , used for sending and receiving data, handed over the reins to a new maintainer going by the handle of Right9ctrl.

Read full news article on Naked Security


