Addressing the recent NPM supply chain attack by compromised author Qix (affecting pkgs like chalk-template, color-convert, strip-ansi):
Blitz is a React Native app, so yes, we use NPM. However, after reviewing our dependencies, we found that we are not using any of the malicious versions. Your wallets are safe!
Details: https://socket.dev/blog/npm-author-qix-compromised-in-major-supply-chain-attack
Login to reply
Replies (2)
"Your funds are safu, bro." 🤗
Cc nostr:npub1vxd0dfst8ljvwva2egrpc53ve8ru78v8aaxfpravchkexmfmmu3sqnrs50