[Formal Notice & Advisory] Regarding npm and Ducky Software

Regarding npm

9/9/20251 min read

You may have heard of a recent incident regarding The Node Package Manager (npm)

npm is a public archive of plugins and libraries for use by developers when building applications, ~10 hours ago some packages were found to have malware targeting cryptocurrency transfers and crypto finance.

We currently have no reason to believe Ducky Software Group products or services were affected by this issue, we will let you know as soon as possible if that changes.

In the meantime please be advised to monitor crypto transactions or other activity and double check them as developers race to implement the patch put out by the team at GitHub and npm.

Stay safe and all the best.