Trail of Bits reported additional cryptographic bugs in the widely used JavaScript package elliptic after testing it with Google's Wycheproof suite, adding to earlier public disclosures that had already produced multiple CVEs. The findings renewed concerns that the library, which is broadly embedded across the Node.js ecosystem for elliptic-curve cryptography, may produce insecure behavior under malformed or edge-case inputs and has accumulated unresolved security issues.
A follow-on report urged developers to remove elliptic from production dependencies altogether, citing the newly highlighted flaws, previously disclosed vulnerabilities, and alleged timing side-channel weaknesses in scalar-multiplication code paths. As a migration path, the author released elliptic-to-noble, a compatibility shim intended to preserve the elliptic API while swapping in noble-curves, and called for urgent ecosystem-wide replacement of the package rather than continued reliance on an apparently unmaintained cryptographic library.

See affected versions and whether adversaries are exploiting it.
3 events from the most recent confirmed update back to the earliest known activity.
Trail of Bits published a blog post reporting cryptographic bugs in the JavaScript npm package elliptic discovered using Wycheproof. The disclosure was accompanied by two CVEs affecting elliptic.
In an addendum, the author said they reviewed elliptic source code beyond the Trail of Bits issues and publicly disclosed additional alleged timing side-channel weaknesses. The claims specifically cited fixedNafMul, _wnafMul, and _wnafMulAdd code paths as leaking information through branch-dependent behavior.
The author published elliptic-to-noble, a shim package that preserves the elliptic API while replacing its implementation with noble-curves. It was presented as a practical mitigation to help projects reduce risk and migrate away from elliptic.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.