Bitcoin
Bitcoin (BTC)
$79,380.00 -1.56489
Bitcoin price
Ethereum
Ethereum (ETH)
$2,255.71 -1.30784
Ethereum price
XRP
XRP (XRP)
$1.42 -1.36443
XRP price
BNB
BNB (BNB)
$669.98 0.5506
BNB price
Solana
Solana (SOL)
$90.91 -4.01613
Solana price
Hyperliquid
Hyperliquid (HYPE)
$38.76 -3.79762
Hyperliquid price
Cardano
Cardano (ADA)
$0.263697 -3.03473
Cardano price
Chainlink
Chainlink (LINK)
$10.17 -1.3689
Chainlink price
POL (ex-MATIC)
POL (ex-MATIC) (POL)
$0.096744 -2.32619
POL (ex-MATIC) price
Toncoin
Toncoin (TON)
$2.10 -9.11294
Toncoin price
Asteroid Shiba
Asteroid Shiba (ASTEROID)
$0.0002842 -4.79829
Asteroid Shiba price
Bitcoin
Bitcoin (BTC)
$79,380.00 -1.56489
Bitcoin price
Ethereum
Ethereum (ETH)
$2,255.71 -1.30784
Ethereum price
XRP
XRP (XRP)
$1.42 -1.36443
XRP price
BNB
BNB (BNB)
$669.98 0.5506
BNB price
Solana
Solana (SOL)
$90.91 -4.01613
Solana price
Hyperliquid
Hyperliquid (HYPE)
$38.76 -3.79762
Hyperliquid price
Cardano
Cardano (ADA)
$0.263697 -3.03473
Cardano price
Chainlink
Chainlink (LINK)
$10.17 -1.3689
Chainlink price
POL (ex-MATIC)
POL (ex-MATIC) (POL)
$0.096744 -2.32619
POL (ex-MATIC) price
Toncoin
Toncoin (TON)
$2.10 -9.11294
Toncoin price
Asteroid Shiba
Asteroid Shiba (ASTEROID)
$0.0002842 -4.79829
Asteroid Shiba price
Bitcoin
Bitcoin (BTC)
$79,380.00 -1.56489
Bitcoin price
Ethereum
Ethereum (ETH)
$2,255.71 -1.30784
Ethereum price
XRP
XRP (XRP)
$1.42 -1.36443
XRP price
BNB
BNB (BNB)
$669.98 0.5506
BNB price
Solana
Solana (SOL)
$90.91 -4.01613
Solana price
Hyperliquid
Hyperliquid (HYPE)
$38.76 -3.79762
Hyperliquid price
Cardano
Cardano (ADA)
$0.263697 -3.03473
Cardano price
Chainlink
Chainlink (LINK)
$10.17 -1.3689
Chainlink price
POL (ex-MATIC)
POL (ex-MATIC) (POL)
$0.096744 -2.32619
POL (ex-MATIC) price
Toncoin
Toncoin (TON)
$2.10 -9.11294
Toncoin price
Asteroid Shiba
Asteroid Shiba (ASTEROID)
$0.0002842 -4.79829
Asteroid Shiba price
Bitcoin
Bitcoin (BTC)
$79,380.00 -1.56489
Bitcoin price
Ethereum
Ethereum (ETH)
$2,255.71 -1.30784
Ethereum price
XRP
XRP (XRP)
$1.42 -1.36443
XRP price
BNB
BNB (BNB)
$669.98 0.5506
BNB price
Solana
Solana (SOL)
$90.91 -4.01613
Solana price
Hyperliquid
Hyperliquid (HYPE)
$38.76 -3.79762
Hyperliquid price
Cardano
Cardano (ADA)
$0.263697 -3.03473
Cardano price
Chainlink
Chainlink (LINK)
$10.17 -1.3689
Chainlink price
POL (ex-MATIC)
POL (ex-MATIC) (POL)
$0.096744 -2.32619
POL (ex-MATIC) price
Toncoin
Toncoin (TON)
$2.10 -9.11294
Toncoin price
Asteroid Shiba
Asteroid Shiba (ASTEROID)
$0.0002842 -4.79829
Asteroid Shiba price

Chrome extension compromise puts crypto wallets at risk, analysts warn

Dorian Batycka
Edited by
News
Chrome extension compromise puts crypto wallets at risk, analysts warn

Researchers have uncovered a breach in a widely-used Chrome extension SwitchyOmega that exposes users to private key theft.

A compromised version of the Chrome-based proxy extension SwitchyOmega has been stealing private keys from crypto wallets, putting over 500,000 users at risk, analysts at SlowMist warn.

The breach started when a phishing email targeted a Cyberhaven employee, an AI-powered data security company, resulting in the injection of harmful code into the extension. The phishing email falsely claimed that Cyberhaven’s browser extension violated Google‘s policies and threatened removal unless immediate action was taken, a March 12 research report shows.

Chrome extension compromise puts crypto wallets at risk, analysts warn - 2
Fake version of Proxy SwitchyOmega | Source: SlowMist

SlowMist explained that the attacker used OAuth to access the Cyberhaven account, enabling them to upload the compromised extension version (24.10.4). As the extension was updated, users unknowingly installed the malicious code.

The malicious version of the extension appears to have been capable of stealing sensitive data, including private keys and mnemonic phrases from crypto wallets. It remains unclear though how many of the 500,000 affected users were exposed to the exploit. Analysts at SlowMist have advised users to check the installed extension IDs to ensure they match the official version.

Attacks on crypto traders through browser extensions aren’t anything new as bad actors have been trying to exploit them for a while now.

In September 2024, analysts at cybersecurity firm Group-IB revealed that the notorious North Korean hacking gang Lazarus Group, known for its sophisticated cyber campaigns against the crypto industry, has intensified its efforts to target crypto professionals and developers through fake video apps and expanding its targeting of browser extensions.