Bitcoin
Bitcoin (BTC)
$64,896.00 -2.55109
Bitcoin price
Ethereum
Ethereum (ETH)
$3,464.36 -1.56963
Ethereum price
BNB
BNB (BNB)
$585.80 -3.52724
BNB price
Solana
Solana (SOL)
$137.19 -4.13178
Solana price
XRP
XRP (XRP)
$0.4870290 -4.4347
XRP price
Shiba Inu
Shiba Inu (SHIB)
$0.0000181 -6.96471
Shiba Inu price
Pepe
Pepe (PEPE)
$0.0000108 -4.54636
Pepe price
Bonk
Bonk (BONK)
$0.0000212 -9.66318
Bonk price
Bitcoin
Bitcoin (BTC)
$64,896.00 -2.55109
Bitcoin price
Ethereum
Ethereum (ETH)
$3,464.36 -1.56963
Ethereum price
BNB
BNB (BNB)
$585.80 -3.52724
BNB price
Solana
Solana (SOL)
$137.19 -4.13178
Solana price
XRP
XRP (XRP)
$0.4870290 -4.4347
XRP price
Shiba Inu
Shiba Inu (SHIB)
$0.0000181 -6.96471
Shiba Inu price
Pepe
Pepe (PEPE)
$0.0000108 -4.54636
Pepe price
Bonk
Bonk (BONK)
$0.0000212 -9.66318
Bonk price
Bitcoin
Bitcoin (BTC)
$64,896.00 -2.55109
Bitcoin price
Ethereum
Ethereum (ETH)
$3,464.36 -1.56963
Ethereum price
BNB
BNB (BNB)
$585.80 -3.52724
BNB price
Solana
Solana (SOL)
$137.19 -4.13178
Solana price
XRP
XRP (XRP)
$0.4870290 -4.4347
XRP price
Shiba Inu
Shiba Inu (SHIB)
$0.0000181 -6.96471
Shiba Inu price
Pepe
Pepe (PEPE)
$0.0000108 -4.54636
Pepe price
Bonk
Bonk (BONK)
$0.0000212 -9.66318
Bonk price
Bitcoin
Bitcoin (BTC)
$64,896.00 -2.55109
Bitcoin price
Ethereum
Ethereum (ETH)
$3,464.36 -1.56963
Ethereum price
BNB
BNB (BNB)
$585.80 -3.52724
BNB price
Solana
Solana (SOL)
$137.19 -4.13178
Solana price
XRP
XRP (XRP)
$0.4870290 -4.4347
XRP price
Shiba Inu
Shiba Inu (SHIB)
$0.0000181 -6.96471
Shiba Inu price
Pepe
Pepe (PEPE)
$0.0000108 -4.54636
Pepe price
Bonk
Bonk (BONK)
$0.0000212 -9.66318
Bonk price
SirWin
SirWin
SirWin

Crypto users left vulnerable via sham Google Chrome extension

crypto-users-left-vulnerable-via-sham-google-chrome-extension
Edited by
News
Crypto users left vulnerable via sham Google Chrome extension

Crypto users discovered a harmful Google Chrome extension designed to steal funds by manipulating website cookie data.

Binance trader “doomxbt” first spotted the issue in February after noticing $70,000 in losses linked to suspicious activity. The attacker initially deposited the stolen funds on the AI-powered crypto exchange SideShift. 

On Tuesday, the culprit was reportedly linked to a fake Aggr app extension on Google’s Chrome store. Unlike the legitimate Aggr app which provides professional trading tools like on-chain liquidation trackers, the malicious version included code to collect all website cookies from users, allowing hackers to reconstruct passwords and user keys, especially for Binance accounts.

Inept due diligence from crypto influencers or an elaborate scam?

Once the fake Aggr app was available on the Chrome Store, hackers launched a social media campaign to encourage downloads.

The developers hired a network of influencers to promote the malicious software in a process known as “shilling”. Social media accounts populated timelines with trading buzzwords to convince users the tool was needed.

In this case, these influencers either forgot the popular crypto chant “do your own research” AKA “DYOR”, or ignored it. It’s unknown if promoters knew the fake Aggr left users vulnerable or if social media accounts profited from the attack. 

Following the incident, crypto.news reached out to some promoters for comment, but at least one blocked the request.

This incident is part of a larger trend, as similar attacks using Chrome extensions have occured recently. Last month, a trader lost over $800,000 in digital assets after interacting with two malicious Chrome browser extensions. Users are advised to DYOR and double-check any application before downloading to devices.