CoinInsight360.com logo CoinInsight360.com logo
America's Social Casino

coinpedia 2025-07-03 10:32:16

Chrome And Firefox Users Targeted in Coordinated Crypto Credential Attacks

The post Chrome And Firefox Users Targeted in Coordinated Crypto Credential Attacks appeared first on Coinpedia Fintech News Popular web browsers Google Chrome and Mozilla Firefox are facing serious security threats. While Chrome is being targeted through a dangerous zero-day vulnerability, Firefox users are under attack from a slew of harmful browser extensions . On July 1, cybersecurity experts uncovered a malicious campaign involving 45 fake Firefox extensions designed to steal cryptocurrency wallet details from unsuspecting users. Malicious Firefox Extensions Mimicking Crypto Wallets The 45 malicious Firefox extensions impersonate legitimate crypto wallet tools from widely used platforms such as Coinbase, MetaMask, Trust Wallet, Phantom, Exodus, OKX, Keplr, MyMonero, Bitget, Leap, Ethereum Wallet, and Filfox. A security researcher at Koi Security, Yuval Ronen, reported on Wednesday that these extensions steal users’ wallet secrets and credentials. The linkage to discover the fake extensions was made through a meticulous effort to discover shared TTPs and infrastructure. This campaign has been active since April 2025 and is still evolving to discover further harmful activities in the browser. How Was This done The first step in the destructive move was to gain trust through ratings, reviews, branding, and functionality, which makes the extension appear widely adopted and well reviewed. After gaining trust, they used identical names and logos to impersonate the real services with visual similarities to deceive the users. In cases of open source, extensions cloned the real codebase and inserted their own malicious logic, creating extensions that behaved as expected by secretly stealing personal data. “The extensions extract wallet credentials directly from the targeted websites and exfiltrate them to a remote server controlled by the attacker. During initialization, they also transmit the victim’s external IP address, likely for tracking or targeting purposes,” said Koi Security. [post_titles_links postid=”477206″] Surge of Crypto Hacks in 2025 In May 2025, Coinbase Global announced that hackers obtained personal information, putting more than 70,000 customers at risk of attacks and extortion. Many global agencies, such as OFAC and FATF, have addressed various issues related to crypto hacks; however, despite the growing awareness, millions of individuals still fall victim to these crypto kidnappings. Risk Mitigation Steps Recommendations by Koi Security Install extensions only from verified publishers Treat browser extensions as full software assets Use an extension that allows and restricts installation to validated extensions only Timely monitoring to detect ownership transfers and other signs of compromise over time. To defend against the employees who unknowingly downloaded the malicious extensions for Firefox, these steps are to be followed, as recommended by Koi Security researcher, Ronen. [article_inside_subscriber_shortcode title=”Never Miss a Beat in the Crypto World!” description=”Stay ahead with breaking news, expert analysis, and real-time updates on the latest trends in Bitcoin, altcoins, DeFi, NFTs, and more.” category_name=”News” category_id=”6″] FAQs How can I protect my crypto wallet from browser hacks? Use hardware wallets, avoid browser-based storage, and install wallet tools only from official or verified sources. What are the best ways to secure crypto wallets in 2025? Enable 2FA, use cold storage, avoid public Wi-Fi, monitor wallet activity, and beware of phishing and fake extensions.

면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.