Browser Extensions Used to Steal Cryptocurrency
Hackers are targeting cryptocurrency users through browser extensions on Chrome and Edge.
The malicious extension, 'Enable Right Click & Copy, Smart Unlock + OCR', was used by over 70,000 people in Chrome and around 10,000 in Edge before it was identified as a threat.
The malware establishes an encrypted connection with command-and-control servers, downloads JavaScript modules, and injects malicious scripts to intercept user data on crypto exchange websites and other services.
Researchers discovered that the extension can drain wallets from various blockchains, including EVM, Solana, and Tron, by spoofing buttons and replacing website content.