Malicious Extensions Found Stealing Crypto, Passwords from Russian Users
Russian users are being warned about a new threat to their cryptocurrency wallets. Malicious Chrome and Edge extensions have been discovered, capable of stealing crypto, passwords, and other user data.
A total of 19 malicious add-ons were found, with at least five initially legitimate extensions compromised through automatic updates. One such extension, Enable Right Click & Copy, Smart Unlock + OCR, was installed by over 80,000 users before being removed from the Chrome Web Store on September 3.
The affected services include Binance, Bybit, OKX, Coinbase, MetaMask, and others. The malware can intercept data regardless of the user's location and has been described as 'capable of stealing cryptocurrency, passwords, and other user data'.
Experts advise users to regularly check their installed extensions for any suspicious activity and consider changing compromised passwords and transferring cryptocurrency from associated wallets to new addresses.