RATE Group | Ethereum Wallet Injects Malicious Javascript To Steal Data
74055
wp-singular,post-template-default,single,single-post,postid-74055,single-format-standard,wp-theme-bridge,wp-child-theme-bridge-child,ajax_fade,page_not_loaded,,qode_grid_1300,side_area_uncovered_from_content,footer_responsive_adv,qode-content-sidebar-responsive,qode-child-theme-ver-1.0.0,qode-theme-ver-13.3,qode-theme-bridge,wpb-js-composer js-comp-ver-7.9,vc_responsive
 

Ethereum Wallet Injects Malicious Javascript To Steal Data

Ethereum Wallet Injects Malicious Javascript To Steal Data

[ad_1]

An Ethereum wallet available as a Chrome browser extension has been found to be injecting malicious javascript code. ‘Shitcoin Wallet’ tries to scrape data from other open windows and send it to a remote server.


MyEtherWallet And Binance Among Those Targeted

The code was identified by security and anti-phishing expert, Harry Denley, who warned about the potential breach in a tweet.

The ‘Shitcoin Wallet’ Chrome extension (ExtensionID: ckkgmccefffnbbalkmbbgebbojjogffn) downloads a number of javascript files from a remote server.

This code looks for other browser windows, open on the webpages of a number of exchanges and…

[ad_2]

Source link