Close Menu
    Facebook X (Twitter) Instagram
    Friday, July 4
    X (Twitter) Instagram LinkedIn YouTube
    Chain Tech Daily
    Banner
    • Altcoins
    • Bitcoin
    • Crypto
    • Coinbase
    • Litecoin
    • Ethereum
    • Blockchain
    • Lithosphere News Releases
    Chain Tech Daily
    You are at:Home » Chrome extension compromise puts crypto wallets at risk, analysts warn
    Crypto

    Chrome extension compromise puts crypto wallets at risk, analysts warn

    James WilsonBy James WilsonMarch 12, 2025No Comments2 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Researchers have uncovered a breach in a widely-used Chrome extension SwitchyOmega that exposes users to private key theft.

    A compromised version of the Chrome-based proxy extension SwitchyOmega has been stealing private keys from crypto wallets, putting over 500,000 users at risk, analysts at SlowMist warn.

    The breach started when a phishing email targeted a Cyberhaven employee, an AI-powered data security company, resulting in the injection of harmful code into the extension. The phishing email falsely claimed that Cyberhaven’s browser extension violated Google‘s policies and threatened removal unless immediate action was taken, a March 12 research report shows.

    Chrome extension compromise puts crypto wallets at risk, analysts warn - 1
    Fake version of Proxy SwitchyOmega | Source: SlowMist

    SlowMist explained that the attacker used OAuth to access the Cyberhaven account, enabling them to upload the compromised extension version (24.10.4). As the extension was updated, users unknowingly installed the malicious code.

    The malicious version of the extension appears to have been capable of stealing sensitive data, including private keys and mnemonic phrases from crypto wallets. It remains unclear though how many of the 500,000 affected users were exposed to the exploit. Analysts at SlowMist have advised users to check the installed extension IDs to ensure they match the official version.

    Attacks on crypto traders through browser extensions aren’t anything new as bad actors have been trying to exploit them for a while now.

    In September 2024, analysts at cybersecurity firm Group-IB revealed that the notorious North Korean hacking gang Lazarus Group, known for its sophisticated cyber campaigns against the crypto industry, has intensified its efforts to target crypto professionals and developers through fake video apps and expanding its targeting of browser extensions.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticlePublic bitcoin companies underperform gold, S&P in 2025
    Next Article Oil, gold, or crypto? Why the next global crisis could send BTC to $1 million
    James Wilson

    Related Posts

    n8n: The New Automation King Redefining Business Efficiency in 2025

    July 4, 2025

    PancakeSwap banned in Turkey in DEX crackdown: is Uniswap next?

    July 4, 2025

    Maple SYRUP price eyes rebound as smart money piles in

    July 4, 2025
    Leave A Reply Cancel Reply

    Don't Miss

    n8n: The New Automation King Redefining Business Efficiency in 2025

    PancakeSwap banned in Turkey in DEX crackdown: is Uniswap next?

    Maple SYRUP price eyes rebound as smart money piles in

    police told to seize digital assets ‘without proof of crime’

    About
    About

    ChainTechDaily.com is your daily destination for the latest news and developments in the cryptocurrency space. Stay updated with expert insights and analysis tailored for crypto enthusiasts and investors alike.

    X (Twitter) Instagram YouTube LinkedIn
    Popular Posts

    n8n: The New Automation King Redefining Business Efficiency in 2025

    July 4, 2025

    PancakeSwap banned in Turkey in DEX crackdown: is Uniswap next?

    July 4, 2025

    Maple SYRUP price eyes rebound as smart money piles in

    July 4, 2025
    Lithosphere News Releases

    AGII Refines Sync Performance Across Chains to Boost Response Efficiency

    July 4, 2025

    Imagen AI (IMAGE) Developer to Enable Ripple Labs Stablecoin RLUSD for Service Payments

    July 3, 2025

    Imagen Network Begins Strategic Expansion with Bitcoin-Funded AI Infrastructure Rollout

    July 2, 2025
    Copyright © 2025

    Type above and press Enter to search. Press Esc to cancel.