Malicious Chrome Extension Exploits Solana Swaps, Stealing User Funds A recently identified malicious Google Chrome extension is facilitating fake Solana trades while covertly siphoning a portion of each transaction into the attacker’s wallet. The extension, dubbed Crypto Copilot, manipulates users attempting to execute swaps on the Solana blockchain, according to a report from cybersecurity firm [...]Malicious Chrome Extension Exploits Solana Swaps, Stealing User Funds A recently identified malicious Google Chrome extension is facilitating fake Solana trades while covertly siphoning a portion of each transaction into the attacker’s wallet. The extension, dubbed Crypto Copilot, manipulates users attempting to execute swaps on the Solana blockchain, according to a report from cybersecurity firm [...]

Malicious Chrome Extension Steals SOL Crypto Without Draining Wallets

2025/11/27 22:20
2 min di lettura
Per feedback o dubbi su questo contenuto, contattateci all'indirizzo crypto.news@mexc.com.
Malicious Chrome Extension Steals Sol Crypto Without Draining Wallets

Malicious Chrome Extension Exploits Solana Swaps, Stealing User Funds

A recently identified malicious Google Chrome extension is facilitating fake Solana trades while covertly siphoning a portion of each transaction into the attacker’s wallet. The extension, dubbed Crypto Copilot, manipulates users attempting to execute swaps on the Solana blockchain, according to a report from cybersecurity firm Socket.

Crypto Copilot allows users to trade Solana directly from their Twitter feeds, promising quick execution without switching apps. However, behind the scenes, the extension injects an additional transfer instruction into every swap—effectively draining a minimum of 0.0013 SOL or 0.05% of the total trade—without the user’s awareness. The mechanism leverages the decentralized exchange Raydium to facilitate these swaps, then appends a second, hidden transfer that reroutes SOL from the user’s wallet to the attacker’s address.

On the user interface, only the intended swap appears, with wallet confirmation screens summarizing the transaction without highlighting the extra, malicious instruction. “Users sign what appears to be a single swap, but both instructions execute atomically on-chain,” Socket explained.

Featured image of the Google Chrome extension. Source: Chrome Web Store

Socket has already submitted a takedown request to the Chrome Web Store security team. Despite being publicly available since June 18, 2024, the extension remains relatively obscure, with only 15 users reported so far. Crypto Copilot markets itself as an effortless way for Solana traders to execute swaps directly from social media, claiming to streamline trading opportunities without the hassle of multiple platform switches.

The proliferation of malicious Chrome extensions targeting the crypto community is well-documented. Earlier this month, Socket flagged another malicious wallet extension that drained user funds from the Chrome Web Store’s crypto ecosystem. In August, Jupiter, a decentralized exchange aggregator, identified yet another extension designed to empty Solana wallets. The risks are compounded by high-profile incidents, including a June 2024 case where a Chinese trader lost over $1 million after installing a rogue Binance plugin that hijacked account cookies.

As the browser extension ecosystem continues to attract malicious actors, security experts urge users to exercise caution when installing and confirming transactions in browser-based crypto tools. The ongoing exploitation highlights the importance of verifying extensions and transaction details before signing any blockchain-related activity.

This article was originally published as Malicious Chrome Extension Steals SOL Crypto Without Draining Wallets on Crypto Breaking News – your trusted source for crypto news, Bitcoin news, and blockchain updates.

Opportunità di mercato
Logo Solana
Valore Solana (SOL)
$90,19
$90,19$90,19
+0,27%
USD
Grafico dei prezzi in tempo reale di Solana (SOL)
Disclaimer: gli articoli ripubblicati su questo sito provengono da piattaforme pubbliche e sono forniti esclusivamente a scopo informativo. Non riflettono necessariamente le opinioni di MEXC. Tutti i diritti rimangono agli autori originali. Se ritieni che un contenuto violi i diritti di terze parti, contatta crypto.news@mexc.com per la rimozione. MEXC non fornisce alcuna garanzia in merito all'accuratezza, completezza o tempestività del contenuto e non è responsabile per eventuali azioni intraprese sulla base delle informazioni fornite. Il contenuto non costituisce consulenza finanziaria, legale o professionale di altro tipo, né deve essere considerato una raccomandazione o un'approvazione da parte di MEXC.

Potrebbe anche piacerti

Fed Decides On Interest Rates Today—Here’s What To Watch For

Fed Decides On Interest Rates Today—Here’s What To Watch For

The post Fed Decides On Interest Rates Today—Here’s What To Watch For appeared on BitcoinEthereumNews.com. Topline The Federal Reserve on Wednesday will conclude a two-day policymaking meeting and release a decision on whether to lower interest rates—following months of pressure and criticism from President Donald Trump—and potentially signal whether additional cuts are on the way. President Donald Trump has urged the central bank to “CUT INTEREST RATES, NOW, AND BIGGER” than they might plan to. Getty Images Key Facts The central bank is poised to cut interest rates by at least a quarter-point, down from the 4.25% to 4.5% range where they have been held since December to between 4% and 4.25%, as Wall Street has placed 100% odds of a rate cut, according to CME’s FedWatch, with higher odds (94%) on a quarter-point cut than a half-point (6%) reduction. Fed governors Christopher Waller and Michelle Bowman, both Trump appointees, voted in July for a quarter-point reduction to rates, and they may dissent again in favor of a large cut alongside Stephen Miran, Trump’s Council of Economic Advisers’ chair, who was sworn in at the meeting’s start on Tuesday. It’s unclear whether other policymakers, including Kansas City Fed President Jeffrey Schmid and St. Louis Fed President Alberto Musalem, will favor larger cuts or opt for no reduction. Fed Chair Jerome Powell said in his Jackson Hole, Wyoming, address last month the central bank would likely consider a looser monetary policy, noting the “shifting balance of risks” on the U.S. economy “may warrant adjusting our policy stance.” David Mericle, an economist for Goldman Sachs, wrote in a note the “key question” for the Fed’s meeting is whether policymakers signal “this is likely the first in a series of consecutive cuts” as the central bank is anticipated to “acknowledge the softening in the labor market,” though they may not “nod to an October cut.” Mericle said he…
Condividi
BitcoinEthereumNews2025/09/18 00:23
DWF Labs partners with MemeCore, with MemeCore token up 333% since September

DWF Labs partners with MemeCore, with MemeCore token up 333% since September

PANews reported on September 18 that according to official news from DWF Labs, it announced a partnership with MemeCore to support the first L1 project designed specifically for Meme 2.0. The project's token M has risen 20.56% in the past 24 hours and is currently priced at $2.94, up 333% since September.
Condividi
PANews2025/09/18 15:10
Wormhole token soars following tokenomics overhaul, W reserve launch

Wormhole token soars following tokenomics overhaul, W reserve launch

                                                                               Wormhole’s native token has had a tough time since launch, debuting at $1.66 before dropping significantly despite the general crypto market’s bull cycle.                     Wormhole, an interoperability protocol facilitating asset transfers between blockchains, announced updated tokenomics to its native Wormhole (W) token, including a token reserve and more yield for stakers. The changes could affect the protocol’s governance, as staked Wormhole tokens allocate voting power to delegates.According to a Wednesday announcement, three main changes are coming to the Wormhole token: a W reserve funded with protocol fees and revenue, a 4% base yield for staking with higher rewards for active ecosystem participants, and a change from bulk unlocks to biweekly unlocks.“The goal of Wormhole Contributors is to significantly expand the asset transfer and messaging volume that Wormhole facilitates over the next 1-2 years,” the protocol said. According to Wormhole, more tokens will be locked as adoption takes place and revenue filters back to the company.Read more
Condividi
Coinstats2025/09/18 02:41