Non Cult Crypto News

Non Cult Crypto News

in

Fake OKX plugins found on the Firefox browser store

According to cybersecurity firm CertiK, the number of crypto hacks and exploits rose to 303 incidents in 2024, up from 282 in 2023.

COINTELEGRAPH IN YOUR SOCIAL FEED

Crypto exchange OKX has warned users of fraudulent OKX browser extension that have appeared on the Firefox browser plugin store. Extensions integrate third-party functionality within a web browser interface.

According to OKX, the company has not released any Firefox browser plugins and has advised users who mistakenly downloaded the plugin to transfer any funds in wallets connected to the fraudulent extension.

OKX contacted Firefox to remove the applications and reminded users never to download OKX-specific software from third parties.

The fraudulent plugin. Source: OKX

Malicious browser extensions can be used to steal sensitive information and funds. Phishing scams were one of the leading cause of crypto losses in 2024, according to CertiK.

User beware: Phishing is increasingly sophisticated

CertiK recently published Hack3d: The Web3 Security Report 2024 — outlining the most significant cybersecurity threats to digital assets in 2024.

According to the report, phishing scams in 296 attack campaigns collectively cost crypto users over $1 billion in losses in 2024 — representing a 21% year-over-year increase from 2023.

In September 2024, researchers at the McAfee cybersecurity firm discovered a form of malware affecting Android smartphones called SpyAgent.

The cybersecurity firm detected the malware, cleverly disguised as seemingly legitimate Android applications, in over 280 fraudulent applications.

Related: Virtuals Protocol Discord server hacked, fake Google links posted

SpyAgent uses optical character recognition (OCR) to scan images stored on a device’s memory and extract sensitive information, such as cryptocurrency private keys, stored in the images.

The researchers also said that the malware spread through text message links prompting users to download the malicious applications — allowing the scammers to sidestep the security controls on Google’s app store.

Decentraland — a 3D virtual reality metaverse built on the Ethereum network — suffered a breach of its X social media page on Sept. 19, 2024.

Hackers used the compromised page to promote phishing links to followers and advertised a fake MANA token airdrop, which is the native cryptocurrency of Decentraland.

Any user who clicked on the link to participate in the airdrop and connected their wallets would have their funds drained by the malware.

Magazine: Fake Rabby Wallet scam linked to Dubai crypto CEO and many more victims

This article first appeared at Cointelegraph.com News

What do you think?

Written by Outside Source

ChatGPT’s top 5 crypto picks for the 2025 market surge

Oklahoma Senator introduces Bitcoin Freedom Act enabling businesses to accept Bitcoin payments

Back to Top

Ad Blocker Detected!

We've detected an Ad Blocker on your system. Please consider disabling it for Non Cult Crypto News.

How to disable? Refresh

Log In

Or with username:

Forgot password?

Don't have an account? Register

Forgot password?

Enter your account data and we will send you a link to reset your password.

Your password reset link appears to be invalid or expired.

Log in

Privacy Policy

To use social login you have to agree with the storage and handling of your data by this website.

Add to Collection

No Collections

Here you'll find all collections you've created before.