• Contact Us
  • Privacy Policy
  • Terms of Use
  • DMCA
  • Disclaimer
Tuesday, August 20, 2024
CryptoBangs.com
Advertisement
  • Home
  • Live Crypto Prices
  • Crypto News
    • Bitcoin
    • Ethereum
    • Ripple
    • Altcoin
    • NFT News
  • DeFi
  • Blockchain
  • Regulation
  • Shop
  • Blog
  • Calculator
No Result
View All Result
  • Home
  • Live Crypto Prices
  • Crypto News
    • Bitcoin
    • Ethereum
    • Ripple
    • Altcoin
    • NFT News
  • DeFi
  • Blockchain
  • Regulation
  • Shop
  • Blog
  • Calculator
No Result
View All Result
CryptoBangs.com
No Result
View All Result

Don’t Use This Chrome Extension

August 20, 2024
in Bitcoin
Reading Time: 3 mins read
A A
Don’t Use This Chrome Extension
ShareShareShareShareShare

Related articles

Metaplanet Buys Additional ¥500 Million Worth of Bitcoin

Metaplanet Buys Additional ¥500 Million Worth of Bitcoin

August 20, 2024
Bitcoin Price Could Surge 200% To Cross $100,000 If This Happens

Bitcoin Price Could Surge 200% To Cross $100,000 If This Happens

August 20, 2024

A critical warning has been issued for users of Solana-based decentralized finance (DeFi) platforms about a malicious Chrome extension known as “Bull Checker.” This alert was issued by Jupiter, a leading decentralized exchange aggregator on the Solana blockchain, following investigative collaboration with cybersecurity experts and community support.

A Warning for All Solana Users

Jupiter’s research team, in partnership with Offside Labs and key community moderators, uncovered that “Bull Checker” was responsible for unauthorized token transfers from user wallets. Reports began surfacing over the last week about unusual token drains, which prompted a detailed analysis. “Following multiple reports from our users, our investigation identified the ‘Bull Checker’ Chrome extension as a conduit for these thefts,” Jupiter Research writes. The extension, which was supposedly designed to allow users to view holders of memecoins, actually possessed capabilities to alter transaction data.

The extension operates by waiting for a user to interact with a legitimate dApp on the official domain. It then modifies the transaction sent to the wallet for signing. Although the simulation results appear normal, the transactions are manipulated to include instructions that transfer tokens to an attacker’s wallet. “What is particularly insidious about this extension is that it injects malicious code that remains undetected during typical transaction simulations,” added Meow, the pseudonymous founder of Jupiter.

Through technical examination, it was revealed that the attack vectors utilized by “Bull Checker” are sophisticated. “We noticed that the extension could replace the wallet adapter’s signTransaction method with its own implementation, which would then send the unsigned transaction to a remote server. This server attaches a call to a drain program before returning it for user approval,” explained Meow.

This discovery was substantiated by reviewing specific transaction examples where malicious instructions were added to routine transactions. In one of the detailed transaction reviews, the exploited user executed what seemed to be a standard transaction that ended up transferring 0.06 SOL and their token authority to an exploiter’s address identified as 8QYkBcer7kzCtXJGNazCR6jrRJS829aBow12jUob3jhR.

The modus operandi of the malicious extension involved multiple stages. First, the extension monitored the SOL balance of the victim’s account during the transaction simulation, which typically showed a zero balance leading to the abortion of malicious instructions. However, immediately after the simulation, the attacker executed a sequence of bundled transactions that included sending SOL to increase the balance, executing the malicious transaction, and then pulling SOL out, all unbeknownst to the user.

“Bull Checker” was initially promoted through an anonymous Reddit account, known as “Solana_OG,” which appeared to target users interested in trading memecoins. This should have been a red flag given the lack of transparency and the nature of the advertised functionality. Unfortunately, the extension still found its way onto the computers of several unsuspecting users.

The ongoing investigation has revealed that while “Bull Checker” has been identified and publicized, other malicious extensions with similar capabilities might still exist. Users are urged to exercise extreme caution with any extension that requests broad permissions to read and change all data on websites. “Users need to verify the legitimacy and the necessity of any extension, especially those interacting deeply with financial transactions or wallet data,” cautioned Meow.

In response to these types of threats, Blowfish has recently released a feature known as SafeGuard aimed at preventing simulation spoofing attacks, which is now being adopted by multiple Solana wallets. This new security measure enhances the integrity of transaction verifications, providing an additional layer of protection against similar exploits.

At press time, Solana traded at $146.67.

Solana price faces the 20-week EMA, 1-week chart | Source: SOLUSDT on TradingView.com

Featured image created with DALL.E, chart from TradingView.com

Credit: Source link

ShareTweetSendPinShare
Previous Post

What Will XRP’s Price Be If Bitcoin Hits $300,000?

Next Post

A Buying Opportunity for ETFSwap (ETFS)?

Related Posts

Metaplanet Buys Additional ¥500 Million Worth of Bitcoin

Metaplanet Buys Additional ¥500 Million Worth of Bitcoin

August 20, 2024

Metaplanet, a publicly traded Japanese company, has purchased another ¥500 million ($3.7 million) worth of bitcoin. This latest buy comes...

Bitcoin Price Could Surge 200% To Cross $100,000 If This Happens

Bitcoin Price Could Surge 200% To Cross $100,000 If This Happens

August 20, 2024

A crypto analyst has predicted that Bitcoin (BTC), the world’s largest cryptocurrency could see its price surging as high as...

Seychelles Approves Bill on Virtual Asset Regulation

Seychelles Approves Bill on Virtual Asset Regulation

August 20, 2024

The Seychelles National Assembly has approved a draft bill to regulate virtual asset service providers (VASPs). The bill requires license-seeking...

Cardano To Lead ZK-Scaling Race After Chang? ADA Down 60% In 5 Months

Cardano To Lead ZK-Scaling Race After Chang? ADA Down 60% In 5 Months

August 19, 2024

Cardano, a smart contracts platform and Ethereum competitor, is transiting and preparing for Voltaire after completing Basho. In the last...

Democrats Exclude Bitcoin And Crypto From 2024 Platform, Aligning With Past Hostility

Democrats Exclude Bitcoin And Crypto From 2024 Platform, Aligning With Past Hostility

August 19, 2024

The Democratic Party's official 2024 platform was released today on day one of the Democratic National Convention (DNC), without any mention...

Load More
Next Post
A Buying Opportunity for ETFSwap (ETFS)?

A Buying Opportunity for ETFSwap (ETFS)?

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Dogecoin Active Users Rise 32%, Will DOGE Price Follow Suit?

Dogecoin Active Users Rise 32%, Will DOGE Price Follow Suit?

August 19, 2024
Don’t Use This Chrome Extension

Don’t Use This Chrome Extension

August 20, 2024
XRP’s Recent Slide May Have Created a Path to $1

XRP’s Recent Slide May Have Created a Path to $1

August 16, 2024
Crypto Funds Frozen: Court Halts $38M Allegedly Meant For Nigeria Protests

Crypto Funds Frozen: Court Halts $38M Allegedly Meant For Nigeria Protests

August 17, 2024
Nigerian lawmakers eye economic boost through crypto taxation

Nigerian lawmakers eye economic boost through crypto taxation

August 19, 2024
CryptoBangs.com

CryptoBangs.com is an online news portal that aims to share the latest crypto news, bitcoin, altcoin, blockchain, nft news and much more stuff like that.

What’s New Here!

  • A Buying Opportunity for ETFSwap (ETFS)?
  • Don’t Use This Chrome Extension
  • What Will XRP’s Price Be If Bitcoin Hits $300,000?
  • MangoDAO’s proposed SEC settlement faces scrutiny over potential impact on investors

Newsletter

Don't miss a beat and stay up to date with our Newsletter!
Loading

  • Contact Us
  • Privacy Policy
  • Terms of Use
  • DMCA
  • Disclaimer

© 2023 - CryptoBangs.com - All Rights Reserved!

No Result
View All Result
  • Home
  • Live Crypto Prices
  • Crypto News
    • Bitcoin
    • Ethereum
    • Ripple
    • Altcoin
    • NFT News
  • DeFi
  • Blockchain
  • Regulation
  • Shop
  • Blog
  • Calculator

© 2018 JNews by Jegtheme.

  • bitcoinBitcoin(BTC)$60,398.003.00%
  • ethereumEthereum(ETH)$2,648.820.48%
  • tetherTether(USDT)$1.000.06%
  • binancecoinBNB(BNB)$565.175.73%
  • solanaSolana(SOL)$145.261.90%
  • usd-coinUSDC(USDC)$1.000.03%
  • rippleXRP(XRP)$0.617.31%
  • staked-etherLido Staked Ether(STETH)$2,648.240.43%
  • the-open-networkToncoin(TON)$6.83-2.51%
  • dogecoinDogecoin(DOGE)$0.1028692.42%
  • tronTRON(TRX)$0.1429416.28%
  • cardanoCardano(ADA)$0.3420422.09%
  • Wrapped stETHWrapped stETH(WSTETH)$3,106.530.20%
  • wrapped-bitcoinWrapped Bitcoin(WBTC)$60,374.002.89%
  • avalanche-2Avalanche(AVAX)$21.643.55%
  • shiba-inuShiba Inu(SHIB)$0.0000141.90%
  • WETHWETH(WETH)$2,649.070.40%
  • bitcoin-cashBitcoin Cash(BCH)$342.252.45%
  • polkadotPolkadot(DOT)$4.594.40%
  • chainlinkChainlink(LINK)$10.372.02%
  • leo-tokenLEO Token(LEO)$5.81-0.11%
  • daiDai(DAI)$1.00-0.02%
  • litecoinLitecoin(LTC)$66.710.22%
  • uniswapUniswap(UNI)$6.250.73%
  • nearNEAR Protocol(NEAR)$4.074.27%
  • Wrapped eETHWrapped eETH(WEETH)$2,770.710.43%
  • kaspaKaspa(KAS)$0.1655851.45%
  • matic-networkPolygon(MATIC)$0.4347594.36%
  • internet-computerInternet Computer(ICP)$7.292.22%
  • PepePepe(PEPE)$0.0000084.57%
  • Ethena USDeEthena USDe(USDE)$1.000.02%
  • aptosAptos(APT)$6.103.95%
  • moneroMonero(XMR)$157.734.74%
  • stellarStellar(XLM)$0.0974894.13%
  • ethereum-classicEthereum Classic(ETC)$19.101.98%
  • First Digital USDFirst Digital USD(FDUSD)$1.00-0.25%
  • suiSui(SUI)$0.9110.92%
  • crypto-com-chainCronos(CRO)$0.0872051.41%
  • fetch-aiArtificial Superintelligence Alliance(FET)$0.9111.30%
  • okbOKB(OKB)$37.501.11%
  • blockstackStacks(STX)$1.505.54%
  • BittensorBittensor(TAO)$299.786.35%
  • filecoinFilecoin(FIL)$3.651.74%
  • mantleMantle(MNT)$0.600.69%
  • hedera-hashgraphHedera(HBAR)$0.0547092.74%
  • vechainVeChain(VET)$0.0236235.23%
  • cosmosCosmos Hub(ATOM)$4.702.73%
  • immutable-xImmutable(IMX)$1.175.39%
  • aaveAave(AAVE)$122.709.80%
  • arbitrumArbitrum(ARB)$0.550.96%
WP Twitter Auto Publish Powered By : XYZScripts.com