Cybersecurity company Socket: Malicious Chrome extension secretly steals Solana transaction funds
cybersecurity company Socket discovered a malicious Chrome extension called "Crypto Copilot" secretly stealing funds from users' Solana transactions. This extension allows users to conduct Solana transactions directly from the X social media platform but injects additional instructions in each transaction, extracting at least 0.0013 SOL or 0.05% of the transaction amount.
Unlike typical wallet-draining malware, Crypto Copilot uses the Raydium decentralized exchange to execute transactions while adding a second instruction to transfer SOL to the attacker’s wallet, with the user interface only displaying the transaction summary and hiding the separate operation instructions.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
DeFi Protocol USPD Loses $1 Million in “CPIMP” Attack
TERRA Classic Price Prediction 2025, 2026 – 2030: Will LUNC Price Reclaim $0.0007?
SUI Price Prediction: Is the New SUI ETF the Catalyst for a 500% Rally?

Polymarket Hiring Internal Team to Trade Against Its Own Users
