Security Firm: Malicious Chrome Extension 「Crypto Copilot」 Secretly Steals Funds from User's Solana Transactions
BlockBeats News, November 27th, according to Cointelegraph, cybersecurity firm Socket has discovered a malicious Chrome extension named "Crypto Copilot" that is surreptitiously siphoning funds from users' Solana transactions. This extension allows users to directly conduct Solana transactions from X social media platforms but injects additional instructions into each transaction, siphoning off at least 0.0013 SOL or 0.05% of the transaction amount.
Unlike typical wallet-draining malware, Crypto Copilot leverages the Raydium decentralized exchange to execute transactions while adding a second instruction to transfer SOL to the attacker's wallet, with the user interface only displaying a transaction summary, concealing the separate operation instruction. Since its release on June 18, 2024, the extension has only had 15 users. Socket has submitted a takedown request to the Chrome Web Store security team. Security experts remind users that the Chrome extension ecosystem has long been a prime target for cryptocurrency scams due to its large user base and extensible design.
You may also like

From Mining Enterprise to Infrastructure Builder, Bitdeer Unpacks the Survival Logic behind BTC

How Can Agentic Commerce Empower AI to Start Making Money?

February Correction: Is the Crypto Market Bottoming Out?

AI Payments Through the Lens of Fintech Giants: Five Levels, Stablecoin Infrastructure, Next-Gen Globalized Commerce

Zuckerberg Retweets Stablecoin, Can Meta Win This "Comeback Game"?

Polymarket New Rule Release: How to Build a New Trading Bot

Bitwise: The Institutional Wave is Here, So Why is the Market Still Sleeping?

WEEX LALIGA Partnership 2026: Where Football Excellence Meets Crypto Innovation
WEEX becomes official crypto exchange partner of LALIGA in Hong Kong and Taiwan. Discover how this partnership brings together football excellence and trading discipline.

AI Apocalypse, a massive short squeeze

The "Second Truth" of the Luna Crash: Jane Street Exits Ahead of Plunge

Jane Street Market Manipulation, Stripe Considering Acquiring PayPal, What's the Overseas Crypto Community Talking About Today?
WEEX × LALIGA 2026: Trade Crypto, Take Your Shot & Win Official LALIGA Prizes
Unlock shoot attempts through futures trading, spot trading, or referrals. Turn match predictions into structured rewards with BTC, USDT, position airdrops, and LALIGA merchandise on WEEX.

a16z: Why Do AI Agents Need a Stablecoin for B2B Payments?

February 24th Market Key Intelligence, How Much Did You Miss?

Web4.0, perhaps the most needed narrative for cryptocurrency

Some Key News You Might Have Missed Over the Chinese New Year Holiday

Key Market Information Discrepancy on February 24th - A Must-Read! | Alpha Morning Report
