Extension-Based Wallet Drainer Attacking Solana Users

Source Livebitcoinnews
  • Solana users reported having their funds drained mysteriously.
  • A Chrome extension promoted on Reddit was a disguised crypto drainer, stealing funds by manipulating transactions.

Jupiter, a DEX (decentralized exchange) aggregator, warned users of a new malware packaged as a Chrome-based extension called Bull Checker. It was advertised to serve the purpose of showing all the holders of any memecoin. Solana-based DeFi users who installed the extension reported having their assets stolen.

As Jupiter’s user base interacting with the Solana DeFi ecosystem voiced similar incidents, it dug deep to find the source of the hacks. In an X post, it revealed the findings. “After extensive investigation, we have identified a malicious Chrome extension called “Bull Checker” that had targeted users on several Solana-related subreddits.” Those behind the extension advertised the malicious product on Reddit, luring users in by claiming to make thousands of dollars with it.

Source: Jupiter

The post continued, “Users with this extension would interact with the dApps as per normal, have the simulation show up as normal, but have the possibility of their tokens being maliciously transferred to another wallet upon transaction completion.” It added, “If you have this extension (or similar extensions with extensive permissions you cannot trust), please remove it immediately.”

Bull Checker Asked for Permission to Change Data, Manipulated Transactions and Routed Funds to Exploiter’s Wallet

Bull Checker, upon installation, asked users for permission to read and change data, which should have tipped users off. However, many did not notice. Extensions safe for use ask to read data and nothing more. By allowing Bull Checker to alter data, it manipulates recipient addresses on transactions, sending funds from crypto transfers to a bad actor’s wallet. The concerning part is that the crypto drainer passed all simulation checks and could not be identified as a tool developed and used by nefarious entities.

In a detailed report published by Jupiter’s pseudonymous founder, who goes by Meow, wrote, “Bull Checker is supposed to be a read-only extension that allows you to view the holders of memecoins. There should be no need for an extension like this to read or write data on all websites.” They also offered words of advice to those interacting with offerings promoted in online communities, “Do not trust something just because someone mentioned it on Reddit or other media and it has many upvotes. Astroturfing and social engineering are very real.”

 

The post Extension-Based Wallet Drainer Attacking Solana Users appeared first on Live Bitcoin News.

Disclaimer: For information purposes only. Past performance is not indicative of future results.
placeholder
Ethereum (ETH) Price Closes Above $3,900 — Is a New All-Time High Possible Before 2024 Ends?Once again, the price of Ethereum (ETH) has risen above $3,900. This bounce has hinted at a further price increase for the altcoin before the end of the year.
Author  Beincrypto
Dec 17, 2024
Once again, the price of Ethereum (ETH) has risen above $3,900. This bounce has hinted at a further price increase for the altcoin before the end of the year.
placeholder
Analyst Flags XRP as Market’s ‘Best Risk/Reward’ Play as Token Tests Critical $1.60 SupportCrypto analyst Scott Melker identifies a prime risk/reward setup for XRP as it tests key support at $1.60, offering a tight stop-loss against potential upside targets near $2.00.
Author  Mitrade
Feb 03, Tue
Crypto analyst Scott Melker identifies a prime risk/reward setup for XRP as it tests key support at $1.60, offering a tight stop-loss against potential upside targets near $2.00.
placeholder
Ethereum Price Forecast: ETH faces heavy distribution as price slips below average cost basis of investorsEthereum (ETH) extended its decline on Wednesday, dropping more than 5% over the past 24 hours toward the $2,100 level, which is below the $2,310 average cost basis or realized price of investors, according to CryptoQuant's data.
Author  FXStreet
Feb 05, Thu
Ethereum (ETH) extended its decline on Wednesday, dropping more than 5% over the past 24 hours toward the $2,100 level, which is below the $2,310 average cost basis or realized price of investors, according to CryptoQuant's data.
placeholder
Bitcoin Drops to $70,000. U.S. Government Refuses to Bail Out Market, End of Bull Market or Golden Pit? The U.S. government refuses to bail out Bitcoin, and with Fed rate cuts nowhere in sight, a continued downward trend to test for a bottom is likely after a brief rebound.During the mid-da
Author  TradingKey
Feb 05, Thu
The U.S. government refuses to bail out Bitcoin, and with Fed rate cuts nowhere in sight, a continued downward trend to test for a bottom is likely after a brief rebound.During the mid-da
placeholder
Bitcoin Surrenders $65,000 as Analysts Warn of ‘Structural’ Market BreakBitcoin plunges 11% to break $65k as analysts term the crash "structural," citing a $1 trillion market wipeout and $2.09 billion in daily liquidations.
Author  Mitrade
Feb 06, Fri
Bitcoin plunges 11% to break $65k as analysts term the crash "structural," citing a $1 trillion market wipeout and $2.09 billion in daily liquidations.
goTop
quote