Hackers poison Adform third-party script to silently swap crypto wallet addresses on customer websites
A poisoned third-party Adform script enabled a front-end supply-chain attack that silently swaps copied crypto wallet addresses to attacker-controlled ones across customer websites. While chain-agnostic, it elevates transaction-integrity and custody risk for web-based transfers affecting major assets including BTC, ETH, and TRX. The incident underscores persistent vulnerabilities in browser flows and third-party dependencies, likely weighing on short-term risk appetite despite no disclosed loss figures.
AI Insight · BTC/USDTAI Insight
▼ Bearish
⚠️ AI-generated insights are based on news content and are provided for informational purposes only. They do not constitute investment advice or represent the views of BingX. Investing involves risk. Please trade responsibly.
Hackers tampered with an Adform third-party script and inserted malicious logic across multiple customer-run websites, silently replacing wallet addresses when users copy them. The incident was not aimed at any specific blockchain and could affect web-based address entry for transfers of crypto assets including Bitcoin (BTC), Ethereum (ETH) and TRON (TRX). It underscores the severity of front-end supply-chain attacks and is a cross-site wallet hijacking case, with no disclosed loss amount or count of affected sites.