ClickFix attack escalates, hackers impersonate VCs and hijack browser extensions to steal crypto assets
The cybersecurity agency Moonlock Lab reports that crypto hackers have recently upgraded their "ClickFix" attack method, beginning to impersonate venture capital firms to contact target users through social platforms and lure them into executing malicious code to steal crypto assets.
Attackers disguise themselves as fake venture capital firms such as SolidBit, MegaBit, and Lumax Capital, sending collaboration invitations via LinkedIn and guiding victims to fake Zoom or Google Meet meeting links. The pages embed a fake Cloudflare "I am not a robot" verification button, which, when clicked, copies malicious commands to the clipboard and tricks users into pasting and executing them in the terminal, thus completing the attack. Researchers point out that this method circumvents traditional security mechanisms by "making victims execute commands themselves."
Meanwhile, hackers are also hijacking browser extensions to carry out attacks. John Tuckner, founder of cybersecurity company Annex Security, revealed that the Chrome extension QuickLens, after changing ownership on February 1, released a new version containing malicious scripts two weeks later, triggering ClickFix attacks and stealing user data. The extension had about 7,000 users and has since been removed from the store. Reports indicate that the hijacked extension scans crypto wallet data and mnemonic phrases, and scrapes Gmail content, YouTube channel data, and web login or payment information.
You may also like

DeAgentAI announced the establishment of the AIA Ecological Fund, focusing on the "AI Agent + Physical AI" track

Why is Crypto Up? Altcoins Lead Due to US Grand Deal
Key Takeaways: The “US Grand Deal” has beefed up crypto’s appeal, impacting assets like Ethereum and Solana. Altcoins,…

Polkadot Hyperbridge Breach Mints Over 1 Billion DOT Tokens
Key Takeaways: Over 1 billion fake DOT tokens were minted due to a vulnerability in Hyperbridge’s Ethereum gateway.…

ECB Endorses ESMA for Unified Crypto Oversight in EU
Key Takeaways: The ECB supports ESMA taking over the supervision of crypto-asset service providers across the EU. National…

XRP Price Prediction: $1,000 Is Within Reach
Key Takeaways: The XRP price prediction of $1,000 by 2026 hinges on widespread institutional adoption of Ripple’s infrastructure.…

Crypto Hacker Mints $1.1 Billion in Polkadot via Ethereum Bridge, Gains Just $237K
Key Takeaways: A hacker exploited Hyperbridge to mint $1.1 billion in DOT tokens, but cashed out only $237,000…

Researchers Warn of New Crypto Theft Vector: Malicious AI Agent Routers
Key Takeaways: University of California study reveals AI agent routers as a new threat vector for crypto theft.…

New ‘Data Asset’ Laws: Why AI Agents Might Move to the Isle of Man
Key Takeaways: The Isle of Man’s Foundations (Amendment) Bill 2025 legally defines data as an asset, offering a…

Hungary Election Political Shake-Up Could Reopen Crypto Policy and Regulation Debate
Key Takeaways: Hungary’s Orbán era ends, hinting at potential crypto regulatory changes. Péter Magyar’s Tisza Party envisions eased…

Solana Price Prediction: Wize, A Japanese Gaming Company Bought More SOL
Key Takeaways: WIZE, previously Mobcast Holdings, has acquired $3.13 million worth of SOL, now holding over 24,597 SOL.…

Major New Aave Crypto Proposal Passes: Everything Just Changed For Aave Price Prediction in 2026 – Here’s Why
Key Takeaways: Aave’s pivotal governance vote redirects all revenue to the DAO treasury, reshaping its economic model. The…

Trump Crypto Whales Accumulating Before Luncheon Schedule: Mar-A-Lago to Jump Start Memecoins?
Key Takeaways: Trump’s exclusive luncheon on April 25 at Mar-a-Lago relates to $TRUMP token holdings, with seats priced…

XRP Price Prediction: Bottom Signals Flashing
Key Takeaways: XRP trades with slight volatility amid an 8-month downtrend, showing bearish indicators but potential signals of…

Hacker Breaches Polkadot, Produces 1 Billion DOT Tokens
Key Takeaways: 1 billion DOT tokens were fraudulently minted via the Polkadot bridge, an astronomical leap from the…

Ethereum Price Prediction: Golden Triangle Set to Propel ETH Skyward
Key Takeaways: Ethereum poised for a substantial rally, potentially reaching $12,000 by 2027-2028. Current ETH price hovers around…

Bitcoin Price Prediction: Arthur Hayes on AI, Oil Prices, and War Against Crypto
Key Takeaways: Arthur Hayes predicts Bitcoin’s price could reach $500K to $750K by the end of 2026. AI…

White House Crypto Adviser Witt Discusses Clarity Act Progress
Key Takeaways: White House official Patrick Witt is confident in a Senate compromise on stablecoin yields. The Clarity…

Ripple CEO Adjusts Expectations on CLARITY Act While Remaining Confident
Key Takeaways: Ripple CEO Brad Garlinghouse has tempered his expectations on the CLARITY Act but maintains that its…
DeAgentAI announced the establishment of the AIA Ecological Fund, focusing on the "AI Agent + Physical AI" track
Why is Crypto Up? Altcoins Lead Due to US Grand Deal
Key Takeaways: The “US Grand Deal” has beefed up crypto’s appeal, impacting assets like Ethereum and Solana. Altcoins,…
Polkadot Hyperbridge Breach Mints Over 1 Billion DOT Tokens
Key Takeaways: Over 1 billion fake DOT tokens were minted due to a vulnerability in Hyperbridge’s Ethereum gateway.…
ECB Endorses ESMA for Unified Crypto Oversight in EU
Key Takeaways: The ECB supports ESMA taking over the supervision of crypto-asset service providers across the EU. National…
XRP Price Prediction: $1,000 Is Within Reach
Key Takeaways: The XRP price prediction of $1,000 by 2026 hinges on widespread institutional adoption of Ripple’s infrastructure.…
Crypto Hacker Mints $1.1 Billion in Polkadot via Ethereum Bridge, Gains Just $237K
Key Takeaways: A hacker exploited Hyperbridge to mint $1.1 billion in DOT tokens, but cashed out only $237,000…
