• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

Compromise of Chrome Extension SwitchyOmega and Its Impact on User Security

user avatar

by Giorgi Kostiuk

5 hours ago


According to recent reports, the compromise of the popular proxy Chrome extension SwitchyOmega, exposing over 500,000 users to the risk of cryptocurrency wallet private key theft, has raised significant concerns among cybersecurity experts.

Origin and Nature of the Compromise

The incident began with a phishing attack targeting an employee at Cyberhaven, a company specializing in data security. According to a March 12 report by SlowMist, the attackers sent a deceptive email claiming that Cyberhaven's browser extension violated Google's policies and was subject to removal. Exploiting this phishing attempt, the attackers gained access to Cyberhaven's OAuth credentials, allowing them to inject malicious code into SwitchyOmega and upload a compromised version (24.10.4) to the Chrome Web Store. As users installed the updated version, their private keys and mnemonic phrases were exposed to risk.

User Reactions and Recommendations

While it remains unclear how many of the 500,000 users were directly compromised, SlowMist has urged users to verify their installed extension IDs for safety. Experts advocate regular auditing of installed extensions, enabling two-factor authentication, and avoiding suspicious links to mitigate risks.

Global Threats for Cryptocurrency Users

The incident involving SwitchyOmega is part of a broader trend of growing threats targeting crypto traders through browser extensions. In September 2024, analysts at Group-IB reported that the North Korean Lazarus Group was intensifying its focus on extensions and fake video apps to infiltrate the digital asset sector. The group's latest attacks involve using malicious npm packages to steal developer data and access crypto information.

The increasing wave of cyberattacks targets crypto users, making them vulnerable to threats through browser extensions and other applications. Experts urge users to remain vigilant and adopt additional measures to protect their digital assets.

0

Share

Other news

Ethereum Struggles: Could We See $1000 Soon?

Ethereum's price falls raise concerns about its dominance. What's next for ETH in the crypto ecosystem?

user avatarGiorgi Kostiuk

a few seconds ago

Senator Lummis Proposes Strategic Bitcoin Reserve: Details of the New Bill

Senator Lummis has introduced a bill to create a Strategic Bitcoin Reserve — a new step towards integrating cryptocurrency into the US economy.

user avatarGiorgi Kostiuk

a few seconds ago

ARK 21Shares Buys $82.6M in Bitcoin

ARK's $82.6M Bitcoin purchase signals growing institutional confidence in cryptocurrency.

user avatarGiorgi Kostiuk

9 minutes ago

SEC Delays Decision on Listing Options for Fidelity's Ethereum ETF

The SEC has postponed its decision on listing options for Fidelity's Ethereum ETF until May, showing a cautious crypto investment approach.

user avatarGiorgi Kostiuk

9 minutes ago

Cryptocurrency Market Shows Changes: Analyzing the Fear and Greed Index

The Fear and Greed Index is rising, indicating potential shifts in investor sentiment in the crypto market.

user avatarGiorgi Kostiuk

12 minutes ago

Starknet: Integrating Bitcoin to Enhance Blockchain Scalability

Starknet uses Bitcoin as a settlement layer, improving scalability and interaction with Ethereum.

user avatarGiorgi Kostiuk

17 minutes ago

dapp expert logo
© 2020-2025. DappExpert. All rights reserved.
© 2020-2025. DappExpert. All rights reserved.

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.