Many cyber attackers target cryptocurrency investors and are highly skilled in their work. They use increasingly cunning methods to target investors and empty their wallets. For a while, accounts were being emptied for undetected reasons. Now, the vulnerability has been identified.
Google Crypto Vulnerability
The latest attack method targeting investors using the Google browser surprised everyone. Attackers emptied the wallets of even professional investors through Google Extensions. The AGGR extension sent cookies from all visited sites on the installed computers to the attackers.
AGRR Trade was an extension advertised by many influencers and reached a large number of users. This extension, which stole cookies from all the websites you visited and received many positive reviews in the Chrome store, has been circulating for 2 months.
It is recommended to run only the secure extensions you need, realizing that Chrome extensions can be almost as risky as executable files. Installing unverified, insecure extensions on your device can cause serious losses.
When the extension’s code is examined in detail, it initially appears to be a harmless JavaScript file, but upon further inspection, there is a block that pulls all cookies from user.query.