ChainCatcher reported that SlowMist researcher Cos has detected an ongoing bookmark-based phishing attack aimed at users of FOMO’s web interface. In this scheme, phishing pages trick users with a fake human verification prompt and ask them to drag malicious JavaScript code into the browser’s bookmarks bar and save it as a bookmark. Once the user clicks that bookmark two to three times, an attacker can hijack a previously logged-in FOMO account. The crypto assets held in that account may then be stolen immediately. The alert focuses on the attack flow observed by Cos and warns that the threat is already appearing against FOMO web users.
According to ChainCatcher, SlowMist researcher Cos has detected an ongoing bookmark phishing attack targeting users of FOMO’s web interface.
The phishing pages use a fake human verification prompt to trick users into dragging malicious JavaScript code into the browser’s bookmarks bar and saving it as a bookmark. After the user clicks that bookmark two to three times, a previously logged-in FOMO account can be hijacked by the attacker, and the crypto assets in the account may be stolen immediately.
This article was originally published by Bit.Fan. For more cryptocurrency news and market insights, visit www.bit.fan. Disclaimer:
The market information, project data, and third-party content displayed on this platform are for industry information sharing only and do not constitute any form of investment advice or return commitment.
Cryptocurrency trading carries high risks. Users should fully assess their risk tolerance and make independent decisions. All profits, losses, and legal responsibilities are borne by the users themselves.