Crypto websites CoinTelegraph and CoinMarketCap experienced security breaches through phishing attacks.
Reports suggest that a frontend exploit injected malicious code into browsers via compromised ad scripts and third-party widgets.
Attackers utilized JavaScript vulnerabilities to display a deceptive ad offering fake token airdrops to users.
Users were prompted to connect wallets, potentially leading to unauthorized asset transfers by a draining program.
MetaMask flagged CoinTelegraph's website as deceptive during the incident, alerting visitors to possible phishing activities.
CoinTelegraph quickly addressed the issue, removing the unauthorized code and enhancing security measures.
It remains unclear if the attacks on CoinTelegraph and CoinMarketCap are connected, though both involved injected malicious scripts from third-party services.