Minacce e avversari · Supply chain
Il Web SDK di AppsFlyer ha distribuito temporaneamente JavaScript offuscato che monitorava i campi wallet su siti e app. Il codice sostituiva gli indirizzi wallet inseriti con indirizzi controllati dagli attaccanti ed esfiltrava gli originali.
1 fonte · 14 mar
BleepingComputer
AppsFlyer Web SDK hijacked to spread crypto-stealing JavaScript code
The AppsFlyer Web SDK was temporarily hijacked this week with malicious code used to steal cryptocurrency in a supply-chain attack.
originalePart of the PlainSec briefing for 2026-03-15
Every edition of this story: AppsFlyer Web SDK ha temporaneamente servito JavaScript che ruba crypto