Threats · 185 days ago

AppsFlyer Web SDK Temporarily Delivered Crypto‑stealing JavaScript

AppsFlyer's Web SDK briefly served obfuscated JavaScript that targeted cryptocurrency wallet fields. The code replaced entered wallet addresses with attacker-controlled addresses and exfiltrated originals.

Timeline

Sources

1 source covering this story

Part of the PlainSec briefing for 2026-03-15

Editions

Related stories