Threats · 185 days ago
AppsFlyer's Web SDK briefly served obfuscated JavaScript that targeted cryptocurrency wallet fields. The code replaced entered wallet addresses with attacker-controlled addresses and exfiltrated originals.
1 source covering this story
AppsFlyer Web SDK hijacked to spread crypto-stealing JavaScript code
The AppsFlyer Web SDK was temporarily hijacked this week with malicious code used to steal cryptocurrency in a supply-chain attack.
Part of the PlainSec briefing for 2026-03-15