Just in case anyone is not aware, bookmarklet exploits have been a thing for years and you are basically running arbitrary javascript on your browser window that can steal any vulnerable information on the tab open
If u do this just assume you are clicking a virus.exe file

Latuche
@Latuche95
I'm pretty shocked what just happened
A trader got drained 200,000$ only for bookmarking a website
Bookmarking a compromised website runs a javascript apparently, and allows the scammer to have access to your assets
Any dev to clarify?

Afaik it's only limited to the current open tab and has no extension access.
But if you're using for example, a web terminal like Axiom, and trying a "cool axiom sniper addon" that requires you to drag a bookmarklet, then you're gonna get rekt

From Twitter
Disclaimer: The content above is only the author's opinion which does not represent any position of Followin, and is not intended as, and shall not be understood or construed as, investment advice from Followin.
Like
Add to Favorites
Comments
Share



