Cointelegraph
DOGE$0.07344 1.58%
TRX$0.3293 0.72%
LINK$8.63 0.49%
ZEC$534.32 2.86%
ADA$0.1735 1.31%
XRP$1.14 2.75%
ETH$1,925.92 1.06%
BTC$66,345.76 1.45%
XMR$353.03 4.59%
BNB$573.80 0.35%
XLM$0.1929 1.79%
SOL$78.12 0.24%
HYPE$60.91 2.68%
Written by Ana Alexandreformer writerReviewed by Igor Belkinformer editor

YouTube Reportedly Runs Malicious Ad for Bitcoin Wallet Electrum by Accident

Latest NewsPublishedMar 26, 2019

Google-owned video-sharing platform YouTube reportedly ran a malicious ad for the Electrum Bitcoin wallet by mistake.

youtube-reportedly-runs-malicious-ad-for-bitcoin-wallet-electrum-by-accident

Video-sharing platform YouTube purportedly ran a malicious advertisement for Bitcoin (BTC) wallet Electrum by mistake, according to a Reddit post published on March 26.

Viewers interested in the advertisement were redirected to a malicious link using a common scamming method called typosquatting or URL hijacking. In the Reddit post, a user named mrsxeplatypus warned the public about the promotion of a malware version of Electrum, and described how the scam ad worked:

“The malicious advertisement is disguised to look like a real Electrum advertisement [...] It even tells you to go to the correct link (electrum.org) in the video but when you click on the advertisement it immediately starts downloading the malicious EXE file. As you can see in the image, the URL it sent me to is elecktrum.org, not electrum.org.”

Technology-focused news site The Next Web reported that Google, which owns YouTube, has since taken appropriate actions against the advertisement.

In February, users of cryptocurrency wallets Electrum and MyEtherWallet reported that they were facing phishing attacks. One user on Reddit found that a phishing scam attempting to steal sensitive data from Electrum customers was posing as a security update.

Redditor exa61 then posted a picture of a system message, allegedly from Electrum wallet, requiring a security update to Electrum 4.0.0, while the latest version of the wallet was Electrum 3.3.3 at the time.

Earlier in March, a Google Chrome browser extension dubbed NoCoin tricked users into participating in a fake airdrop from cryptocurrency exchange Huobi, claiming over 230 victims. Hackers had purposely disguised the malicious extension to look like a tool protecting users from cryptocurrency malware or so-called cryptojacking.

1 minute letter

Subscribe to daily byte-sized crypto news from Cointelegraph

Subscribe
Cointelegraph is committed to independent, transparent journalism. This news article is produced in accordance with Cointelegraph’s Editorial Policy and aims to provide accurate and timely information. Readers are encouraged to verify information independently.

More on the subject