Crypto Wallets Drained on Adult Sites Via Browser Exploit
People using built-in crypto wallet browsers are falling victim to a new type of exploit targeting adult websites.
On this page
In a post on X, journalist and host of the Break the Narrative podcast, Dom Lucre, shared on-chain data showing that a crypto wallet linked to Pornhub was exploited. Hackers stole 16 SOL tokens, which were then swapped on the decentralized exchange Jupiter on the Solana blockchain.
Dom Lucre advised users to avoid watching adult content through their wallet browsers to minimize the risk of being hacked.
Since 2021, Pornhub has only accepted cryptocurrency for premium content after Visa and Mastercard blocked payments due to concerns over illegal content on the platform.
How Crypto Wallet Browser Exploits Happen?
Many cryptocurrency wallets, like MetaMask, Phantom, and Trust Wallet, have built-in browsers. These are designed for interacting with decentralized apps (dApps), but some users also use them for regular web browsing – including visiting adult sites.
Unlike Chrome or Firefox, these wallet browsers are lightweight and primarily built for Web3 interactions, such as accessing DeFi platforms, NFT marketplaces, and blockchain games.
Hackers have found ways to exploit these browsers, injecting malicious code that drains crypto funds the moment a site is loaded. Since blockchain transactions are irreversible, once your assets are stolen, recovering them is extremely difficult.
In some cases, victims report hacks to authorities, but tracing stolen crypto is challenging without significant forensic analysis.
Related: Lost Crypto: Are There Ways to Recover Your Assets?
How to Stay Safe from Hacks?
Adult sites have always been a hotspot for cyberattacks. Hackers often hide malicious scripts in ads, fake pop-ups, and shady links. When combined with vulnerable crypto wallet browsers, users are at serious risk of being hacked.
It's important to remember that crypto wallet browsers are built for transactions – not for general browsing – so they lack many of the security layers that protect against these types of attacks.
Following some best practices will help you minimize the risks of falling victim to hackers:
- Stop using wallet browsers for non-crypto browsing: Stick to them for dApps and transactions only. If you need to browse, use a regular web browser instead.
- Use a hardware wallet: These are completely offline, so even if you end up on a malicious site, your funds remain safe.
- Enable extra security measures: Use two-factor authentication (2FA) and set up spending limits on your wallet, if possible.
- Stay updated: Always keep your wallets updated to the latest version – developers often push security fixes to patch vulnerabilities.
- Separate your browsers: Some users recommend having one browser for crypto and another for everything else, so you don’t accidentally expose your assets.
Related: WhiteBIT’s Cybersecurity Tips
It’s Not Just Adult Sites…
Cybercriminals aren’t just targeting adult sites – they’ve been finding creative ways to exploit crypto users across various online platforms. From fake investment sites to phishing scams disguised as legitimate services, hackers are constantly evolving their tactics to steal funds.
One growing threat involves deepfake websites that appear to offer legitimate content but instead spread malware designed to steal login credentials and drain crypto wallets. Phishing attacks, where users are tricked into connecting their wallets to fake dApps, are also rampant.
So, keep safety practices in mind to protect your funds everywhere.
The content on The Coinomist is for informational purposes only and should not be interpreted as financial advice. While we strive to provide accurate and up-to-date information, we do not guarantee the accuracy, completeness, or reliability of any content. Neither we accept liability for any errors or omissions in the information provided or for any financial losses incurred as a result of relying on this information. Actions based on this content are at your own risk. Always do your own research and consult a professional. See our Terms, Privacy Policy, and Disclaimers for more details.