Online ad giant Adform was hacked, proving once again why ad blockers are needed
- Security
- Privacy
- Advertising
- Web
- Regulation
The linked post argues that Adform, a large online ad platform, was compromised and used to deliver malicious code through ads. The appended script watched for copy and cut events, then swapped copied cryptocurrency addresses so funds would be sent to the attacker instead. A commenter pointed to the original security research writeup and pasted the modified code, which appeared to be normal Adform JavaScript with two extra chunks added at the end. Other commenters then traced the published wallet addresses on-chain and estimated roughly $110,000 in Bitcoin and about $55,000 in Ether had flowed through them, which made the attack feel less hypothetical and more like a profitable low-friction scam at internet scale.
If your product, employees, or family members browse the web without strong content blocking, assume they are exposed to a supply-chain risk you did not choose. Treat ad and tracker execution like any other untrusted third-party code path, and add browser, DNS, and endpoint controls instead of relying on ad networks to keep malicious payloads out.
-
this.weekinsecurity.com
- Discuss on HN