Colleagues, please note: fake browser extensions are stealing cryptocurrency by swapping addresses

Colleagues, I’d like to draw your attention to a new cybersecurity campaign.
Researchers have identified Silent Swap: a malicious extension posing as Google Notes that is quietly installed in Chromium-based browsers and replaces wallet addresses when they are copied.
A separate risk comes from fake Go VPN extensions in Chrome and Firefox: they disguise themselves as free VPNs while also harvesting clipboard data — from passwords to seed phrases.
The attack relies on stealth, browser setting tampering, and dynamic address substitution, making the theft of funds almost invisible.
Why this matters: a single installation can compromise crypto assets and other sensitive secrets.
How do you verify browser extensions? #cybersecurity #cryptocurrency #browsersecurity #infosec

