CoinMarketCap has 'identified and removed' malicious wallet scam

Key Points

  • CoinMarketCap has identified and removed a malicious popup notification on its website that prompted users to verify their cryptocurrency wallets, which was suspected to be a phishing scam.
  • The investigation into the incident is ongoing, with the team taking steps to enhance security, as stated in their official X account post.
  • Crypto users reported the popup as a potential scam, with warnings from digital wallets like MetaMask and Phantom flagging the site as unsafe.
  • Phantom wallet browser extension users currently receive a warning that the CoinMarketCap website is unsafe to use.
  • This incident follows a previous hack in October 2021, where over 3.1 million user email addresses were leaked and traded online.

Summary

CoinMarketCap, a leading cryptocurrency price-tracking website, recently addressed a security breach involving a malicious popup notification on its site that urged users to "Verify Wallet," suspected to be a phishing scam aimed at stealing private keys or personal information. The company announced via its official X account that the malicious code has been identified and removed, though the investigation remains ongoing to bolster security measures. The issue was flagged within hours of public reports on social media, with crypto wallets like MetaMask and Phantom warning users of the site's unsafety. Phantom browser extension users, in particular, are currently shown alerts deeming the website unsafe. This incident echoes a previous security lapse in October 2021, when over 3.1 million user email addresses were compromised and traded on hacking forums. CoinMarketCap has urged users not to connect their wallets to the site while they work to resolve the issue fully, highlighting the persistent risks of phishing scams in the crypto space where hackers often exploit trusted platforms to deceive users.

cointelegraph
June 22, 2025
Crypto
Read article

Related news