GoPlusSecurity: Beware of Malicious Websites Using BNB Chain and RPC Gateway for Attacks
2026-08-09 21:30:35
According to CoinMeta, Microsoft Threat Intelligence has identified malicious websites that utilize a BNB chain and a RPC gateway to obtain real-time malicious instructions from smart contracts on the blockchain. These attacks, known as Clickfix / Terminalfix, affect thousands of corporate and consumer devices every day. The attack process is as follows: 1. Attackers infiltrate legitimate websites and inject JavaScript to display fake verification codes or "repair browser" pages; 2. The pages dynamically extract commands for the next phase; 3. Users are prompted to open Win +R /terminal/ PowerShell and paste "verify" or "repair" commands to execute the malicious payload on the blockchain; 4. Successful execution can lead to information theft or the installation of malware. Recommendations: 1️⃣ Any page that prompts you to press Win +R and paste content is malicious; please close it immediately. 2️⃣ Do not believe prompts such as "Verification code failed—run this command to repair." 3️⃣ If you have already executed the command, please disconnect from the internet immediately and change your passwords.
Source:X
This content is for market information only and does not constitute investment advice.
Follow CoinMeta official accounts to stay updated

Hot Articles
Refresh

'No longer a distant place': F2Pool Co-founder Chun Wang joins SpaceX's 2-year mission to Mars
05-22 18:25

Polymarket Targets Japan Approval Despite Gambling Laws
05-22 18:00

ZachXBT flags suspected exploit involving Polymarket's UMA adapter contract on Polygon
05-22 17:57

ZachXBT flags $520K Polymarket exploit on Polygon, team says funds are safe
05-22 17:24

Verus bridge exploiter returns 4,052 ETH, retains $2.8 million bounty: onchain analyst
05-22 17:24



