Security· ★★★· bearish·

Cloudflare-themed phishing pages steal crypto from memecoin traders

  • Trader @cladzsol lost about $600,000 after running a malicious script
  • Links to phishing sites are placed in token metadata fields
  • The page mimics a Cloudflare check and asks users to run a payload with Windows administrator rights
  • The attack requires no wallet connection — the code runs locally on the computer
Why it matters: The scheme bypasses the usual drainer defenses because the malicious code runs on the device rather than through an on-chain approval, raising the risk of losses for active traders.
Source: crypto.news