🚨 New research: A malicious Chrome Web Store extension is stealing newly created #MEXC API keys and exfiltrating them to a Telegram bot, enabling full account takeover with trading and withdrawal rights.
Details → https://socket.dev/blog/malicious-chrome-extension-steals-mexc-api-keys #crypto






![AEZA GROUP LLC, Ul. Zolnaya d. 15, str. 1, Pomeshch 1N, Office 603, St. Petersburg 193318, Russia; Kronversky pr-kt, 65 letter B, room 2n, office 1, room 5, St. Petersburg 197198, Russia; Website aeza.ru; Secondary sanctions risk: Ukraine-/Russia-Related Sanctions Regulations, 31 CFR 589.201; alt. Secondary sanctions risk: Ukraine-/Russia-Related Sanctions Regulations, 31 CFR 589.201; Organization Established Date 17 Jun 2021; Digital Currency Address - TRX TU4tDFRvcKhAZ1jdihojmBWZqvJhQCnJ4F; Tax ID No. 7813654490 (Russia); Business Registration Number 1217800095248 (Russia) [CAATSA - RUSSIA] [CYBER4].](https://files.mastodon.social/cache/media_attachments/files/114/779/502/592/307/980/small/3515cf4144f535a6.png)
