Users visiting the Cointelegraph website on Sunday were confronted with a deceptive pop-up claiming they had won token rewards. The pop-up message appeared to be part of a legitimate Cointelegraph promotion and told visitors they had been randomly selected to receive 50,000 “CTG” tokens, valued at over $5,000. The offer seemed polished and convincing, featuring the company’s branding and interface elements that mimicked real airdrop campaigns. It included a countdown timer and prompts to connect crypto wallets, standard elements in genuine token distribution efforts. However, the entire experience was fabricated by attackers. A similar front-end attack appeared on CoinMarketCap over the weekend. Security Firm Flags CoinTelegraph Frontend Hack Originating From Ad System Scam Sniffer, a blockchain security firm, flagged the breach and posted a public alert, warning that Cointelegraph’s frontend had been compromised. “Please be cautious,” the firm tweeted, alongside screenshots of the injected code and the fake airdrop interface. The scam was likely designed to trick users into granting wallet permissions, ultimately allowing hackers to drain all funds. Cointelegraph later confirmed the breach and issued a warning . The company urged users not to interact with the fraudulent pop-up and emphasized that it has never issued a “CTG” token or launched an initial coin offering. It also assured readers that a fix was underway. 🚨 ALERT: We are aware of a fraudulent pop-up falsely claiming to offer “CoinTelegraph ICO Airdrops” or “CTG tokens” that are appearing on our site. DO NOT: – Click on these pop-ups – Connect your wallets – Enter any personal information We are actively working on a fix. — Cointelegraph (@Cointelegraph) June 23, 2025 According to Scam Sniffer, the malicious JavaScript code came from the site’s advertising system rather than its core infrastructure. Hackers Shift From Emails to Embedded Ads as Scam Tactics Evolve The file, served via Cointelegraph’s ad partner, contained wallet-draining scripts disguised as standard ad delivery code. This technique has become more common in recent months as attackers seek to exploit vulnerabilities in trusted platforms’ third-party systems. 🚨 CoinTelegraph's frontend has been compromised. Please be cautious. pic.twitter.com/sH025Zek8p — Scam Sniffer | Web3 Anti-Scam (@realScamSniffer) June 23, 2025 The scam interface showed a fake reward worth $5,490 and labeled the transaction process as “secure,” “instant,” and “verified.” Once users clicked to connect their wallet, the script triggered a function that could initiate approvals and transfers without the user’s informed consent. These types of attacks are particularly dangerous because they appear on well-known, trusted websites. Many users assume such platforms have adequate security measures and may let their guard down. This makes ad-based exploits far more effective than phishing links sent through email or social media. Fake CTG Token Never Existed on Major Exchanges or Blockchains The CTG token mentioned in the scam does not exist on CoinMarketCap, CoinGecko, or any legitimate exchange. Neither is there a record of it on Ethereum or other major blockchains. These red flags may be obvious to veteran users, but newer entrants to the space are often unaware of what to look for in a legitimate token offering. Similar breaches have been reported across the crypto space. CoinMarketCap too experienced a comparable incident this month, where attackers embedded a wallet-draining link into a front-facing promo box on the site. In that case too, the compromise stemmed from third-party code, not the core platform. As more crypto companies depend on external ad services, their surfaces for attack increase dramatically. Even if a platform is secure at the application level, malicious scripts delivered through external partners can easily bypass protections. The growing trend has prompted calls for stricter auditing of third-party integrations and more robust sandboxing of external content.Users visiting the Cointelegraph website on Sunday were confronted with a deceptive pop-up claiming they had won token rewards. The pop-up message appeared to be part of a legitimate Cointelegraph promotion and told visitors they had been randomly selected to receive 50,000 “CTG” tokens, valued at over $5,000. The offer seemed polished and convincing, featuring the company’s branding and interface elements that mimicked real airdrop campaigns. It included a countdown timer and prompts to connect crypto wallets, standard elements in genuine token distribution efforts. However, the entire experience was fabricated by attackers. A similar front-end attack appeared on CoinMarketCap over the weekend. Security Firm Flags CoinTelegraph Frontend Hack Originating From Ad System Scam Sniffer, a blockchain security firm, flagged the breach and posted a public alert, warning that Cointelegraph’s frontend had been compromised. “Please be cautious,” the firm tweeted, alongside screenshots of the injected code and the fake airdrop interface. The scam was likely designed to trick users into granting wallet permissions, ultimately allowing hackers to drain all funds. Cointelegraph later confirmed the breach and issued a warning . The company urged users not to interact with the fraudulent pop-up and emphasized that it has never issued a “CTG” token or launched an initial coin offering. It also assured readers that a fix was underway. 🚨 ALERT: We are aware of a fraudulent pop-up falsely claiming to offer “CoinTelegraph ICO Airdrops” or “CTG tokens” that are appearing on our site. DO NOT: – Click on these pop-ups – Connect your wallets – Enter any personal information We are actively working on a fix. — Cointelegraph (@Cointelegraph) June 23, 2025 According to Scam Sniffer, the malicious JavaScript code came from the site’s advertising system rather than its core infrastructure. Hackers Shift From Emails to Embedded Ads as Scam Tactics Evolve The file, served via Cointelegraph’s ad partner, contained wallet-draining scripts disguised as standard ad delivery code. This technique has become more common in recent months as attackers seek to exploit vulnerabilities in trusted platforms’ third-party systems. 🚨 CoinTelegraph's frontend has been compromised. Please be cautious. pic.twitter.com/sH025Zek8p — Scam Sniffer | Web3 Anti-Scam (@realScamSniffer) June 23, 2025 The scam interface showed a fake reward worth $5,490 and labeled the transaction process as “secure,” “instant,” and “verified.” Once users clicked to connect their wallet, the script triggered a function that could initiate approvals and transfers without the user’s informed consent. These types of attacks are particularly dangerous because they appear on well-known, trusted websites. Many users assume such platforms have adequate security measures and may let their guard down. This makes ad-based exploits far more effective than phishing links sent through email or social media. Fake CTG Token Never Existed on Major Exchanges or Blockchains The CTG token mentioned in the scam does not exist on CoinMarketCap, CoinGecko, or any legitimate exchange. Neither is there a record of it on Ethereum or other major blockchains. These red flags may be obvious to veteran users, but newer entrants to the space are often unaware of what to look for in a legitimate token offering. Similar breaches have been reported across the crypto space. CoinMarketCap too experienced a comparable incident this month, where attackers embedded a wallet-draining link into a front-facing promo box on the site. In that case too, the compromise stemmed from third-party code, not the core platform. As more crypto companies depend on external ad services, their surfaces for attack increase dramatically. Even if a platform is secure at the application level, malicious scripts delivered through external partners can easily bypass protections. The growing trend has prompted calls for stricter auditing of third-party integrations and more robust sandboxing of external content.

Cointelegraph Suffers Similar Cyberattack After CoinMarketCap – What’s Going On?

Users visiting the Cointelegraph website on Sunday were confronted with a deceptive pop-up claiming they had won token rewards.

The pop-up message appeared to be part of a legitimate Cointelegraph promotion and told visitors they had been randomly selected to receive 50,000 “CTG” tokens, valued at over $5,000.

The offer seemed polished and convincing, featuring the company’s branding and interface elements that mimicked real airdrop campaigns.

It included a countdown timer and prompts to connect crypto wallets, standard elements in genuine token distribution efforts. However, the entire experience was fabricated by attackers.

A similar front-end attack appeared on CoinMarketCap over the weekend.

Security Firm Flags CoinTelegraph Frontend Hack Originating From Ad System

Scam Sniffer, a blockchain security firm, flagged the breach and posted a public alert, warning that Cointelegraph’s frontend had been compromised.

“Please be cautious,” the firm tweeted, alongside screenshots of the injected code and the fake airdrop interface. The scam was likely designed to trick users into granting wallet permissions, ultimately allowing hackers to drain all funds.

Cointelegraph later confirmed the breach and issued a warning. The company urged users not to interact with the fraudulent pop-up and emphasized that it has never issued a “CTG” token or launched an initial coin offering. It also assured readers that a fix was underway.

According to Scam Sniffer, the malicious JavaScript code came from the site’s advertising system rather than its core infrastructure.

Hackers Shift From Emails to Embedded Ads as Scam Tactics Evolve

The file, served via Cointelegraph’s ad partner, contained wallet-draining scripts disguised as standard ad delivery code. This technique has become more common in recent months as attackers seek to exploit vulnerabilities in trusted platforms’ third-party systems.

The scam interface showed a fake reward worth $5,490 and labeled the transaction process as “secure,” “instant,” and “verified.” Once users clicked to connect their wallet, the script triggered a function that could initiate approvals and transfers without the user’s informed consent.

These types of attacks are particularly dangerous because they appear on well-known, trusted websites. Many users assume such platforms have adequate security measures and may let their guard down. This makes ad-based exploits far more effective than phishing links sent through email or social media.

Fake CTG Token Never Existed on Major Exchanges or Blockchains

The CTG token mentioned in the scam does not exist on CoinMarketCap, CoinGecko, or any legitimate exchange. Neither is there a record of it on Ethereum or other major blockchains. These red flags may be obvious to veteran users, but newer entrants to the space are often unaware of what to look for in a legitimate token offering.

Similar breaches have been reported across the crypto space. CoinMarketCap too experienced a comparable incident this month, where attackers embedded a wallet-draining link into a front-facing promo box on the site. In that case too, the compromise stemmed from third-party code, not the core platform.

As more crypto companies depend on external ad services, their surfaces for attack increase dramatically. Even if a platform is secure at the application level, malicious scripts delivered through external partners can easily bypass protections. The growing trend has prompted calls for stricter auditing of third-party integrations and more robust sandboxing of external content.

Market Opportunity
RealLink Logo
RealLink Price(REAL)
$0.07535
$0.07535$0.07535
-0.88%
USD
RealLink (REAL) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Quick Tips for Passing Your MyCPR NOW Final Exam

Quick Tips for Passing Your MyCPR NOW Final Exam

Introduction: Getting certified in CPR is an important step in becoming prepared to handle emergencies. Whether you’re taking the course for personal knowledge,
Share
Techbullion2025/12/23 00:50
Top Altcoins To Hold Before 2026 For Maximum ROI – One Is Under $1!

Top Altcoins To Hold Before 2026 For Maximum ROI – One Is Under $1!

BlockchainFX presale surges past $7.5M at $0.024 per token with 500x ROI potential, staking rewards, and BLOCK30 bonus still live — top altcoin to hold before 2026.
Share
Blockchainreporter2025/09/18 01:16
Best Crypto to Buy as Saylor & Crypto Execs Meet in US Treasury Council

Best Crypto to Buy as Saylor & Crypto Execs Meet in US Treasury Council

The post Best Crypto to Buy as Saylor & Crypto Execs Meet in US Treasury Council appeared on BitcoinEthereumNews.com. Michael Saylor and a group of crypto executives met in Washington, D.C. yesterday to push for the Strategic Bitcoin Reserve Bill (the BITCOIN Act), which would see the U.S. acquire up to 1M $BTC over five years. With Bitcoin being positioned yet again as a cornerstone of national monetary policy, many investors are turning their eyes to projects that lean into this narrative – altcoins, meme coins, and presales that could ride on the same wave. Read on for three of the best crypto projects that seem especially well‐suited to benefit from this macro shift:  Bitcoin Hyper, Best Wallet Token, and Remittix. These projects stand out for having a strong use case and high adoption potential, especially given the push for a U.S. Bitcoin reserve.   Why the Bitcoin Reserve Bill Matters for Crypto Markets The strategic Bitcoin Reserve Bill could mark a turning point for the U.S. approach to digital assets. The proposal would see America build a long-term Bitcoin reserve by acquiring up to one million $BTC over five years. To make this happen, lawmakers are exploring creative funding methods such as revaluing old gold certificates. The plan also leans on confiscated Bitcoin already held by the government, worth an estimated $15–20B. This isn’t just a headline for policy wonks. It signals that Bitcoin is moving from the margins into the core of financial strategy. Industry figures like Michael Saylor, Senator Cynthia Lummis, and Marathon Digital’s Fred Thiel are all backing the bill. They see Bitcoin not just as an investment, but as a hedge against systemic risks. For the wider crypto market, this opens the door for projects tied to Bitcoin and the infrastructure that supports it. 1. Bitcoin Hyper ($HYPER) – Turning Bitcoin Into More Than Just Digital Gold The U.S. may soon treat Bitcoin as…
Share
BitcoinEthereumNews2025/09/18 00:27