Cointelegraph Suffers Similar Cyberattack After CoinMarketCap – What’s Going On?

2025/06/23 14:01

Users visiting the Cointelegraph website on Sunday were confronted with a deceptive pop-up claiming they had won token rewards.

The pop-up message appeared to be part of a legitimate Cointelegraph promotion and told visitors they had been randomly selected to receive 50,000 “CTG” tokens, valued at over $5,000.

The offer seemed polished and convincing, featuring the company’s branding and interface elements that mimicked real airdrop campaigns.

It included a countdown timer and prompts to connect crypto wallets, standard elements in genuine token distribution efforts. However, the entire experience was fabricated by attackers.

A similar front-end attack appeared on CoinMarketCap over the weekend.

Security Firm Flags CoinTelegraph Frontend Hack Originating From Ad System

Scam Sniffer, a blockchain security firm, flagged the breach and posted a public alert, warning that Cointelegraph’s frontend had been compromised.

“Please be cautious,” the firm tweeted, alongside screenshots of the injected code and the fake airdrop interface. The scam was likely designed to trick users into granting wallet permissions, ultimately allowing hackers to drain all funds.

Cointelegraph later confirmed the breach and issued a warning. The company urged users not to interact with the fraudulent pop-up and emphasized that it has never issued a “CTG” token or launched an initial coin offering. It also assured readers that a fix was underway.

According to Scam Sniffer, the malicious JavaScript code came from the site’s advertising system rather than its core infrastructure.

Hackers Shift From Emails to Embedded Ads as Scam Tactics Evolve

The file, served via Cointelegraph’s ad partner, contained wallet-draining scripts disguised as standard ad delivery code. This technique has become more common in recent months as attackers seek to exploit vulnerabilities in trusted platforms’ third-party systems.

The scam interface showed a fake reward worth $5,490 and labeled the transaction process as “secure,” “instant,” and “verified.” Once users clicked to connect their wallet, the script triggered a function that could initiate approvals and transfers without the user’s informed consent.

These types of attacks are particularly dangerous because they appear on well-known, trusted websites. Many users assume such platforms have adequate security measures and may let their guard down. This makes ad-based exploits far more effective than phishing links sent through email or social media.

Fake CTG Token Never Existed on Major Exchanges or Blockchains

The CTG token mentioned in the scam does not exist on CoinMarketCap, CoinGecko, or any legitimate exchange. Neither is there a record of it on Ethereum or other major blockchains. These red flags may be obvious to veteran users, but newer entrants to the space are often unaware of what to look for in a legitimate token offering.

Similar breaches have been reported across the crypto space. CoinMarketCap too experienced a comparable incident this month, where attackers embedded a wallet-draining link into a front-facing promo box on the site. In that case too, the compromise stemmed from third-party code, not the core platform.

As more crypto companies depend on external ad services, their surfaces for attack increase dramatically. Even if a platform is secure at the application level, malicious scripts delivered through external partners can easily bypass protections. The growing trend has prompted calls for stricter auditing of third-party integrations and more robust sandboxing of external content.

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

New Options for Bitcoin, Dogecoin, and XRP holders: Explore Blockchain Cloud Mining

New Options for Bitcoin, Dogecoin, and XRP holders: Explore Blockchain Cloud Mining

In today’s rapidly developing digital economy, “ mining ” is no longer the exclusive domain of geeks and technical players. With the popularization of blockchain technology and the breakthrough of cloud computing capabilities, cloud mining is quietly changing the way global users participate in the cryptocurrency market with the advantages of “no equipment required, remote operation, and automatic income”. Today, from individual investors to small and medium-sized enterprises, more and more users are easily participating in the production and management of mainstream digital assets such as Bitcoin and Dogecoin through blockchain cloud mining, a low-threshold and high-security path. This digital gold rush is being redefined by the two key words “simple” and “safe”. The so-called cloud mining refers to renting computing power resources from remote data centers, and the platform completes the mining process on behalf of users, and users receive daily output currency dividends in the form of contracts. You don’t need to buy expensive mining machines or bear high electricity bills. Just choose a suitable computing power package on the platform to automatically start mining and enjoy daily income. Blockchain Cloud Mining Platform Core Advantages Sign up and get a bonus New users can get an exclusive bonus worth $12 upon registration , which can be used for the daily sign-in mining function, easily producing a $0.6 system reward every day, and start the cloud mining journey at zero cost. Legal compliance guarantee The platform is officially authorized and regulated by British financial institutions, operates legally and compliantly, and provides users with a reliable blockchain cloud mining environment. Military-grade security system Adopting high-intensity encryption technology and multi-signature wallet mechanism, it fully guarantees the security of user data and assets, and the protection level is comparable to military standards. Transparent operation mechanism The entire platform interface is simple and intuitive, the mining process is displayed in real time, the contract details are clear, the income records can be checked, the payment process is open and transparent, and hidden fees are eliminated. Flexible mining plan Provide a variety of customized mining contracts, covering different needs and risk preferences, suitable for crypto novices to senior miners, helping every user to efficiently manage digital assets. Green energy driven All mining infrastructure is deployed in areas that use 100% renewable energy, practicing the concept of sustainable development and creating an environmentally friendly and safe blockchain ecosystem. Technology-driven revenue automation Based on the underlying architecture provided by blockchaincloudmining.com, the platform has built a unique consensus mechanism and computing power scheduling system, supporting users to customize computing power strategies through a visual interface. The system automatically settles revenue every day and quickly distributes it to user wallets, realizing the true meaning of “easy mining, automatic income”. You can see a complete list of the new stable income contracts here. How Blockchain Cloud Mining Works After purchasing the contract, the profit will be automatically credited to your account the next day. When the account balance reaches $100, you can choose to withdraw to your digital currency wallet, or continue to purchase contracts to get more profits. (The platform has launched a series of stable income contracts. For more contracts, please visit the official website .) BlockchainCloudMining is a world-leading blockchain mining service platform headquartered in the UK with a legal registration certificate and financial regulatory qualifications. Since its establishment in 2018, it has been committed to bringing efficient and transparent cloud mining services to global investors, with users in more than 190 countries. Visit the official website to start your new mining journey and let your daily income create more possibilities for you.
Share
CryptoNews2025/06/23 18:50