Bitcoin Forum
May 04, 2024, 02:50:02 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Using the Hola VPN chrome extension? Your MEW wallet may have been compromised.  (Read 211 times)
TryNinja (OP)
Legendary
*
Offline Offline

Activity: 2828
Merit: 6977



View Profile WWW
July 10, 2018, 01:04:33 PM
Last edit: May 14, 2023, 04:05:05 AM by TryNinja
Merited by Pursuer (1)
 #1



Quote
Urgent! If you have Hola chrome extension installed and used MEW within the last 24 hrs, please transfer your funds immediately to a brand new account!

We received a report that suggest Hola chrome extension was hacked for approximately 5 hrs and the attack was logging your activity on MEW.
Source: https://twitter.com/myetherwallet/status/1016542459185119232

If you have the Hola VPN extension, which is a free VPN for Chrome, uninstall it right now, create a new MEW wallet and move all your coins away immediately.

P.S: This is not an issue with MEW. It's the same as downloading a virus, risking your wallet and blaming your wallet developer.

.
.HUGE.
▄██████████▄▄
▄█████████████████▄
▄█████████████████████▄
▄███████████████████████▄
▄█████████████████████████▄
███████▌██▌▐██▐██▐████▄███
████▐██▐████▌██▌██▌██▌██
█████▀███▀███▀▐██▐██▐█████

▀█████████████████████████▀

▀███████████████████████▀

▀█████████████████████▀

▀█████████████████▀

▀██████████▀▀
█▀▀▀▀











█▄▄▄▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
.
CASINSPORTSBOOK
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀█











▄▄▄▄█
1714834202
Hero Member
*
Offline Offline

Posts: 1714834202

View Profile Personal Message (Offline)

Ignore
1714834202
Reply with quote  #2

1714834202
Report to moderator
1714834202
Hero Member
*
Offline Offline

Posts: 1714834202

View Profile Personal Message (Offline)

Ignore
1714834202
Reply with quote  #2

1714834202
Report to moderator
Transactions must be included in a block to be properly completed. When you send a transaction, it is broadcast to miners. Miners can then optionally include it in their next blocks. Miners will be more inclined to include your transaction if it has a higher transaction fee.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1714834202
Hero Member
*
Offline Offline

Posts: 1714834202

View Profile Personal Message (Offline)

Ignore
1714834202
Reply with quote  #2

1714834202
Report to moderator
1714834202
Hero Member
*
Offline Offline

Posts: 1714834202

View Profile Personal Message (Offline)

Ignore
1714834202
Reply with quote  #2

1714834202
Report to moderator
leowonderful
Legendary
*
Offline Offline

Activity: 1624
Merit: 1129


Bitcoin FTW!


View Profile
July 10, 2018, 01:19:30 PM
 #2

This is exactly why I don't run Chrome with any extensions at all, especially on computers where I'm storing any amounts of crypto- the risk for a hack or shady application logging my information and a resulting loss of funds is just too great. Still a good job from the MEW team for reporting this issue quickly, as every minute could mean a wallet getting its funds emptied without the owner's permission.

I don't trust free VPN services for this reason as well. I'd much rather pay money for a VPN, or better yet make a Socks5 proxy by hand than save money at a cost like this.
OmegaStarScream
Staff
Legendary
*
Offline Offline

Activity: 3472
Merit: 6120



View Profile
July 10, 2018, 01:38:47 PM
 #3

So basically this is valid for MyCrypto too. Is it possible for an extension to reach for another extension as well? If that's the case, MetaMask could be at risk too.

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
St4yInTh3D4rk
Sr. Member
****
Offline Offline

Activity: 686
Merit: 264


"STAY IN THE DARK"


View Profile
July 10, 2018, 03:22:26 PM
 #4

Is there any problem if I have hola VPN on someohter browser and never accessed my MEW from that browser?

But I always access my MEW from chrome where I have no extension installed.

bustadice         ▄▄████████████▄▄
     ▄▄████████▀▀▀▀████████▄▄
   ▄███████████    ███████████▄
  █████    ████▄▄▄▄████    █████
 ██████    ████████▀▀██    ██████
██████████████████   █████████████
█████████████████▌  ▐█████████████
███    ██████████   ███████    ███
███    ████████▀   ▐███████    ███
██████████████      ██████████████
██████████████      ██████████████
 ██████████████▄▄▄▄██████████████
  ▀████████████████████████████▀
                     ▄▄███████▄▄
                  ▄███████████████▄
   ███████████  ▄████▀▀       ▀▀████▄
               ████▀      ██     ▀████
 ███████████  ████        ██       ████
             ████         ██        ████
███████████  ████     ▄▄▄▄██        ████
             ████     ▀▀▀▀▀▀        ████
 ███████████  ████                 ████
               ████▄             ▄████
   ███████████  ▀████▄▄       ▄▄████▀
                  ▀███████████████▀
                     ▀▀███████▀▀
           ▄██▄
           ████
            ██
            ▀▀
 ▄██████████████████████▄
██████▀▀██████████▀▀██████
█████    ████████    █████
█████▄  ▄████████▄  ▄█████
██████████████████████████
██████████████████████████
    ▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
    ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
       ████████████
[bustadice.
Play
bustadice]

Hero/Legendary
..bustadice..              ▄▄████████████▄▄
     ▄▄████████▀▀▀▀████████▄▄
   ▄███████████    ███████████▄
  █████    ████▄▄▄▄████    █████
 ██████    ████████▀▀██    ██████
██████████████████   █████████████
█████████████████▌  ▐█████████████
███    ██████████   ███████    ███
███    ████████▀   ▐███████    ███
██████████████      ██████████████
██████████████      ██████████████
 ██████████████▄▄▄▄██████████████
  ▀████████████████████████████▀
TryNinja (OP)
Legendary
*
Offline Offline

Activity: 2828
Merit: 6977



View Profile WWW
July 10, 2018, 03:44:33 PM
 #5

Is there any problem if I have hola VPN on someohter browser and never accessed my MEW from that browser?
No. An extension on Chrome can't read/modify data on your Firefox browser.

But I always access my MEW from chrome where I have no extension installed.
Then you are safe.

.
.HUGE.
▄██████████▄▄
▄█████████████████▄
▄█████████████████████▄
▄███████████████████████▄
▄█████████████████████████▄
███████▌██▌▐██▐██▐████▄███
████▐██▐████▌██▌██▌██▌██
█████▀███▀███▀▐██▐██▐█████

▀█████████████████████████▀

▀███████████████████████▀

▀█████████████████████▀

▀█████████████████▀

▀██████████▀▀
█▀▀▀▀











█▄▄▄▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
.
CASINSPORTSBOOK
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀█











▄▄▄▄█
crairezx20
Legendary
*
Offline Offline

Activity: 1638
Merit: 1046



View Profile
July 10, 2018, 04:59:43 PM
 #6

How the VPN works and how they can get your private keys or json key?

It looks like a keylogger or downloading all copy paste logs. for now I'm using metamask wallet because I don't like MEW to use for daily transaction because you need to copy paste your private key when accessing your wallet.
jhenfelipe
Hero Member
*****
Offline Offline

Activity: 1372
Merit: 647


View Profile
July 10, 2018, 05:58:02 PM
Merited by TryNinja (1)
 #7

So far no comments in the twitter post about funds being stolen from their account. Hopefully MEW users aren't using Hola VPN while accessing their wallets.



So basically this is valid for MyCrypto too. Is it possible for an extension to reach for another extension as well? If that's the case, MetaMask could be at risk too.
@MyCrypto posted about this issue as well and made it clear that MyCrypto users are not affected. Based on the post, it seems that it's only for MEW, so I think MetaMask users are not affected too.

milewilda
Legendary
*
Offline Offline

Activity: 3108
Merit: 1127



View Profile
July 10, 2018, 09:40:18 PM
Last edit: July 13, 2018, 07:35:14 PM by milewilda
 #8

So far no comments in the twitter post about funds being stolen from their account. Hopefully MEW users aren't using Hola VPN while accessing their wallets.

Ive been waiting for comments too actually but we should wait a little further even though Hola VPN isnt too popular but rest assured there are still people who do make use of it and wasnt aware on the recent vulnerability of it.


How the VPN works and how they can get your private keys or json key?

It looks like a keylogger or downloading all copy paste logs. for now I'm using metamask wallet because I don't like MEW to use for daily transaction because you need to copy paste your private key when accessing your wallet.
This is the reason why i do switch to metamask it is somehow techy compared to MEW but when it comes to security or possible risk you can lessen it up when using metamask.This is why i dont like to install any extensions on my chrome. Even on my first time with metamask i do still hesitate to do such thing.

mobnepal
Legendary
*
Offline Offline

Activity: 1218
Merit: 1006


View Profile
July 10, 2018, 10:04:46 PM
 #9

I always used to remain cautious about installing any extension on my browser even though all of them are listed by google after security check. Now this news make my caution worthy because this proves that even though google will have security check before listing the extension on their store hacker can push malicious code without getting noticed by google.

The only extension I have is metamask which I rarely use.. Hope not much ETH holder will be affected by this as HOLA is not quite popular VPN,  I haven't heard about it before.
LTU_btc
Legendary
*
Offline Offline

Activity: 3052
Merit: 1330


Slava Ukraini!


View Profile WWW
July 10, 2018, 10:44:21 PM
 #10

Thanks for the warning. I'm using Hola extension quite often. But it's good that I'm using MEW on Firefox, while Hola on Opera, so my funds are safe.
Hope not much ETH holder will be affected by this as HOLA is not quite popular VPN,  I haven't heard about it before.
Hola is probably most popular free VPN extension. It doesn't mean that's not popular just becauce you haven't heard about it.

electronicash
Legendary
*
Offline Offline

Activity: 3080
Merit: 1049


Eloncoin.org - Mars, here we come!


View Profile WWW
July 13, 2018, 03:11:28 AM
 #11

never trust browser extension and app.

you don't need to use the private key in MEw if you use the Keystore File to login to your account. but yes the password along with that keystore file.
the best way to use MEW is by downloading the newest release from here https://github.com/kvhnuke/etherwallet/releases


unzip it
and then you can use it offline without worrying of hacks. drag the index.html to a browser to view the page.
click send token  then
you can click json file if you have json file and upload or Click private key  and copy and paste your private keys whichever is comfortable for you
click unlock wallet.









▄▄████████▄▄
▄▄████████████████▄▄
▄██
████████████████████▄
▄███
██████████████████████▄
▄████
███████████████████████▄
███████████████████████▄
█████████████████▄███████
████████████████▄███████▀
██████████▄▄███▄██████▀
████████▄████▄█████▀▀
██████▄██████████▀
███▄▄█████
███████▄
██▄██████████████
░▄██████████████▀
▄█████████████▀
████████████
███████████▀
███████▀▀
.
▄▄███████▄▄
▄███████████████▄
▄███████████████████▄
▄██████████
███████████
▄███████████████████████▄
█████████████████████████
█████████████████████████
█████████████████████████
▀█
██████████████████████▀
▀██
███████████████████▀
▀███████████████████▀
▀█████████
██████▀
▀▀███████▀▀
.
 ElonCoin.org 
.
████████▄▄███████▄▄
███████▄████████████▌
██████▐██▀███████▀▀██
███████████████████▐█▌
████▄▄▄▄▄▄▄▄▄▄██▄▄▄▄▄
███▐███▀▄█▄█▀▀█▄█▄▀
███████████████████
█████████████▄████
█████████▀░▄▄▄▄▄
███████▄█▄░▀█▄▄░▀
███▄██▄▀███▄█████▄▀
▄██████▄▀███████▀
████████▄▀████▀
█████▄▄
.
"I could either watch it
happen or be a part of it"
▬▬▬▬▬
Lanatsa
Hero Member
*****
Offline Offline

Activity: 2828
Merit: 649



View Profile
July 13, 2018, 07:33:32 PM
 #12

never trust browser extension and app.

you don't need to use the private key in MEw if you use the Keystore File to login to your account. but yes the password along with that keystore file.
the best way to use MEW is by downloading the newest release from here https://github.com/kvhnuke/etherwallet/releases


unzip it
and then you can use it offline without worrying of hacks. drag the index.html to a browser to view the page.
click send token  then
you can click json file if you have json file and upload or Click private key  and copy and paste your private keys whichever is comfortable for you
click unlock wallet.
Airgapped is good but not all people would put up themselves into hassle or just simply not all people do have idea into this kind of method since they are not techy at all.
If we do possess huge amounts of crypto then this kind of accessing the wallet thru offline is safer than on inputting your private key while you are connected to the net.
Luckily, im not using any browser extension on my chrome since i dont really need vpn service at all.

R


▀▀▀▀▀▀▀██████▄▄
████████████████
▀▀▀▀█████▀▀▀█████
████████▌███▐████
▄▄▄▄█████▄▄▄█████
████████████████
▄▄▄▄▄▄▄██████▀▀
LLBIT|
4,000+ GAMES
███████████████████
██████████▀▄▀▀▀████
████████▀▄▀██░░░███
██████▀▄███▄▀█▄▄▄██
███▀▀▀▀▀▀█▀▀▀▀▀▀███
██░░░░░░░░█░░░░░░██
██▄░░░░░░░█░░░░░▄██
███▄░░░░▄█▄▄▄▄▄████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
█████████
▀████████
░░▀██████
░░░░▀████
░░░░░░███
▄░░░░░███
▀█▄▄▄████
░░▀▀█████
▀▀▀▀▀▀▀▀▀
█████████
░░░▀▀████
██▄▄▀░███
█░░█▄░░██
░████▀▀██
█░░█▀░░██
██▀▀▄░███
░░░▄▄████
▀▀▀▀▀▀▀▀▀
|
██░░░░░░░░░░░░░░░░░░░░░░██
▀█▄░▄▄░░░░░░░░░░░░▄▄░▄█▀
▄▄███░░░░░░░░░░░░░░███▄▄
▀░▀▄▀▄░░░░░▄▄░░░░░▄▀▄▀░▀
▄▄▄▄▄▀▀▄▄▀▀▄▄▄▄▄
█░▄▄▄██████▄▄▄░█
█░▀▀████████▀▀░█
█░█▀▄▄▄▄▄▄▄▄██░█
█░█▀████████░█
█░█░██████░█
▀▄▀▄███▀▄▀
▄▀▄
▀▄▄▄▄▀▄▀▄
██▀░░░░░░░░▀██
||.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
░▀▄░▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄░▄▀
███▀▄▀█████████████████▀▄▀
█████▀▄░▄▄▄▄▄███░▄▄▄▄▄▄▀
███████▀▄▀██████░█▄▄▄▄▄▄▄▄
█████████▀▄▄░███▄▄▄▄▄▄░▄▀
███████████░███████▀▄▀
███████████░██▀▄▄▄▄▀
███████████░▀▄▀
████████████▄▀
███████████
▄▄███████▄▄
▄████▀▀▀▀▀▀▀████▄
▄███▀▄▄███████▄▄▀███▄
▄██▀▄█▀▀▀█████▀▀▀█▄▀██▄
▄██▄██████▀████░███▄██▄
███░████████▀██░████░███
███░████░█▄████▀░████░███
███░████░███▄████████░███
▀██▄▀███░█████▄█████▀▄██▀
▀██▄▀█▄▄▄██████▄██▀▄██▀
▀███▄▀▀███████▀▀▄███▀
▀████▄▄▄▄▄▄▄████▀
▀▀███████▀▀
OFFICIAL PARTNERSHIP
FAZE CLAN
SSC NAPOLI
|
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!