Your money might have been at risk, even if you were just browsing the internet.
Cyber attackers recently messed with a widely used piece of internet plumbing from a company called Adform. Adform provides "ad tech," which is the behind-the-scenes software that helps websites show you ads. The attackers snuck a malicious bit of code, called a "script" [a small program that runs in your web browser], into Adform's system.
Think of it like this: Imagine you're at a busy post office, and the address labels provided by the post office automatically change the recipient's address when you're not looking. That's essentially what happened here. If you visited a website using Adform's affected script on July 27, 2026, and tried to copy a Bitcoin, Ethereum, or Solana cryptocurrency wallet address, the malicious script would swap it for the attacker's wallet address instead. You wouldn't even notice the change.
Adform found this problem on July 27, 2026, and quickly removed the bad code. They also told the companies that use their services and reported it to the police. This incident highlights a growing trend where attackers target not just individual websites, but the third-party services many websites rely on. These "supply chain attacks" can spread quickly because one compromised component affects many different places at once.
If you made a cryptocurrency transaction on July 27, 2026, after copying an address from a website that might have used Adform's ad tech, you should immediately check your transaction history to confirm the funds went to the correct recipient. If you find an incorrect address, contact the cryptocurrency exchange or platform you used for guidance.
This incident shows how important it is to be careful with online transactions, especially involving cryptocurrency. Even seemingly safe actions like copying and pasting can be manipulated by clever attackers.
Always double-check cryptocurrency wallet addresses before sending funds.