The420.In
Malicious imToken Chrome Extension Steals Crypto Wallet Credentials
First seen 9 Mar 2026, 11:39 UTC
•


•63.8
Export
Article Content
Browse articles
A malicious Chrome extension named 'lmΤoken Chromophore' has been identified, masquerading as a color visualizer while stealing cryptocurrency wallet credentials, including seed phrases and private keys. Users of the popular imToken wallet, which has over 20 million customers globally, are particularly at risk due to the extension's deceptive nature.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Timeline
2026-03-07
Cybersecuritynews article published about the malicious extension
2026-03-08
The420.In article published detailing the extension's phishing techniques
More articles in this cluster
Continue Reading
Critical Joomla JCE Vulnerability Under Active Exploitation
Critical Zero-Day Vulnerability CVE-2026-20182 Exploited in Cisco SD-WAN Systems
Critical SonicWall SMA1000 Vulnerabilities Under Active Exploitation
Critical Unauthenticated RCE Vulnerability in LiteLLM Exploited in the Wild
Critical Zero-Day Vulnerability in LiteSpeed cPanel Plugin Actively Exploited
CVE-2026-47668: Unauthenticated RCE Vulnerability in DbGate