Clipboard Malware Swaps Crypto Wallet Addresses—$1,200 Lost from a Bybit Deposit
A Bybit user lost $1,200 after clipboard malware silently replaced their destination wallet address during a transfer. The victim copied a Bybit deposit address into MetaMask on an Android device, saw no warnings or errors, and sent the funds. When the deposit didn’t arrive, they checked the pasted address and discovered it was not the original—clipboard malware had swapped it for an attacker-controlled address.
Cybersecurity researcher BalaiBB described how the attack runs in the background: once a wallet-like alphanumeric string is copied, the malware instantly substitutes it while the pasted text appears nearly identical (often only the last few characters differ). A suggested mitigation is to compare the first and last four characters of any wallet address after pasting before confirming a transaction.
The article also outlines other quiet drain methods highlighted by BalaiBB and CNC Intel: fake token approvals on DEXs, phishing sites using lookalike URLs, and fake customer support that asks for seed phrases (which legitimate firms never do). Another vector is Discord social engineering via compromised accounts and malicious mint/airdrop links.
CNC Intel notes that once a clipboard malware transfer is confirmed on-chain, crypto recovery is nearly impossible. The stolen amount can be tracked, but practical retrieval is rare, and there is no dispute or refund mechanism.
For traders, this reinforces operational security risk around USDT transfers and DeFi interactions (e.g., Uniswap-related flows). Expect heightened attention to address verification in the short term, but limited broader market impact.
Neutral
这则消息本质上是“执行层安全事故”(clipboard malware 发生在用户粘贴/授权环节),而不是协议层故障或宏观流动性冲击,因此对整体市场稳定性的直接影响通常较小。但它可能在短期内放大交易者对“地址校验、授权风控与钓鱼防护”的关注,尤其是在需要频繁粘贴地址或进行 DEX 授权的场景。
从历史类似事件看,曾多次出现的剪贴板劫持、假钱包/假授权与钓鱼链接通常会带来局部损失与情绪压力,但只要不涉及大规模交易所/主流资产的系统性中断,市场价格波动往往是有限且偏短暂的。长期影响更多体现在用户与团队强化 SOP(例如粘贴前后位对比、只从可信来源访问站点、禁用可疑扩展与应用),而不是引发持续的宏观看多/看空。
因此,预期影响更接近“中性”:提醒安全、可能提高短期风险偏好谨慎度,但不足以单独改变更广泛的市场趋势。