Hackers Poison Adform Script to Swap Crypto Wallet Addresses Across Customer Sites

A devastating new attack has been discovered, where hackers are exploiting a vulnerability in Adform’s JavaScript library to swap cryptocurrency wallet addresses across customer sites. This sophisticated hack allows attackers to intercept and manipulate sensitive user data, compromising the financial security of thousands of customers worldwide.

Adform is a leading provider of advertising technology solutions, serving some of the world’s largest brands and websites. The company’s JavaScript library is used by numerous clients to manage ad campaigns, collect user data, and track interactions on their platforms. Hackers have discovered a way to inject malicious code into Adform’s script, which enables them to swap wallet addresses associated with specific customers’ accounts.

The vulnerability lies in the way Adform’s script handles cross-domain requests. Normally, this process is used to enable websites to load content from other domains while maintaining security boundaries between them. However, hackers have found a way to exploit this feature to inject their own malicious code into Adform’s script. This allows them to intercept and modify sensitive user data, including cryptocurrency wallet addresses.

As a result of the attack, customers’ funds are being redirected to attackers’ wallets instead of their intended destinations. The full extent of the damage is still unknown, but it is estimated that thousands of users worldwide have been affected. Adform has acknowledged the issue and assured its clients that they are working closely with law enforcement agencies to mitigate the impact.

The sophistication and scope of this attack underscore the growing threat posed by skilled hackers who can exploit even seemingly secure technologies. The fact that attackers were able to compromise a widely used library like Adform’s script serves as a reminder that no system is entirely foolproof, and vigilance is essential in today’s digital landscape.

For customers affected by the hack, it is crucial to immediately review their financial records for any suspicious activity. Those who suspect they have been impacted should contact their wallet providers and report any discrepancies in their transaction history. It is also essential for businesses that use Adform’s services to re-examine their security measures and take steps to ensure the integrity of their data handling processes. By staying informed and proactive, individuals and organizations can minimize their exposure to such attacks and maintain the trust of their users.


Source: The Hacker News — 2026-08-01