#6
BleepingComputer
general
July 25, 2026 at 15:21 UTC
Malicious sites use JavaScript to build malware in browser memory
By Bill Toulas
AI Summary
A large-scale malvertising campaign is deploying fake Solana, Luno, and TradingView websites that use malicious JavaScript to assemble malware directly in browser memory, bypassing traditional file-based detection. The fileless assembly technique makes the attack harder to detect with conventional AV scanning, as no payload is written to disk during staging. Security teams should ensure endpoint solutions with memory scanning capabilities are deployed and consider blocking lookalike domains for these cryptocurrency platforms.
Relevance score: 64.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →