Scam Sniffer has issued a security alert, with users reporting that visiting a certain Singapore news portal redirects them to a fake Pudgy Penguins website. Investigations show this is part of a larger malicious ad campaign. The attack mechanism is as follows:
Malicious ads are served through the Google ad network; ads load suspicious code from Adloox; the code checks if you have a web3 wallet; if detected, you will be redirected to a fake website for Pudgy Penguins.
Currently, the attacks are only targeting Pudgy Penguins users, but this method can easily be applied to other projects. Users are advised to carefully check the URL.
Preventive measures: Enable ad blockers; use a separate browser for crypto activities; check the URL carefully before connecting your wallet; install browser security extensions.