Article URL: https://this.weekinsecurity.com/online-advertising-giant-adform-was-hacked-proving-once-again-why-ad-blockers-are-necessary/ Comments URL: https://news.ycombinator.com…

Online ads provider Adform was hacked. On July 27, the company began serving ads containing malicious code. The company says in its latest annual report that its serves 1.5 billion ads to people's devices daily. According to security researcher Kevin Beaumont, who first revealed the incident, some of the code that Adform used to load its ads on its customers' websites was maliciously altered. The code was designed to trigger when it loaded in a victim's web browser. The malicious code replaced a victim's crypto wallet address in their computer's clipboard with crypto wallet addresses controlled by the hacker. The code replaces the crypto addresses in the clipboard every three seconds, all but guaranteeing that the victim will inadvertently paste in the attacker's crypto wallet address and send their crypto to the hacker instead of its intended destination. If you've ever needed another reason to use an ad-blocker, this is it. By blocking ads, you can prevent pervasive tracking, surveillance, and yes, even malware, from landing on your computer. ~this week in security~ is my weekly cybersecurity newsletter and blog supported by readers like you. Please consider signing up for a paid subscription starting at $10/month for access to exclusive articles, analysis, and more. Or, you can submit a one-time tip or gift a paid subscription to show your support! Recent blogs include: When AI chatbots and LLMs get legal, check your privilege | Most fitness wearables lack end-to-end encryption and don't disclose government data demands | U.S. judge denied feds a month-long warrant to snoop on the phones of thousands of Ohio residents | Why ad blockers are a top security and privacy defense for everyone | A beginner's guide to analyzing the network traffic of apps and websites Adform has now disclosed the breach, but the company didn't say how it was initially compromised or how many people may have been affected. When I reached out to the company with questions about the incident, a spokesperson referred me instead to its public statement.