ShellCodeX
Tools • Events • News • Insights
ShellCodeX Intelligence Brief
HIGH Cybersecurity

Malvertising uses JavaScript to assemble malware in browser memory

Source headline: Malicious sites use JavaScript to build malware in browser memory

Threat level High
Signal strength 75/100
Source confidence 1 source
Published 3 hours ago

Intelligence Summary

A large malvertising campaign is using fake cryptocurrency and analytics pages to deliver payloads. The malicious JavaScript runs in victims’ browsers and constructs malware directly in memory rather than relying on files. This approach can reduce the visibility of classic download-and-execute behavior. It targets users who visit the spoofed Solana, Luno, and TradingView lookalike sites. The risk is higher for users whose browser sessions allow the injected code to run without effective protections.

Recommended Action

Review affected assets, schedule urgent remediation, and monitor related indicators.

Topics

#cryptocurrency #supply-chain #javascript #malvertising #browser #in-memory
Original reporting BleepingComputer Malicious sites use JavaScript to build malware in browser memory
Open original source