ShellCodeX Intelligence Brief
HIGH
Cybersecurity
Malvertising uses JavaScript to assemble malware in browser memory
Source headline: Malicious sites use JavaScript to build malware in browser memory
Threat level
High
Signal strength
75/100
Source confidence
1 source
Published
3 hours ago
Intelligence Summary
A large malvertising campaign is using fake cryptocurrency and analytics pages to deliver payloads. The malicious JavaScript runs in victims’ browsers and constructs malware directly in memory rather than relying on files. This approach can reduce the visibility of classic download-and-execute behavior. It targets users who visit the spoofed Solana, Luno, and TradingView lookalike sites. The risk is higher for users whose browser sessions allow the injected code to run without effective protections.
Recommended Action
Review affected assets, schedule urgent remediation, and monitor related indicators.
Topics
Original reporting
BleepingComputer
Malicious sites use JavaScript to build malware in browser memory
Open original source