Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnSquareMore
Solana Users Targeted by ‘Bull Checker’ Chrome Extension Scam

Solana Users Targeted by ‘Bull Checker’ Chrome Extension Scam

CryptopotatoCryptopotato2024/08/19 16:00
By:Author: Chayanika Deka

The “Bull Checker” extension preys on Solana users by altering wallet transactions, causing significant unauthorized token drains.

A new malicious browser extension called the “Bull Checker” is reportedly targeting Solana users on Reddit by masquerading as a meme coin tracker.

This extension evades detection systems and has drained Solana users’ wallets.

Solana Users Targeted

In the past week, Jupiter’s pseudonymous founder, Meow, reported that a few Solana DeFi users experienced unauthorized token drains. Through a thorough investigation with partners, they traced the issue to “Bull Checker,” which had been targeting users on various Solana-related subreddits.

This extension allowed users to interact normally with decentralized apps (dApps), but it secretly transferred tokens to unauthorized wallets upon transaction completion. Jupiter’s founder stressed that no vulnerabilities were found in the dApps or wallets themselves.

They urged users to remove the “Bull Checker” extension or any similar ones with extensive permissions that they cannot trust immediately.

Bull Checker is designed as a read-only extension intended to display meme coin holders. Ideally, such an extension should not require permission to read or write data on all websites, which should have raised concerns for users. Despite this, several users proceeded to install and use it.

Once installed, Bull Checker waits until a user interacts with a standard dApp on its official domain, then alters the transaction before it is signed by the wallet. The modified transaction still appears “normal” in the simulation, concealing its true intent as a drainer.

While researching the Chrome extension, Jupiter’s founder also discovered that it was promoted by an anonymous Reddit account, “Solana_OG.” This individual seemed to target users looking to trade meme coins and lured them to download the extension.

Keen Eye for Red Flags

Meow issued a strong warning to users, stressing the importance of skepticism when encountering recommendations on Reddit or other media platforms, regardless of how many upvotes or positive comments they receive.

The founder highlighted the dangers of “astroturfing and social engineering,” where bad actors can manipulate public perception to spread harmful tools like the “Bull Checker” extension. They further went on to add that extensions that request extensive permissions, such as the ability to read and modify all website data, should be treated with extreme caution.

“While we have identified one malicious extension, there might still be other malicious extensions out there. There have been reports of other drains that we have not been able to track down. If you suspect an extension contains malware, particularly if they have both “read” and “change” permissions, uninstall it immediately.”

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

2025 TGE Survival Ranking: Who Will Rise to the Top and Who Will Fall? Complete Grading of 30+ New Tokens, AVICI Dominates S+

The article analyzes the TGE performance of multiple blockchain projects, evaluating project performance using three dimensions: current price versus all-time high, time span, and liquidity-to-market cap ratio. Projects are then categorized into five grades: S, A, B, C, and D. Summary generated by Mars AI This summary was generated by the Mars AI model, and the accuracy and completeness of its content are still being iteratively updated.

MarsBit2025/11/28 16:26
2025 TGE Survival Ranking: Who Will Rise to the Top and Who Will Fall? Complete Grading of 30+ New Tokens, AVICI Dominates S+

Mars Finance | "Machi" increases long positions, profits exceed 10 million dollars, whale shorts 1,000 BTC

Russian households have invested 3.7 billion rubles in cryptocurrency derivatives, mainly dominated by a few large players. INTERPOL has listed cryptocurrency fraud as a global threat. Malicious Chrome extensions are stealing Solana funds. The UK has proposed new tax regulations for DeFi. Bitcoin surpasses $91,000. Summary generated by Mars AI. The accuracy and completeness of this summary are still being iteratively updated by the Mars AI model.

MarsBit2025/11/28 16:26
Mars Finance | "Machi" increases long positions, profits exceed 10 million dollars, whale shorts 1,000 BTC

How much is ETH really worth? Hashed provides 10 different valuation methods in one go

After taking a weighted average, the fair price of ETH exceeds $4,700.

ForesightNews 速递2025/11/28 15:05
How much is ETH really worth? Hashed provides 10 different valuation methods in one go

Dragonfly partner: Crypto has fallen into financial cynicism, and those valuing public blockchains with PE ratios have already lost

People tend to overestimate what can happen in two years, but underestimate what can happen in ten years.

深潮2025/11/28 14:53
Dragonfly partner: Crypto has fallen into financial cynicism, and those valuing public blockchains with PE ratios have already lost