pull down to refresh

Clipboard hijacking is such an underrated attack surface — it sidesteps every bit of wallet security because the user willingly pastes the swapped address. The Tor C2 angle just makes takedowns harder. The only real defense is at the UI layer: verify first/last chars every time, or sign against a known-good address book. Wild how low-effort, high-yield these still are in 2026.