Russian Malware Campaign Adds Downward Pressure to Internet Computer’s ICP Token
Internet Computer Protocol (ICP) experienced a significant price drop, falling 5.18% to $4.8373 in the past 24 hours, exceeding the CoinDesk 20 Index’s decline. This downturn follows the revelation of a malicious campaign involving over 40 fake browser extensions designed to mimic popular cryptocurrency wallets like MetaMask and Coinbase. These extensions, some still active in browser stores, have reportedly stolen user credentials since at least April 2025.
Koi Security, the cybersecurity firm that uncovered the scheme, traced the attack infrastructure to Russian-speaking actors. This discovery amplified existing concerns among crypto investors already navigating macroeconomic instability and regulatory uncertainty. The attack exploited the trust layer users rely on for secure asset storage, impacting investor confidence in decentralized ecosystems. For projects like Internet Computer, which emphasize on-chain infrastructure and self-custody, this reputational damage weighs heavily, even if the protocol itself wasn’t directly targeted.
Technical analysis reveals a descending channel pattern for ICP-USD, with resistance around $5.13 and a decisive break below $5.00. Significant sell-offs occurred at 12:00 and 20:00 UTC on July 3rd, marked by above-average trading volume. The price range of $0.26 (5.1%) highlights heightened volatility. Further analysis shows a 1.17% drop between 05:52 and 06:51 UTC on July 4th, dipping below $4.90 before finding temporary support at $4.88. A surge in volume exceeding 94,000 units between 06:27 and 06:30 UTC suggests possible institutional activity. The day concluded with price consolidation and low volatility, indicating potential range-bound trading in the near term.
The incident underscores the vulnerability of the cryptocurrency market to cybersecurity threats and broader geopolitical risks. The impact on ICP highlights the interconnectedness of security breaches and market sentiment, particularly for projects focused on decentralized technologies and self-custody. The ongoing investigation into the malicious extensions and their perpetrators is crucial for restoring confidence in the ecosystem.

