$550,000, one click. Security experts say that's the amount a Hyperliquid user lost after their wallet was drained by a phishing link disguised as a Google ad.
This isn't an isolated case. Crypto security group Security Alliance (SEAL) said back in April that they'd intercepted 356 malicious Google ad URLs within just a few weeks — in other words, this tactic has long been on their radar, and plenty of these links have already been blocked.
Put the two numbers side by side, and the picture gets clearer: on one hand, security teams have been steadily cleaning up over 300 fake ad links; on the other, users are still losing $550K in a single click. Interception systems exist, but that doesn't mean every user can dodge an ad slot disguised as an official portal.
Public information currently available doesn't include the date of the incident, details about the victim's identity, or the specific statement from the security expert in question.






