Fat Pig Signals logo

Utoday: Crypto Services Targeted by Massive Phishing Scam Here's How It Happened

Shares

Ethereum's (ETH) explorer Etherscan, crypto analytics service CoinGecko, portfolio management app DexTools and other Web3 infrastructure services are attacked

Contents

Crypto scammers attacked Web3 infrastructure platforms through an unusual design. By compromising a single advertising instrument, attackers managed to steal tokens from thousands of wallets.

No free "Apes" in crypto

Today, on May 14, 2022, dozens of cryptocurrency websites, including major Ethereum explorer Etherscan, QuickSwap DeFi, CoinGecko analytics dashboard, DexTool hub and so on, faced a massive phishing attack.

While visiting the websites, users were asked to authorize a transaction through their noncustodial wallets. The scammers offered to take part in a fake NFT giveaway.

The scammers' domain impersonated Bored Apes Yacht Club (BAYC), the most expensive non-fungible token collection. Right now, the BAYC floor price inches closer to $200,000, but the scammers offered the "apes" for free.

Crypto enthusiasts revealed that the attack was carried out via Coinzilla, a popular crypto-centric advertising network. As such, the users of modern adblock services were the only safe ones.

Was the attack mitigated?

At the same time, the signature itself was not malicious; victims were asked to sign another transaction required to transfer Ethereum (ETH), Binance Coins (BNB), Crypto.com Coins (CRO) or Fantom (FTM).

As per the official statement by the Coinzilla team, the attack was mitigated in less than one hour after it was revealed by DeFi enthusiasts:

A single campaign containing a piece of malicious code has managed to pass our automated security checks. It ran for less than an hour before our team stopped it and locked the account.

As such, all crypto users are now safe; the malicious intereference has been successfuly mitigated.

The exact amount of funds stolen is yet to be evaluated.

Shares

Related Articles

xrp scam

PwC Account Hacked to Promote XRP Scam

The official Twitter account of PricewaterhouseCoopers (PwC) Venezuela has been hacked in order to promote an XRP scam. It is advertising “a big event” with Ripple CEO Brad Garlinghouse that is supposed to take place an hour from now. Its tweet encloses a link that is supposed to bait potential victims into sending their crypto. […]
ETHW

Utoday: EthereumPoW (ETHW) Community Targeted by Twitter Scam

EthereumPoW (ETHW) is the most popular of the post-Merge Ethereum (ETH) hard forks running on the proof-of-work (PoW) consensus. Now scammers are trying to benefit from its increasing popularity. Fake EthereumPoW (ETHW) accounts flooded Twitter According to a statement shared on EthereumPoW (ETHW) social media, a number of fake accounts and websites are impersonating the largest PoW […]
Japan Nft

Japan Reveals Plans to Accelerate NFT, Metaverse Investments

The Prime Minister of Japan, Fumio Kishida, has reiterated his government's plans to invest in Web 3.0 technology. In his "State of the Union" address this week before Japan's National Diet, Kishida stated that expanding the use of Web 3.0 services that utilize metaverse and non-fungible token (NFT) innovations is part of the government's digital transformation plans. […]
PHISHING WARNING: Please make sure you’re visiting https://www.fatpigsignals.com. There has been an increasing amount of scammers and Impersonators. Please verify the handles carefully as well. Admins will never contact you selling investment products or a fund.
Official Admin Contacts: https://t.me/dad10 and https://t.me/gangplank123
+