Over $2 million in Ethereum stolen in sophisticated phishing scheme

2 months ago

A caller phishing onslaught has near a crypto capitalist reeling from a nonaccomplishment of 501 ETH, valued astatine astir $2 million, staked done liquid restaking protocol Ether.Fi.

On-chain data reveals that the theft occurred earlier contiguous and progressive 2 transactions. In 1 transaction, 426 ETH were siphoned, followed by different 75 ETH successful a consequent transaction. At the clip of the attack, these stolen assets were valued astatine astir $1.6 cardinal and $276,000, respectively.

As a effect of the theft, the wallet’s nett worthy plummeted by implicit 99.93%, leaving them with lone $1,453.

Scam Sniffer, a Web3 information platform, identified the onslaught arsenic utilizing an “IncreaseAllowance” transaction, a signature commonly associated with phishing schemes that alteration attackers to entree funds without the victim’s authorization.

Over $100 cardinal mislaid to phishing scams

This incidental occurs amidst a surge successful phishing scams targeting the manufacture this year.

According to data provided by Scam Sniffer, $104 cardinal was defrauded from astir 97,000 crypto users successful the archetypal months of this twelvemonth owed to phishing attacks. In January, losses amounted to $57.7 million, followed by $46.8 million successful February.

A breakdown of the attacks shows that Ethereum users bore the brunt, losing $78 cardinal successful assets, including ETH and ERC20 tokens.

The superior method employed by cybercriminals progressive duping victims into signing malicious phishing signatures, specified arsenic “Uniswap Permit2” and “increaseAllowance,” which enabled the malicious players to summation unauthorized entree to their victims’ funds.

“Most of the thefts of each ERC20 tokens were owed to assets being stolen arsenic a effect of signing phishing signatures specified arsenic Permit, IncreaseAllowance, and Uniswap Permit2,” Scam Sniffer explained.

Scam Sniffer revealed that astir victims fell prey to deceptive comments connected societal media platforms, peculiarly X (formerly Twitter). The attackers often masquerade arsenic legitimate crypto organizations to lure unsuspecting individuals to phishing sites wherever their integer assets are stolen.

The station Over $2 cardinal successful Ethereum stolen successful blase phishing scheme appeared archetypal connected CryptoSlate.

View source