Users targeted by phishing attack via third-party integrations on crypto data sites

1年前
标签:比特币0667
文章来源: Theblock

Word emerged late Friday afternoon about an apparent phishing attack targeting users of popular crypto data sites like Etherscan and CoinGecko.


Affected users received prompts to connect their MetaMask wallets to a website called “nftapes.win”.


In a tweet, CoinGecko said: “If you are on the CoinGecko website and you are being prompted by your Metamask to connect to this site, this is a SCAM. Don't connect it. We are investigating the root cause of this issue.”


Etherscan said in a tweet on the matter: We’ve received reports of phishing popups via a 3rd party integration and are currently investigating. Please be careful not to confirm any transactions that pop up on the website.”


"Interim we've taken immediate action to disable the said 3rd party integration on Etherscan," the site said in a subsequent tweet. 


Though the precise cause has not been confirmed, initial indications suggest that malicious code via ads on the affected sites is the vector for the phishing attack.


DexTools, another crypto-focused app site, is also said to be affected. In its tweet, DexTools appeared to blame a crypto ad platform known as Coinzilla. 


"We are disabling all ads until the situation is clarified by @adsbycoinzilla . Please be aware and don't sign suspicious requests at your wallet. DEXTools does not automatically request any permissions."


This is a breaking news story and will be updated as more information becomes available.


免责声明:本文章仅代表作者个人观点,不代表本平台的立场和观点。本文章仅供信息分享,不构成对任何人的任何投资建议。用户与作者之间的任何争议,与本平台无关。如网页中刊载的文章或图片涉及侵权,请提供相关的权利证明和身份证明发送邮件到support@aicoin.com,本平台相关工作人员将会进行核查。

评论

暂时没有评论,赶紧抢沙发吧!