NFT Artist Beeple Warns Discord Members of Wallet Drainer Exploit

CN
Decrypt
关注
3年前

High-profile NFT artist Mike “Beeple” Winkelmann said today that links that point to his Discord server have been hacked and altered, instead redirecting fans and followers towards a fake copycat server that could swipe the NFTs and tokens from users that interact with it.


“It appears our Discord URLs were hacked to point to a fraudulent Discord,” he tweeted. “DO NOT go into that Discord and do not verify, it will drain your wallet!!”


Beeple is a well-known digital artist whose March 2021 sale of Ethereum NFT “Everydays: The First 5,000 Days” set the record for top all-time single NFT sale at $69.3 million. His other work includes last year’s “HUMAN ONE,” a hybrid digital/physical piece, which sold for $28.9 million at auction.



Beeple’s server is designed for collectors of his NFT work, and based on his tweeted comment, it appears that it requires verification of ownership by connecting an Ethereum wallet holding one of the eligible NFTs. Should a user connect that wallet to this malicious copycat server, the perpetrators could potentially steal any NFTs or tokens held within the wallet.


Such scams have accelerated in number in recent months as attackers use hijacked accounts to spread malicious “wallet draining” links. Many notable projects and artists have faced such hacks on Twitter—including Beeple himself in May—but these scams have also been perpetrated on Discord and Instagram as well.


When a user connects to the smart contract—that is, the computer code behind NFT projects and decentralized apps—and allows broad access permissions to what they believe is a trusted application, they may inadvertently let attackers steal assets from their wallet.


Beeple did not note any specific examples of users claiming to have been impacted by the malicious Discord links. Decrypt reached out to both Beeple and Discord representatives for additional information but did not immediately hear back from either.


While many Web3 projects and creators use Discord as a way to build community and interact with supporters, the gaming-centric chat service has also become a punching bag from outspoken creators and collectors that have been impacted by such scams.


“Once again, massive thanks again to Discord for being garbage,” Beeple included in his tweet today. In June, Bored Ape Yacht Club co-creator Gordon Goner (a.k.a. Wylie Aronow) shared his own view after the project’s Discord was compromised, tweeting, “Discord isn’t working for Web3 communities. We need a better platform that puts security first.”


Last year, Discord founder CEO Jason Citron teased work on native integration of crypto wallets, but faced backlash—especially from vocal gamers—about the plan.


Days later, Citron tweeted that Discord had “no current plans to ship this internal concept.” Currently, Discord servers rely on third-party automated wallet verification services (bots) instead of Discord-provided tools.


免责声明:本文章仅代表作者个人观点,不代表本平台的立场和观点。本文章仅供信息分享,不构成对任何人的任何投资建议。用户与作者之间的任何争议,与本平台无关。如网页中刊载的文章或图片涉及侵权,请提供相关的权利证明和身份证明发送邮件到support@aicoin.com,本平台相关工作人员将会进行核查。

分享至:
APP下载

X

Telegram

Facebook

Reddit

复制链接