Victim loses over $71 million worth of WBTC in purported 'address poisoning' attack

15天前
标签:比特币0274
文章来源: Theblock

Someone lost over $71 million worth of wrapped bitcoin (WBTC) in what appears to be an address poisoning attack.

The victim transferred 1,155 WBTC ($71.1 million) to the alleged attacker, according to on-chain transfers from the Etherscan blockchain explorer. 

A poisoning attack when the hacker conjures a wallet address similar to the victim's, either through vanity address services or through address mining, and spams the victim with numerous transactions. If the victim accidentally copies the hacker's fake address, they'll have transferred their funds to the hacker instead of to their own. 

The hacker's address has since been marked "fake" and "phishing" on the Ethereum blockchain explorer Etherscan. 

Wrapped bitcoin is an ERC-token pegged 1:1 with bitcoin so that it can be used in the Ethereum ecosystem. WBTC traded at $61,644.23 at 11:13 a.m. ET (15:13 UTC) on May 3, seeing a 3.95% of $2,338 in the past 24 hours, according to The Block Prices page

Attackers often mimic several of the first and last digits of a wallet address, which people frequently check when sending funds. 

Binance's former CEO Changpeng 'CZ' Zhao explained that such attacks can be deceptively effective after an August 2023 security incident. 

"The scammers are so good now they generate addresses with the same starting and ending letters, which is what most people check for when doing a crypto transfer," Zhao wrote on social media at the time. "In fact, many wallets hide the middle part of the address with '...' to make the UI look better. The scammer then use [sic] this address to send you dust transactions so that the address is shown in your wallet."

"Now, if you want to send to the legitimate address, you might just pick one previous transactions [sic] in your wallet and copy the address. You might just copy the wrong one," Zhao continued. "This is what happened yesterday, to a very experienced crypto operator."

Zhao added that the operator in the August incident noticed the fraudulent transaction and stopped the transfer of funds in time. 

Disclaimer: The Block is an independent media outlet that delivers news, research, and data. As of November 2023, Foresight Ventures is a majority investor of The Block. Foresight Ventures invests in other companies in the crypto space. Crypto exchange Bitget is an anchor LP for Foresight Ventures. The Block continues to operate independently to deliver objective, impactful, and timely information about the crypto industry. Here are our current financial disclosures.

© 2023 The Block. All Rights Reserved. This article is provided for informational purposes only. It is not offered or intended to be used as legal, tax, investment, financial, or other advice.

免责声明:本文章仅代表作者个人观点,不代表本平台的立场和观点。本文章仅供信息分享,不构成对任何人的任何投资建议。用户与作者之间的任何争议,与本平台无关。如网页中刊载的文章或图片涉及侵权,请提供相关的权利证明和身份证明发送邮件到support@aicoin.com,本平台相关工作人员将会进行核查。

评论

暂时没有评论,赶紧抢沙发吧!