Over 4k Solana users lost more than $4 million to phishing attacks last month

cyptouser10 months agoCryptocurrencies News141

Phishing scammers have siphoned off over $4 million from Solana wallets in December 2023, according to estimates posted on X by Scam Sniffer, a scams tracker. The attacks affected around 4,000 users, according to the Scam Sniffer.

The stolen assets include those robbed by the rainbow attacker through an airdrop phishing attack. The scammers employed “anti-simluation techniques” that prevented wallets from reflecting changed balances.

When unsuspecting victims tried to claim the airdrop fishing non-fungible tokens (NFTs), they signed malicious transactions allowing the attackers to drain their wallets. The airdrop phishing scammers stole $2.14 million from over 2,189 victims, according to Scam Sniffer.

Another notable scammer was the Solana node drainer, who victimized over 1,700 users and stole more than $2 million in less than two weeks. The node drainer used a Christmas phishing campaign to lure victims.

According to Scam Sniffer, the Solana node drainer bagged over $1 million in profit by converting stolen USDC to Ethereum (ETH) using AllBridge.

Unlike Ethereum, where most thefts happen due to approval issues, on Solana, the main phishing trick involves tricking people into making direct transfers. Solana does support transaction simulation, but some sneaky methods take advantage of anti-simulation measures and fake simulation results. This is done to confuse users and make them more likely to fall for malicious signature schemes.

What is more concerning, however, is that the Solana blockchain does not have a NFT blacklist system that prevents malicious actors from displaying them. This means that the attackers can continue with their phishing campaigns without needing to deploy new fake NFTs to lure victims.

Interestingly, these phishing attacks took place in the same month that Shakeeb Ahmed pleaded guilty to stealing $12 million by exploiting Solana decentralized finance (DeFi) applications in 2022. Ahmed’s guilty plea led to the first smart contract fraud conviction last month. Ahmed is scheduled to be sentenced in March 2024.

The content on this website comes from the Internet. Due to the inconvenience of proofreading the authenticity and accuracy of the copyright or content of some content, it may be temporarily impossible to confirm the authenticity and accuracy of the copyright or content. For copyright issues or other issues caused by this, please Call or email this site. It will be deleted or changed immediately after verification.

related articles

Traders rush to short Ether as Grayscale pulls its futures ETF plan

Traders rush to short Ether as Grayscale pulls its futures ETF plan

55966e89˃Ether traders have stacked up their short positions over the last 24 hours, just as Graysca...

Access Protocol launches $25,000 quest with Superboard to introduce transferable subscriptions

Access Protocol has launched a Subscription Quest initiative with Superboard to introduce its new tr...

Chainlink to handle on-chain NAV for Sygnum's $50 million tokenized Matter Labs treasury

Fidelity International and Sygnum have partnered with Chainlink to bring Net Asset Value (NAV) data...

Bitcoin network transaction fees temporarily soar to nearly $52

Bitcoin network transaction fees temporarily soar to nearly $52

55966e89˃The Bitcoin network is currently experiencing a sharp increase in network fees driven by 33...

Pudgy Penguin sells 1M plushies, Donald Trump making ‘NFTs hot again:’ Nifty Newsletter

55966e89˃​​Welcome to the latest edition of Cointelegraph’s Nifty Newsletter. Keep reading to stay u...

Nifty News: 3 Bored Apes gone phishing, fantasy.top fees beat Tron and more

Nifty News: 3 Bored Apes gone phishing, fantasy.top fees beat Tron and more

55966e89˃Bored Ape owner loses 3 rare NFTs to phishing attackA phishing attacker has pilfered three...