Cryptocurrency News

Metamask Users Targeted By New Phishing Campaign

2022.08.01 21:34

Metamask Users Targeted By New Phishing Campaign
Metamask Users Targeted By New Phishing Campaign

Halborn, a blockchain cybersecurity company, has issued an alert regarding a fresh phishing scam targeting the users of leading cryptocurrency wallet MetaMask.

Tricked into Giving Passphrases

Halborn’s Technical Education Specialist, Luis Lubeck, published a blog post on July 28th, breaking down the newest email phishing campaign targeting MetaMask users. The scam centers around misleading users, thereby tricking them into give up their passphrases.

The phishing email “informs” users that they need to verify their wallets. To do this, users are prompted to click a malicious “call to action” button, which leads to a fake website requesting a user’s seed phrase. Once the seed is entered, the website forwards to the MetaMask wallet, which is then emptied by the malicious program.

Attention to Detail Is Key

Halborn notes that the email appears genuine at first glance, as the scammers mimic MetaMask’s visual identity, including its header and logo. User instructions on how to comply with ‘know your customer (KYC)’ requirements for wallet verification also resembles the company’s typical communication.

However, despite these similarities, Halborn highlighted a few warning signs, oh which the two most noticeable were misspellings, and the sender’s email address, which was not the official MetaMask account.

The phishing emails were sent through a phony domain called “metamaks.auction.The security company further emphasized that the message lacked customization, such as addressing users by specific, individual names—a classic red flag.

Not the First Attack on Crypto Wallets

This latest phishing attempt is not the only MetaMask vulnerability to have been found by the Halborn firm. In June, the firm’s researchers revealed that users’ private crypto wallet could be found unencrypted on a computer hard drive. Following the revelation, MetaMask patched the exploit from extension versions 10.11.3 onward.

In February, malware called ‘Mars Stealer’ was found to be targeting browser-based cryptocurrency wallets like MetaMask, Coinbase (NASDAQ:COIN) Wallet, Nifty Wallet, Ronin Wallet, MEW CX, Binance Chain Wallet, TronLink, and approximately 40 other crypto wallets.

In April, MetaMask warned the public about phishing attacks targeting Apple’s ‘iCloud’ service. If a user had enabled automatic backups for application data, the seed phrase or “password-encrypted MetaMask vault” would be stored on iCloud, thereby imposing severe security risks for iPhone, Mac, and iPad users.

On the Flipside

  • Non-custodial wallets ensure that users’ assets and transactions are safe from censorship or confiscation.
  • On the other hand, non-custodial wallets place high levels of responsibility upon owners to protect their private keys. The lack of a middleman, as found in traditional banking, means that all transactions are irreversible.

Why You Should Care

  • MetaMask is the world’s leading non-custodial crypto wallet with more than 30 million monthly active users.
  • Cryptocurrency scammers have stolen over $1 billion from 46,000 people since the start of 2021, says CNN.

For more information on MetaMmask and how it works, check out:

A Beginner’s Guide to MetaMask: What Is It and How Does It Work?

Cardano ranks as the top target for phishing attacks – find out more below:

Cardano Among Top Targets of Phishing Attacks Ahead of Vasil Fork

Continue reading on DailyCoin

Source

Related Articles

Leave a Reply

Back to top button
bitcoin
Bitcoin (BTC) $ 104,079.89 1.87%
ethereum
Ethereum (ETH) $ 3,853.69 2.11%
xrp
XRP (XRP) $ 2.48 3.87%
tether
Tether (USDT) $ 1.00 0.00%
bnb
BNB (BNB) $ 712.36 1.07%
solana
Solana (SOL) $ 217.43 0.03%
dogecoin
Dogecoin (DOGE) $ 0.384549 3.18%
usd-coin
USDC (USDC) $ 0.999913 0.01%
staked-ether
Lido Staked Ether (STETH) $ 3,850.52 2.20%
cardano
Cardano (ADA) $ 1.02 3.90%
tron
TRON (TRX) $ 0.272502 3.73%
avalanche-2
Avalanche (AVAX) $ 46.39 4.56%
chainlink
Chainlink (LINK) $ 27.03 1.99%
wrapped-steth
Wrapped stETH (WSTETH) $ 4,572.32 2.70%
shiba-inu
Shiba Inu (SHIB) $ 0.000026 3.26%
the-open-network
Toncoin (TON) $ 5.72 3.09%
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 103,795.81 2.13%
sui
Sui (SUI) $ 4.56 3.21%
stellar
Stellar (XLM) $ 0.428595 1.85%
polkadot
Polkadot (DOT) $ 8.19 4.40%
hedera-hashgraph
Hedera (HBAR) $ 0.294466 4.90%
weth
WETH (WETH) $ 3,851.70 2.27%
bitcoin-cash
Bitcoin Cash (BCH) $ 515.90 2.32%
uniswap
Uniswap (UNI) $ 15.64 0.77%
pepe
Pepe (PEPE) $ 0.000021 5.80%
leo-token
LEO Token (LEO) $ 9.67 1.84%
litecoin
Litecoin (LTC) $ 116.55 1.14%
hyperliquid
Hyperliquid (HYPE) $ 25.36 6.61%
near
NEAR Protocol (NEAR) $ 6.16 8.44%
wrapped-eeth
Wrapped eETH (WEETH) $ 4,068.36 2.22%
aptos
Aptos (APT) $ 12.83 3.53%
bitget-token
Bitget Token (BGB) $ 4.34 14.97%
ethena-usde
Ethena USDe (USDE) $ 1.00 0.12%
internet-computer
Internet Computer (ICP) $ 11.90 2.70%
aave
Aave (AAVE) $ 369.04 1.46%
usds
USDS (USDS) $ 0.999418 0.02%
crypto-com-chain
Cronos (CRO) $ 0.187588 4.10%
ethereum-classic
Ethereum Classic (ETC) $ 31.47 3.80%
polygon-ecosystem-token
POL (ex-MATIC) (POL) $ 0.54962 4.87%
vechain
VeChain (VET) $ 0.054307 5.25%
render-token
Render (RENDER) $ 8.30 4.36%
fetch-ai
Artificial Superintelligence Alliance (FET) $ 1.58 2.41%
monero
Monero (XMR) $ 220.05 2.21%
mantle
Mantle (MNT) $ 1.18 2.29%
arbitrum
Arbitrum (ARB) $ 0.931541 3.23%
bittensor
Bittensor (TAO) $ 523.42 0.26%
mantra-dao
MANTRA (OM) $ 4.05 6.37%
filecoin
Filecoin (FIL) $ 6.08 4.35%
whitebit
WhiteBIT Coin (WBT) $ 25.00 0.91%
kaspa
Kaspa (KAS) $ 0.13622 2.72%