
{"id":13286,"date":"2024-10-11T19:34:06","date_gmt":"2024-10-11T19:34:06","guid":{"rendered":"https:\/\/mycryptomania.com\/?p=13286"},"modified":"2024-10-11T19:34:06","modified_gmt":"2024-10-11T19:34:06","slug":"crypto-investor-loses-36m-to-permit-phishing-scheme","status":"publish","type":"post","link":"https:\/\/mycryptomania.com\/?p=13286","title":{"rendered":"Crypto Investor Loses $36M to Permit Phishing Scheme"},"content":{"rendered":"<p>A recent cyberattack has led to an unsuspecting crypto investor reportedly losing 15,079 fwdETH, worth roughly $36 million.<\/p>\n<p>In the incident, described by security experts as a permit phishing scam, the bad actor tricked the user into unknowingly signing a malicious signature, which gave the thief full access to the individual\u2019s funds.<\/p>\n<h2>How it Happened<\/h2>\n<p>Scam Sniffer, a Web3 anti-scam platform, broke the news in an October 11 <a href=\"https:\/\/x.com\/realScamSniffer\/status\/1844590237521203610\" target=\"_blank\" rel=\"noopener\">post<\/a> on X, sharing the addresses of the victim and the attacker.<\/p>\n<p>Five hours before the report surfaced, the victim, identified by the address 0xeab23c1e3776fad145e2e3dc56bcf739f6e0a393, signed a permit phishing signature, unknowingly authorizing the hacker to move their 15,079 fwdETH.<\/p>\n<p>The exploiter, linked to the address 0x0605edee6a8b8b553cae09abe83b2ebeb75516ec, immediately sold the tokens on the market, apparently causing the price of dETH, a related asset, to crash by over 90% within 24 hours.<\/p>\n<p>Chiming in on the incident, analyst roffett.eth <a href=\"https:\/\/x.com\/roffett_eth\/status\/1844585497626394774\" target=\"_blank\" rel=\"noopener\">warned<\/a> that the drop in the price of dETH had affected several decentralized finance (DeFi) protocols, particularly PAC Finance and Orbit Finance since the sell-off had allegedly triggered vulnerabilities in their systems.<\/p>\n<h2>The Ripple Effect on DeFi<\/h2>\n<p>Permit phishing is still relatively new in crypto circles. It comes from criminals exploiting a requirement in certain DeFi tokens or contracts for the user to approve so-called permit signatures that grant third parties the ability to interact with their wallets, including spending or transferring funds.<\/p>\n<p>Attackers usually create a fake website or interface that looks like a legitimate service or decentralized application (dApp) and then ask users to sign the \u201cpermit\u201d transaction. This is often disguised as a legitimate request, tricking users into granting full access to their assets.<\/p>\n<p>Such hacks exploit a lack of understanding around transaction permissions, allowing hackers to drain assets from even well-versed crypto users.<\/p>\n<p>This isn\u2019t the first time DeFi users have been targeted by phishing schemes. According to Scam Sniffer, something similar happened just 12 days earlier, with the victim in that <a href=\"https:\/\/cryptopotato.com\/over-20-crypto-hacks-in-september-2024-heres-how-much-was-stolen\/#:~:text=%2432.4%20million%20worth%20of%20spark%20wrapped%20ethereum%20(spweth)%20drained%20in%20a%20phishing%20attack%20on%20september%2027.\" target=\"_blank\" rel=\"noopener\">incident<\/a> losing 12,083 spWETH, which was then valued at about $32 million.<\/p>\n<p>Due to the growing instances of such attacks, experts are urging users to be extra cautious when interacting with unfamiliar links or signing transaction permissions.<\/p>\n<p>\u201cAlways double-check any signatures you\u2019re asked to sign, and avoid clicking on unknown links,\u201d Scam Sniffer posted as a reminder to the crypto community of the constant threat of phishing tricks.<\/p>\n<p>The post <a href=\"https:\/\/cryptopotato.com\/crypto-investor-loses-36m-to-permit-phishing-scheme\/\">Crypto Investor Loses $36M to Permit Phishing Scheme<\/a> appeared first on <a href=\"https:\/\/cryptopotato.com\/\">CryptoPotato<\/a>.<\/p>","protected":false},"excerpt":{"rendered":"<p>A recent cyberattack has led to an unsuspecting crypto investor reportedly losing 15,079 fwdETH, worth roughly $36 million. In the incident, described by security experts as a permit phishing scam, the bad actor tricked the user into unknowingly signing a malicious signature, which gave the thief full access to the individual\u2019s funds. How it Happened [&hellip;]<\/p>\n","protected":false},"author":0,"featured_media":13287,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[],"class_list":["post-13286","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-discovery"],"_links":{"self":[{"href":"https:\/\/mycryptomania.com\/index.php?rest_route=\/wp\/v2\/posts\/13286"}],"collection":[{"href":"https:\/\/mycryptomania.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mycryptomania.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"replies":[{"embeddable":true,"href":"https:\/\/mycryptomania.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=13286"}],"version-history":[{"count":0,"href":"https:\/\/mycryptomania.com\/index.php?rest_route=\/wp\/v2\/posts\/13286\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/mycryptomania.com\/index.php?rest_route=\/wp\/v2\/media\/13287"}],"wp:attachment":[{"href":"https:\/\/mycryptomania.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=13286"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mycryptomania.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=13286"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mycryptomania.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=13286"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}