Fun

Ethereum Foundation email hacked to promote Lido staking phishing scam

News Feed - 2024-07-03 06:07:41

Christopher Roark2 hours agoEthereum Foundation email hacked to promote Lido staking phishing scamA hacker broke into the Ethereum Foundation’s email server and sent scam emails to 35,794 people, recording 81 subscriber email addresses in the process.2126 Total viewsListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksOn June 23, the Ethereum Foundation’s “update” email account was hacked and used to promote a phishing scam, according to a July 2 blog post from the foundation. The foundation has recovered the account, and the malicious emails are no longer being sent out.


According to the post, 35,794 scam emails were sent to the foundation’s subscribers and other individuals using its official updates@blog.ethereum.org email address. The foundation’s investigation led to the conclusion that no victims lost cryptocurrency from the attack. However, the email addresses of 81 subscribers may have been exposed to the attacker.


The emails contained a fake announcement stating that the Ethereum Foundation has partnered with the Lido decentralized autonomous organization (LidoDAO) to offer 6.8% yield on staked Ether (stETH), Wrapped Ether (WETH), or Ether (ETH) deposits. It told subscribers that staking would be “Protected and Verified by The Ethereum Foundation.”Ethereum Foundation hacker phishing email. Source: Ethereum Foundation


Users who clicked the “Begin Staking” button in the email were directed to a malicious web app, which advertised itself as a “Staking Launchpad.” Clicking the “Stake” button from within this app pushed a transaction to the user’s wallet. If the user had approved this transaction “their wallet would have been drained,” the post stated.Fake “Staking Launchpad” advertised by hacker. Source: Ethereum Foundation


When the malicious emails were discovered, the foundation responded by blocking the attacker from sending more emails. It also “closed off the malicious access path the threat actor had used to obtain access into the mailing list provider,” ensuring that the attacker could no longer gain access to the email address. And it sent out notices to various blacklists, Web3 wallet providers, and Cloudfare so that users could receive warnings if they attempted to navigate to the malicious site.


After further investigation, the Ethereum Foundation discovered that the attacker had uploaded a database containing new email addresses that were not part of the Ethereum Foundation’s subscriber list, implying that some users who were not on the list may have nevertheless received the scam emails. In addition, the attacker “exported the blog mailing list email addresses, which was a total of 3759 email addresses.”


The foundation attempted to determine if the attacker obtained any new email addresses from the exploit. It found that “the blog mailing list contained 81 email addresses that the threat actor did not previously have knowledge of, and the rest were duplicate addresses.”


Related:TON ecosystem flooded with phishing attacks, SlowMist warns


Luckily, the attacker appears to have gained no crypto loot from the attack. The foundation stated:“Analyzing on-chain transactions made to the threat actor between the time they sent out the email campaign and the time the malicious domain got blocked, appear to show that no victims lost funds during this specific campaign sent by the threat actor.”


Phishing campaigns are a common way for crypto users to lose their funds. On June 23, a MakerDAO member lost $11 million after making several mistaken token approvals, apparently after interacting with a fake web app. On June 26, a marketing email address for blockchain network Hadera Hashgraph was also hacked to send out scam emails.# Phishing# Ethereum# Cybersecurity# Scams# HacksAdd reaction

News Feed

What needs to happen for Ethereum (ETH) price to reach $4K?
Marcel Pechman1 hour agoWhat needs to happen for Ethereum (ETH) price to reach $4K?Ethereum’s Achilles heel is institutional adoption, scalability, and sustainable DApp ecosystem growth.743 Total views1 Total sharesLis
No Developed Nation Bans Cryptocurrencies, Telegram Founder Pavel Durov Warns Russia
No Developed Nation Bans Cryptocurrencies, Telegram Founder Pavel Durov Warns Russia Pavel Durov, founder of the messaging app Telegram, has criticized Bank of Russia’s prop
Bitwage Raises $1.5 Million in Latest Funding Round
Bitwage Raises $1.5 Million in Latest Funding Round Bitwage, the pioneer cryptocurrency-based payroll and invoicing company, has raised $1.5 million in its latest funding round. Th
Prashant Jha13 hours agoSEC–Ripple lawsuit cost XRP 3 years of adoption: LawyerCrypto lawyer John Deaton cited several instances where major crypto players, such as Coinbase, reached out to the SEC for regulatory clari
Turner Wright4 hours agoJudge says Sam Bankman-Fried’s lawyers have until Sept. 1 to request a trial postponement: ReportThough the judge reportedly said he would not necessarily grant a postponement, SBF’s lawyers h
Crypto influencers on notice after FTC bans fake likes and followers
Jesse Coghlan4 hours agoCrypto influencers on notice after FTC bans fake likes and followersNew rules from the FTC mean crypto influencers will face stiff fines for fake followers and likes, while celebrity testimonials
Nitin Kumar20 hours agoWeb3’s revolution: Why the digital wallet is the new marketing goldThe cookie-less internet presents an opportunity, not a risk. It has the ability to redefine and strengthen the connection and t
Bitcoin Transaction Fees Soar 550% in a Month, BCH, Dash Transactions Much Cheaper
Bitcoin Transaction Fees Soar 550% in a Month, BCH, Dash Transactions Much CheaperThe cost of sending a transaction over the Bitcoin network rose sharply over the past month, as the
Best Crypto to Buy as Derivatives Exchange CME Set to Launch XRP Futures
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Citigroup: Bitcoin Is at a Tipping Point, Could Become Preferred Currency for International Trade
Citigroup: Bitcoin Is at a Tipping Point, Could Become Preferred Currency for International Trade Citigroup says bitcoin is at a tipping point and the cryptocurr
Bitcoin miner bankruptcies will be less common this cycle — Hut8 CEO
Brayden Lindrea3 hours agoBitcoin miner bankruptcies will be less common this cycle — Hut8 CEOA slew of Bitcoin miners filed for bankruptcy in the crypto winter of 2022 but Hut 8 CEO Asher Genoot is adamant that things
Bittrex Global’s IEO Platform Starting Block Gears up for YellowHeart Debut
Bittrex Global’s IEO Platform Starting Block Gears up for YellowHeart Debut press release PRESS RELEASE. Bittrex Global, a leading digital asset exchange, welcomes the YellowHeart