Fun

Report: Bored Ape Yacht Club Discord Attacker May Have Been Involved in Previous NFT Phishing Scams

News Feed - 2022-06-08 01:06:40

Report: Bored Ape Yacht Club Discord Attacker May Have Been Involved in Previous NFT Phishing Scams


On June 4, 2022, the Bored Ape Yacht Club (BAYC) Discord server was compromised and a phishing scam targeted non-fungible token (NFT) collectors holding BAYC, Mutant Ape Yacht Club (MAYC), and Otherside NFTs. According to an analysis by the Web3 and blockchain auditing and security firm Certik, the BAYC Discord server attacker may have been involved in previous phishing attacks. Blockchain Security Firm Certik Analyzes the BAYC Discord Phishing Attack


While many NFTs are very expensive, it makes them all the more worthwhile for malicious attackers to steal them. This week the Bored Ape Yacht Club (BAYC) Discord server was breached and an attacker used a phishing scam to lure victims.


Certik, the Web3 and blockchain auditing and security firm, published an analysis of the attack and from the company’s account, the attacker may have been involved with previous phishing attempts. The attack occurred on Saturday and a total of 32 NFTs valued at roughly $360K were stolen from blue-chip NFT holders. “Our Discord servers were briefly exploited today,” the BAYC creators Yuga Labs wrote after the incident. “The team caught and addressed it quickly. About 200 ETH worth of NFTs appear to have been impacted. We are still investigating, but if you were impacted, email us at discord@yugalabs.io. As a reminder, we do not offer surprise mints or giveaways.”


The NFTs stolen stemmed from the Bored Ape Yacht Club (BAYC), the Bored Ape Kennel Club (BAKC), Mutant Ape Yacht Club (MAYC), and NFTs from the Otherdeed collection. Certik’s report says the phishing site was a “carbon copy of the official projects website, yet with subtle differences.”


There were no social media links on the site and there was a tab added titled “claim free land.” After some victims were hooked by the phony phishing ad, the attacker received a number of NFTs and then proceeded to sell them.


The attackers managed to acquire 142 ether and Certik notes that it is likely 100 ETH was sent to the mixing application Tornado Cash. Certik summarizes why the researchers believe some evidence shows that a fraction of ether the hacker acquired was sent to Tornado Cash and possibly sent to one address.




“Whilst it’s impossible to be certain that the 99.5 ETH redeemed by 0x2917… are the funds associated with today’s attack, it is certainly probable that these are the stolen funds post mixer due to the 20.5 ETH being sent to the depositor address,” Certik’s report notes.


The Certik researcher’s analysis adds: The majority of the funds were sent to [Externally Owned Account (EOA)] 0x5bC1…, which is where they remain at the time of writing.


The blockchain security firm says that links indicate that 0x5bC1 is likely “not only associated with the BAYC phishing attack today, but also previous phishing attacks.” The company mentioned the fact that BAYC was targeted on April 25, 2022, when an attacker compromised the NFT collection’s Instagram account.


At that time, the hacker got away with 888 ether worth of non-fungible tokens by posting a scam link to a fake airdrop. “Users were prompted to sign a ‘safeTransferFrom’ transaction,” Certik’s report concludes. Prior to the Instagram exploit at the end of April, on the first day of April, Mutant Ape Yacht Club #8,662 was stolen via a phishing scam posted to the Discord channel. The celebrity Seth Green recently fell victim to a phishing attack and lost his Bored Ape to the scam. Bored Ape #8,398 called “Fred” was supposed to play a role in Green’s new series called “White Horse Tavern.” Tags in this story attacker, BAKC, BAYC, Blue-Chip NFTS, Bored Ape, Bored Ape Yacht Club, certik, Certik analysis, Certik Report, Discord Server, ETH, Ethereum, Fake Airdrops, Hack, Instagram, Land Sale, MAYC, nft, NFTs, Otherdeed, Otherside, Otherside Land Sale, Phishing, phishing ad, phishing scam, Scam, Seth Green, Tornado cash, Yuga Labs


What do you think about the recent BAYC phishing scam? Let us know what you think about this subject in the comments section below. Jamie Redman


Jamie Redman is the News Lead at Bitcoin.com News and a financial tech journalist living in Florida. Redman has been an active member of the cryptocurrency community since 2011. He has a passion for Bitcoin, open-source code, and decentralized applications. Since September 2015, Redman has written more than 5,000 articles for Bitcoin.com News about the disruptive protocols emerging today. Digital Real Will Be Used by Banks in Brazil as Collateral to Issue Their Own Stablecoins NEWS | 2 hours ago Philippines Crypto Wallet Service Provider Coins.ph Partners With the PBA NEWS | 5 hours ago


Image Credits: Shutterstock, Pixabay, Wiki Commons, Otherside trailer, Previous articleBiggest Movers: SOL Slips 10% as Crypto Bears Return to Action  Next articleLedgible Closes $20M Series A Round With Key Institutional and Strategic Investors Disclaimer: This article is for informational purposes only. It is not a direct offer or solicitation of an offer to buy or sell, or a recommendation or endorsement of any products, services, or companies. Bitcoin.com does not provide investment, tax, legal, or accounting advice. Neither the company nor the author is responsible, directly or indirectly, for any damage or loss caused or alleged to be caused by or in connection with the use of or reliance on any content, goods or services mentioned in this article. Read disclaimerShow comments More Popular NewsIn Case You Missed ItCentral Bank of Brazil Confirms It Will Run a Pilot Test for Its CBDC This Year


The Central Bank of Brazil has confirmed that the institution will run a pilot test regarding the implementation of its proposed central bank digital currency (CBDC), the digital real. Roberto Campos Neto, president of the bank, also stated that this ... read more.Draft Law Regulating Aspects of Crypto Taxation Submitted to Russian Parliament SEC Risks Violating Admin Procedure Act by Rejecting Spot Bitcoin ETFs, Says Grayscale Survey: Adoption in Argentina Grows, With 12 out of 100 Adults Having Invested in Crypto Digital Ruble ‘Much Needed,’ Russia’s Central Bank Says, Won’t Delay Testing

News Feed

Bitcoin clings to $65K — More losses ahead for BTC price?
Zoltan Vardai7 hours agoBitcoin clings to $65K — More losses ahead for BTC price?Bitcoin price briefly dipped below the $65,000 mark as long-term BTC holders started selling. Can BTC price close the week above $65,600?
Consensys acquires Wallet Guard to enhance MetaMask security
Josh O"Sullivan10 hours agoConsensys acquires Wallet Guard to enhance MetaMask securityConsensys integrates Wallet Guard to boost MetaMask’s security, aiming to drive user fund losses to zero amid rising Web3 threats.2
William Suberg39 minutes agoBitcoin could be worth less than $20K in 2023, US inflation data saysBitcoin, taking inflation into account, has in fact been a solid store of value since 2017, commentators conclude.468 Total
Ideaology’s IDEA Token – Uniting Freelancers and Startup Innovators
Ideaology’s IDEA Token - Uniting Freelancers and Startup Innovators The term “ecosystem” flies on the radar within the blockchain and business deve
Brayden Lindrea5 hours agoBitcoin-friendly El Salvador can become ‘Singapore of the Americas’ — VanEck adviserVanEck strategy adviser Gabor Gurbacs expects a wave of new investment capital and immigration will push
Anthropic launches external tool use for Claude AI, enabling stock ticker integrations and more
Tristan Greene4 hours agoAnthropic launches external tool use for Claude AI, enabling stock ticker integrations and moreThe integration could have huge implications for denizens of the cryptocurrency community.655 Total
Tristan Greene5 hours agoTencent unveils ChatGPT rival in China amid continuing US AI chip banDespite heavy government regulations and ongoing struggles with hardware sourcing, Tencent’s large language model has been r
Robert Kiyosaki Warns US Dollar ‘About to Implode’ — Advises Buying Bitcoin, Ethereum, Solana
Robert Kiyosaki Warns US Dollar "About to Implode" — Advises Buying Bitcoin, Ethereum, Solana The famous author of the best-selling book Rich Dad Poor Dad, Robert Kiyosaki, has w
XRP Price Breakdown below $2: Analyst Reveals Next Major Support
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Shiba Inu Head And Shoulders Pattern Signals 540% Upshoot To New All-Time Highs
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
CoinDeal Obtains in-Principle Approval for Maltese Class 4 VFA License
CoinDeal Obtains in-Principle Approval for Maltese Class 4 VFA License PRESS RELEASE. CoinDeal is pleased to announce that it is now the first publicly known com
John McAfee Announces Privacy Coin – Airdrop Today
John McAfee Announces Privacy Coin – Airdrop Today2020 has been a turbulent year for the cryptocurrency market, but it has established the resilience of blockchain technology. Des