Bitcoin Forum
April 20, 2024, 04:19:55 AM *
News: Latest Bitcoin Core release: 26.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: MyEtherWallet hacked  (Read 207 times)
anigoweb (OP)
Member
**
Offline Offline

Activity: 364
Merit: 20


View Profile
April 24, 2018, 02:31:56 PM
 #1

Be careful.

Details: https://www.reddit.com/r/MyEtherWallet/comments/8ek0jj/think_i_got_scammedphishedhacked/
1713586795
Hero Member
*
Offline Offline

Posts: 1713586795

View Profile Personal Message (Offline)

Ignore
1713586795
Reply with quote  #2

1713586795
Report to moderator
"Bitcoin: mining our own business since 2009" -- Pieter Wuille
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
mithrim
Sr. Member
****
Offline Offline

Activity: 434
Merit: 436


View Profile
April 24, 2018, 03:13:41 PM
 #2

I strongly advise using Cryptonite by MetaCert!
It's a Chrome plugin that warns you if you get redirected to a phishing site. In addition MetaMask, a hardware wallet and/or an offline version of MyEtherWallet.

NEVER ever use only the private key/json file. This will get you most likely scammed/phished and remember: once an address is compromised, you'll never be able to use it again without risking all your assets!


For those who are interested:
How To Run MyEtherWallet Offline and Locally
  • Downloading and installing
  • Running MyEtherWallet
Lektai
Jr. Member
*
Offline Offline

Activity: 88
Merit: 1


View Profile WWW
April 25, 2018, 02:39:35 PM
 #3

To make things easier for you... I'll advise you import your mew wallet to imtoken and monitor your funds there..with this you do not have to log in to mew via mew website...
Am i communicating??
TryNinja
Legendary
*
Offline Offline

Activity: 2814
Merit: 6962



View Profile WWW
April 25, 2018, 07:40:50 PM
 #4

I strongly advise using Cryptonite by MetaCert!
It's a Chrome plugin that warns you if you get redirected to a phishing site. In addition MetaMask, a hardware wallet and/or an offline version of MyEtherWallet.
I already suggested this before and it would helpagainst phising websites like MyEthreWallet dot com, but would this work if the official MEW domain (or the DNS in this case) was hijacked? According to the reddit post OP linked above, the user "Used EAL" (which is a similar extension) to check if the url was correct. But this was not the issue and that's why he still got scammed.

The two best solutions would be to always check the SSL certificate right before the URL or by always running the wallet locally from the source code.

.
.HUGE.
▄██████████▄▄
▄█████████████████▄
▄█████████████████████▄
▄███████████████████████▄
▄█████████████████████████▄
███████▌██▌▐██▐██▐████▄███
████▐██▐████▌██▌██▌██▌██
█████▀███▀███▀▐██▐██▐█████

▀█████████████████████████▀

▀███████████████████████▀

▀█████████████████████▀

▀█████████████████▀

▀██████████▀▀
█▀▀▀▀











█▄▄▄▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
.
CASINSPORTSBOOK
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀█











▄▄▄▄█
trupero_uno
Jr. Member
*
Offline Offline

Activity: 210
Merit: 1


View Profile
April 25, 2018, 09:03:45 PM
 #5

I use so far Metamask as this is one of recommended way from MEW, usually when a user open a MEW then to login then provided some recommendations from MEW. So far I use Metamask is very easy to use, and I see lot of people also use this metamask now. Hope this metamask to be still safe and they are always updating their security.
9jaflick
Sr. Member
****
Offline Offline

Activity: 728
Merit: 254



View Profile
April 25, 2018, 11:09:55 PM
 #6

This issue has been resolved already,  it only happens for few hours, I think all is clear now.
pooya87
Legendary
*
Offline Offline

Activity: 3430
Merit: 10492



View Profile
April 26, 2018, 04:39:48 AM
 #7

This issue has been resolved already,  it only happens for few hours, I think all is clear now.

true but it proves once again that using web wallets is never safe. what happened here for a few hours can happen again at any time. it may be tomorrow, or it may be years from now but the risk always exists when you are visiting a website for your wallet and enter your private keys there. and this is not the only risk! there are lots more.

.
.BLACKJACK ♠ FUN.
█████████
██████████████
████████████
█████████████████
████████████████▄▄
░█████████████▀░▀▀
██████████████████
░██████████████
████████████████
░██████████████
████████████
███████████████░██
██████████
CRYPTO CASINO &
SPORTS BETTING
▄▄███████▄▄
▄███████████████▄
███████████████████
█████████████████████
███████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
███████████████████████
█████████████████████
███████████████████
▀███████████████▀
█████████
.
jseverson
Hero Member
*****
Offline Offline

Activity: 1834
Merit: 759


View Profile
April 26, 2018, 06:51:06 AM
 #8

The two best solutions would be to always check the SSL certificate right before the URL or by always running the wallet locally from the source code.

To be fair, there was apparently a security warning, and users ignored it. Few people seem to be aware of what SSL certificates are for, sadly.

But yeah, for newbies, the internet is a very dangerous place, and you should never ignore warnings even if you're absolutely sure you're on the correct URL. It was a DNS poisoning attack, which could happen to any site. If there's a certificate problem and you don't know how to deal with it, walk away.

TryNinja
Legendary
*
Offline Offline

Activity: 2814
Merit: 6962



View Profile WWW
September 28, 2018, 01:36:32 PM
 #9

I've dealt with this before. I got an email notification about depositing MyEtherWallet and a link to the wallet and thereby my private key was stolen . Beware of phishing sites. Enter the site address by hand or from saved bookmarks.
Well, that's a different case. You just visited a different website that looks like MEW. OP's got scammed even that he was in the legit MEW website. Hackers had taken control of the DNS entry and managed to make the MyEtherWallet.com domain lead to a different website.

Anyways, this happened 5 months ago.

.
.HUGE.
▄██████████▄▄
▄█████████████████▄
▄█████████████████████▄
▄███████████████████████▄
▄█████████████████████████▄
███████▌██▌▐██▐██▐████▄███
████▐██▐████▌██▌██▌██▌██
█████▀███▀███▀▐██▐██▐█████

▀█████████████████████████▀

▀███████████████████████▀

▀█████████████████████▀

▀█████████████████▀

▀██████████▀▀
█▀▀▀▀











█▄▄▄▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
.
CASINSPORTSBOOK
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀█











▄▄▄▄█
BQ
Member
**
Offline Offline

Activity: 616
Merit: 53

CoinMetro - the future of exchanges


View Profile
September 28, 2018, 08:17:36 PM
 #10

is this again like that DNS redirect thing? stupid to enter details even if certificate isn't there, why risk it?  Sad

5 EUR free crypto on signup! XCM exchange token ⚜⚜⚜  CoinMetro - Copy Trading - Margin - 0% maker fee  ⚜⚜⚜ - generate €500 volume in July for a chance to win €100!
TryNinja
Legendary
*
Offline Offline

Activity: 2814
Merit: 6962



View Profile WWW
September 28, 2018, 08:22:15 PM
 #11

is this again like that DNS redirect thing? stupid to enter details even if certificate isn't there, why risk it?  Sad
Because some newbier users usually think that if the domain is right, everything is right. Even with the "not secure" warning and invalid certificate.

.
.HUGE.
▄██████████▄▄
▄█████████████████▄
▄█████████████████████▄
▄███████████████████████▄
▄█████████████████████████▄
███████▌██▌▐██▐██▐████▄███
████▐██▐████▌██▌██▌██▌██
█████▀███▀███▀▐██▐██▐█████

▀█████████████████████████▀

▀███████████████████████▀

▀█████████████████████▀

▀█████████████████▀

▀██████████▀▀
█▀▀▀▀











█▄▄▄▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
.
CASINSPORTSBOOK
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀█











▄▄▄▄█
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!