cryptomaniac_xxx (OP)
|
|
September 01, 2021, 10:38:22 AM Merited by Charles-Tim (1) |
|
Not sure if this has been shared here, OpenSea users are being targeted in an ongoing and aggressive Discord phishing attack to steal cryptocurrency funds and NFTs.
Over the past week, threat actors have been lurking in OpenSea's Discord server, pretending to be official support representatives for the site.
These fake support reps provide private "support" to OpenSea users needing help, which invariably leads to the loss of cryptocurrency and NFT collectibles stored in the victim's MetaMask wallets. https://www.bleepingcomputer.com/news/security/fake-opensea-support-staff-are-stealing-cryptowallets-and-nfts/Actually one user has already fallen for this trick a total of 4.5 ETH and more. https://twitter.com/_jeffnicholas_/status/1430046727843717125Just not NFT's, but everything that involves crypto and you need help, don't panic and take a deep breath. Because once you don't think logically, you will fall for the scammers trip, like giving you sense of security that they will help you.
|
|
|
|
|
|
|
There are several different types of Bitcoin clients. The most secure are full nodes like Bitcoin Core, which will follow the rules of the network no matter what miners do. Even if every miner decided to create 1000 bitcoins per block, full nodes would stick to the rules and reject those blocks.
|
|
|
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
|
|
|
Jating
|
|
September 01, 2021, 11:30:26 AM |
|
Damn, I feel very terrible for the guy who lost that big amount of ETH to the scammers.
Yeah, this criminals are always one step of the game and play with our emotions and then boom!!!, they got you and you really don't know what hit you in the face.
So this is a warning again for everyone, to be very extra careful on who we dealing with and don't give them any chance to take your hard earn crypto.
|
|
|
|
Oshosondy
Legendary
Offline
Activity: 1442
Merit: 1126
Gamble responsibly
|
|
September 01, 2021, 11:31:12 AM |
|
These fake support reps provide private "support" to OpenSea users needing help
But how is this impersonation leading to scam? I hope seed phrase of the wallet would be demanded for? I will like to know more about how this scam work, but I know that if something is wrong that can lead to scam, the person should have known and avoid going further with the fake OpenSea representatives, but this could be difficult to know for newbies.
|
|
|
|
Igebotz
Staff
Legendary
Offline
Activity: 1386
Merit: 1656
The Naija & BSFL Sherrif 📛
|
|
September 01, 2021, 03:38:26 PM |
|
I hope seed phrase of the wallet would be demanded for?
He wasn't hacked, but he did give his private key to scammers because that was the only way a third party could access his ledger wallets. Someone with 4.4 ETH and NFT knowledge shouldn't have made this kind of mistake in the first place, and I'm not sure any newbies with wallet knowledge would give out private keys. Legitimate assistance will never demand your private keys or any other sensitive information. Or the seed phrase was stolen through a phising metamask
|
|
|
|
vv181
Legendary
Offline
Activity: 1932
Merit: 1273
|
|
September 01, 2021, 04:26:18 PM |
|
But how is this impersonation leading to scam?
I hope seed phrase of the wallet would be demanded for?
I will like to know more about how this scam work, ~snip
Dude you can just open the article above to see how it happens.
~Someone with 4.4 ETH and NFT knowledge shouldn't have made this kind of mistake in the first place, and I'm not sure any newbies with wallet knowledge would give out private keys.~
I don't think the amount someone has, have any correlation with how knowledgeable they are in this space. I guess the NFT and what's recently happening in the cryptocurrencies boom really make people skip the basic part of how cryptocurrencies work. They didn't acknowledge the sovereignty part of cryptocurrencies rather they instead just straight fomo'ing in this space. I wish that what made people get into this space is how beautiful this space innovate the world instead of just wanting to maximize their income/profit. Or at least the financial opportunities they could get comes with the basic part of how cryptocurrencies should works.
|
|
|
|
anu1908
|
|
September 01, 2021, 06:51:32 PM |
|
to be fair, it is quite easy to impersonate someone on discord (just like on telegram). but that doesn't mean anyone should just forget about it. it should be common sense by now that sending seed pkey etc to others is something you should never do. even if the user is legit, they won't ask you about something like that. all in all, we should all learn from this.
|
|
|
|
Taskford
|
|
September 01, 2021, 10:29:49 PM |
|
See so many the same attempts made by those scammers everywhere so its good for people to verify who they talk especially if they have problems on their accounts and also they should remember that support will never go message first so verify is the key since scammers/impersonators do that to scam people also be more aware and treat as a huge red flag if they ask your private key,seedphrase or any important things unto your account.
|
| . .Duelbits. | │ | | │ | ▄▄█▄▄░░▄▄█▄▄░░▄▄█▄▄ ███░░░░███░░░░███ ▀░░░▀░░▀░░░▀░░▀░░░▀ ▄░░░░░░░░░░░░ ▀██████████ ░░░░░███░░░░▀ ░░█░░░███▄█░░░█ ░░██▌░░███░▀░░██▌ ░█░██░░███░░░█░██ ░█▀▀▀█▌░███░░█▀▀▀█▌ ▄█▄░░░██▄███▄█▄░░▄██▄ ▄███▄ ░░░░▀██▄▀ | . REGIONAL SPONSOR | | ███▀██▀███▀█▀▀▀▀██▀▀▀██ ██░▀░██░█░███░▀██░███▄█ █▄███▄██▄████▄████▄▄▄██ ██▀ ▀███▀▀░▀██▀▀▀██████ ███▄███░▄▀██████▀█▀█▀▀█ ████▀▀██▄▀█████▄█▀███▄█ ███▄▄▄████████▄█▄▀█████ ███▀▀▀████████████▄▀███ ███▄░▄█▀▀▀██████▀▀▀▄███ ███████▄██▄▌████▀▀█████ ▀██▄███▀██▄█▄▄▄██▄████▀ ▀▀██████████▄▄███▀▀ ▀▀▀▀█▀▀▀▀ | . EUROPEAN BETTING PARTNER | |
|
|
|
Oshosondy
Legendary
Offline
Activity: 1442
Merit: 1126
Gamble responsibly
|
|
September 02, 2021, 07:27:42 AM |
|
I wish that what made people get into this space is how beautiful this space innovate the world instead of just wanting to maximize their income/profit. Or at least the financial opportunities they could get comes with the basic part of how cryptocurrencies should works.
I later had to click the link in the OP to read what actually happened, this scam is so tricky, it can be used against newbie, but people should know that synchronising wallet extension to another one be it of the same wallet type or different is like they are importing the wallet file into another wallet which can reveal everything about the person's wallet. So if a scammer can get hold of the QR code that can be used for the syncing, then they have getton hold of the wallet file, the scammers will have access to the wallet. People need to have the indept knowledge of cryptocurrencies and be careful when providing information to anyone. What should be provided to people is only address.
|
|
|
|
mexite
Jr. Member
Offline
Activity: 706
Merit: 4
|
|
September 04, 2021, 10:54:47 PM |
|
It's pathetic to see how some fraudsters are having a field day on unsuspecting users or complainants. It's a rule of thumb for any crypto enthusiasts to know that legit admins normally do not send DM first to members, and even if they would, they would mention it in the main chat for the user to check their pm.
I noticed that most scammers usually rush to my dm whether on Telegram or Discord, claiming admin, whenever I ask questions pertaining to the coin or raise a complaint on the ecosystem products.
Never give out your private key or send any token to anybody, these are obvious red flags from any "admin" requesting for such.
|
|
|
|
livingfree
|
|
September 05, 2021, 12:35:02 PM |
|
It is very common in discord channels. That's the same scenario in what I've seen in the Axie Infinity discord community.
There are many communities made on this NFT aside from the official community of Axie. Sadly, those who are not knowledgeable about this trick are likely to fall with their assets.
|
| │ | ███████████████████████ ███████████████████████ ███████████████████████ ███████████████████████ ███▀▀▀█████████████████ ███▄▄▄█████████████████ ███████████████████████ ███████████████████████ ███████████████████████ █████████████████████ ███████████████████ ███████████████ ████████████████████████ | ███████████████████████████ ███████████████████████████ ███████████████████████████ █████████▀▀██▀██▀▀█████████ █████████████▄█████████████ ████████▄█████████▄████████ █████████████▄█████████████ █████████████▄█▄███████████ ██████████▀▀█████████████ ██████████▀█▀██████████ ▀███████████████████▀ ▀███████████████▀ █████████████████████████ | | | O F F I C I A L P A R T N E R S ▬▬▬▬▬▬▬▬▬▬ ASTON VILLA FC BURNLEY FC | | | BK8? | | | . ..PLAY NOW.. |
|
|
|
$crypto$
Legendary
Offline
Activity: 2366
Merit: 1042
Smart is not enough, there must be skills
|
|
September 06, 2021, 06:25:57 PM |
|
It's no wonder that many will infiltrate Discord if users need support but surely scamers will offer themselves normally via PM and here we don't need to panic and never ask for help referring to PM first, cases like this do happen a lot. It's a shame for someone who has lost his assets at Opensea maybe this is because of his carelessness. Here I found a familiar opensea phishing site with the same script. See below. Phishing OpenSeaWebsite: https://xn--openea-ljb.com/wallets/
Archived: https://archive.ph/6WeUCCreated on 2021-09-06 Expires on 2022-09-06 Updated on 0000-12-31
|
|
|
|
R |
▀▀▀▀▀▀▀██████▄▄ ████████████████ ▀▀▀▀█████▀▀▀█████ ████████▌███▐████ ▄▄▄▄█████▄▄▄█████ ████████████████ ▄▄▄▄▄▄▄██████▀▀ | LLBIT | | | 4,000+ GAMES███████████████████ ██████████▀▄▀▀▀████ ████████▀▄▀██░░░███ ██████▀▄███▄▀█▄▄▄██ ███▀▀▀▀▀▀█▀▀▀▀▀▀███ ██░░░░░░░░█░░░░░░██ ██▄░░░░░░░█░░░░░▄██ ███▄░░░░▄█▄▄▄▄▄████ ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀ | █████████ ▀████████ ░░▀██████ ░░░░▀████ ░░░░░░███ ▄░░░░░███ ▀█▄▄▄████ ░░▀▀█████ ▀▀▀▀▀▀▀▀▀ | █████████ ░░░▀▀████ ██▄▄▀░███ █░░█▄░░██ ░████▀▀██ █░░█▀░░██ ██▀▀▄░███ ░░░▄▄████ ▀▀▀▀▀▀▀▀▀ |
| | | ██░░░░░░░░░░░░░░░░░░░░░░██ ▀█▄░▄▄░░░░░░░░░░░░▄▄░▄█▀ ▄▄███░░░░░░░░░░░░░░███▄▄ ▀░▀▄▀▄░░░░░▄▄░░░░░▄▀▄▀░▀ ▄▄▄▄▄▀▀▄▄▀▀▄▄▄▄▄ █░▄▄▄██████▄▄▄░█ █░▀▀████████▀▀░█ █░█▀▄▄▄▄▄▄▄▄██░█ █░█▀████████░█ █░█░██████░█ ▀▄▀▄███▀▄▀ ▄▀▄▀▄▄▄▄▀▄▀▄ ██▀░░░░░░░░▀██ | | | | | | | . ▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄ ░▀▄░▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄░▄▀ ███▀▄▀█████████████████▀▄▀ █████▀▄░▄▄▄▄▄███░▄▄▄▄▄▄▀ ███████▀▄▀██████░█▄▄▄▄▄▄▄▄ █████████▀▄▄░███▄▄▄▄▄▄░▄▀ ████████████░███████▀▄▀ ████████████░██▀▄▄▄▄▀ ████████████░▀▄▀ ████████████▄▀ ███████████▀ | ▄▄███████▄▄ ▄████▀▀▀▀▀▀▀████▄ ▄███▀▄▄███████▄▄▀███▄ ▄██▀▄█▀▀▀█████▀▀▀█▄▀██▄ ▄██▀▄██████▀████░███▄▀██▄ ███░█████████▀██░████░███ ███░████░█▄████▀░████░███ ███░████░███▄████████░███ ▀██▄▀███░█████▄█████▀▄██▀ ▀██▄▀█▄▄▄██████▄██▀▄██▀ ▀███▄▀▀███████▀▀▄███▀ ▀████▄▄▄▄▄▄▄████▀ ▀▀███████▀▀ | | OFFICIAL PARTNERSHIP FAZE CLAN SSC NAPOLI | | |
|
|
|
pealr12
|
|
September 06, 2021, 06:45:48 PM |
|
This is worrisome to say the list, the more I read about different hacks the more I get scared and wonder how easy this hackers can do so much damage, honestly we are needs to be very observant and careful, this scammers are very cunning.
|
|
|
|
stomachgrowls
|
|
September 06, 2021, 08:33:47 PM |
|
These fake support reps provide private "support" to OpenSea users needing help
But how is this impersonation leading to scam? I hope seed phrase of the wallet would be demanded for? I will like to know more about how this scam work, but I know that if something is wrong that can lead to scam, the person should have known and avoid going further with the fake OpenSea representatives, but this could be difficult to know for newbies. Most likely this would be the nearest possible thing happened on when someone do get hacked specially if there are impersonating kind of scenario where scammers pretending to be part of the team and contacting someone or make out some PM's and trying to deceived and if you arent really that too careful then you would get hooked up on the scam. Most scammers will really redirect you into some site which is tending to phish for your seedphrase and this is where people's common sense would differ and got surprised that there are still whom do really get victimized on how the hell they do consider on giving it out on the first place. This is a lesson learned for you OP.
|
| . .Duelbits. | │ | | │ | ▄▄█▄▄░░▄▄█▄▄░░▄▄█▄▄ ███░░░░███░░░░███ ▀░░░▀░░▀░░░▀░░▀░░░▀ ▄░░░░░░░░░░░░ ▀██████████ ░░░░░███░░░░▀ ░░█░░░███▄█░░░█ ░░██▌░░███░▀░░██▌ ░█░██░░███░░░█░██ ░█▀▀▀█▌░███░░█▀▀▀█▌ ▄█▄░░░██▄███▄█▄░░▄██▄ ▄███▄ ░░░░▀██▄▀ | . REGIONAL SPONSOR | | ███▀██▀███▀█▀▀▀▀██▀▀▀██ ██░▀░██░█░███░▀██░███▄█ █▄███▄██▄████▄████▄▄▄██ ██▀ ▀███▀▀░▀██▀▀▀██████ ███▄███░▄▀██████▀█▀█▀▀█ ████▀▀██▄▀█████▄█▀███▄█ ███▄▄▄████████▄█▄▀█████ ███▀▀▀████████████▄▀███ ███▄░▄█▀▀▀██████▀▀▀▄███ ███████▄██▄▌████▀▀█████ ▀██▄███▀██▄█▄▄▄██▄████▀ ▀▀██████████▄▄███▀▀ ▀▀▀▀█▀▀▀▀ | . EUROPEAN BETTING PARTNER | |
|
|
|
joniboini
Legendary
Offline
Activity: 2184
Merit: 1792
|
|
September 07, 2021, 01:14:34 AM |
|
how easy this hackers can do so much damage, honestly we are needs to be very observant and careful, this scammers are very cunning.
To be honest it's not that sophisticated. A guy just social engineers somebody so they give them the private key etc. If the victim improves their awareness and security practices, tricks like this can be avoided. If it is that easy then they'd be millionaires by now. It's not, a decent awareness and following good tips like don't share your seed online would be more than enough to protect your from attack like this.
|
| | . .Duelbits. | │ | ..........UNLEASH.......... THE ULTIMATE GAMING EXPERIENCE | │ | DUELBITS FANTASY SPORTS | ████▄▄▄█████▄▄▄ ░▄████████████████▄ ▐██████████████████▄ ████████████████████ ████████████████████▌ █████████████████████ ████████████████▀▀▀ ███████████████▌ ███████████████▌ ████████████████ ████████████████ ████████████████ ████▀▀███████▀▀ | . ▬▬ VS ▬▬ | ████▄▄▄█████▄▄▄ ░▄████████████████▄ ▐██████████████████▄ ████████████████████ ████████████████████▌ █████████████████████ ███████████████████ ███████████████▌ ███████████████▌ ████████████████ ████████████████ ████████████████ ████▀▀███████▀▀ | /// PLAY FOR FREE /// WIN FOR REAL | │ | ..PLAY NOW.. | |
|
|
|
Kemarit
Legendary
Offline
Activity: 3080
Merit: 1353
|
|
September 19, 2021, 06:28:02 AM |
|
how easy this hackers can do so much damage, honestly we are needs to be very observant and careful, this scammers are very cunning.
To be honest it's not that sophisticated. A guy just social engineers somebody so they give them the private key etc. If the victim improves their awareness and security practices, tricks like this can be avoided. If it is that easy then they'd be millionaires by now. It's not, a decent awareness and following good tips like don't share your seed online would be more than enough to protect your from attack like this. True, it sounds like the hackers or the vector attack is sophisticated, but it is not, they just used the old trick to get their victims fall for their trap. That's why it is very important to be on a lookout with this kind of attacks. And if you have some problems, before reaching out to anyone, just try to research what might be your issue, maybe you can solve it alone without any 'technical' help.
|
|
|
|
CrossroadBTC
Member
Offline
Activity: 182
Merit: 14
|
|
September 19, 2021, 06:41:13 AM |
|
This is why connecting wallets to Dex like exchange or platforms are risky, I always make sure I sent the token or coin that I want to exchange to a new wallet address first and use the new address not my very own wallet address that consists of many coins and tokens so even if hackers got the keys they will have empty wallet anyways
|
|
|
|
Kavelj22
Legendary
Offline
Activity: 1750
Merit: 1453
🔃EN>>AR Translator🔃
|
|
September 19, 2021, 09:23:20 PM |
|
This is why connecting wallets to Dex like exchange or platforms are risky, I always make sure I sent the token or coin that I want to exchange to a new wallet address first and use the new address not my very own wallet address that consists of many coins and tokens so even if hackers got the keys they will have empty wallet anyways
But why anybody should connect his wallet to an unknown third part? The answer comes when to know that he was already victim of a fake support from one of the biggest NFTs in the crypto-market. What shocked me the most is how someone knowledgeable about NFTs and cryptocurrencies who held 4.5 Eth get convinced that Opensea is offering support via Discord server. Scammers will always exist as many ignorant people hold big money without taking cautions of serious issues that may happen. This one is a great proof. Thanks OP for sharing the info. I will post about it my local board.
|
R |
▀▀▀▀▀▀▀██████▄▄ ████████████████ ▀▀▀▀█████▀▀▀█████ ████████▌███▐████ ▄▄▄▄█████▄▄▄█████ ████████████████ ▄▄▄▄▄▄▄██████▀▀ | LLBIT | │ | CRYPTO FUTURES | | | | | | | │ | 1,000x LEVERAGE | │ | COMPETITIVE FEES | │ | INSTANT EXECUTION | │ | . TRADE NOW |
|
|
|
Ultegra134
|
|
September 19, 2021, 09:35:36 PM |
|
I was recently targeted through Discord too. Was contacted through a few groups I had entered and posed as administrators who were eager to "assist" me. Even though it didn't regard the service you are referring to, in my case it was a phishing WalletConnect website, Discord and DeFi in general is fill of scammers.
Never respond to anyone you don't know, keep also in mind that administrators in Discord groups will rarely message you.
|
R |
▀▀▀▀▀▀▀██████▄▄ ████████████████ ▀▀▀▀█████▀▀▀█████ ████████▌███▐████ ▄▄▄▄█████▄▄▄█████ ████████████████ ▄▄▄▄▄▄▄██████▀▀ | LLBIT | │ | CRYPTO FUTURES | | | | | | | │ | 1,000x LEVERAGE | │ | COMPETITIVE FEES | │ | INSTANT EXECUTION | │ | . TRADE NOW |
|
|
|
Anonylz
|
|
September 20, 2021, 06:12:19 AM |
|
Very common with telegram platform, other project beside nft also suffers this type of fake admins contacting users through pm for assistance, I have blocked several of such fake admins on telegram since I know no admin of any project will private chat you first,
Unfortunately newbies to crypto space are still very vulnerable, most of them respond to all this fake admins support private chatting them for assistant and next thing they have falling victim of scam, and most people don't bother to read, there are lots of warning messages floating around telegram group to enlighten people but 80% of users don't pay attention to those messages and will end up a victim.
|
| . SECONDLIVE | | | │ | | | | | | │ | | | | ▄▄███████▄▄▄ ▄▄████████████████▄▄ ██████████████████████▄ ████████▀▀▀██████████████ ███████▌ ▀█████████████ ████████▀ ▀▀▄▄██▀▀▀██████████ ███████ ▀████████ ███████▄ ████████ ████████▄▄ ▄████████ ███████████▄▄▄▄██████████ ▀█████████████████████▀ ▀████████████████▀▀ ██████████████████████ |
|
|
|
|