There are more and more scams coming out on daily basis draining out the funds of users from their wallets and the recent one is for Metamask walllet.
According to one report the users who were having iCloud backup for app data it was also having the password encrypted metamask vault giving hackers access to your wallet and drain out the funds easily.
If your password was not strong enough it easily be brute forced and one user got scammed worth around $650k from this scam who was holding NFT's in his wallet which were all gone :
Original TweetThe user also received a call from fake Apple company asking for code which he gave and access to the wallet so this was extra mistake on his side
Got a phone call from Apple, literally from Apple (on my caller Id) called it back because I suspected fraud and it was an Apple number,” Iacovone tweeted. “So I believed them, they asked for a code that was sent to my phone and two seconds later my entire MetaMask was wiped.”
The Metamask has also confirmed it that it was being saved for those who have gave this permission on iCloud backup and now they have asked everyone to deny it and be safe :
The DeFi wallet provider said Sunday users who have iCloud enabled for iPhone application data were susceptible to hackers because the backups include their password-encrypted MetaMask vault.
“If your password isn’t strong enough and someone phishes your iCloud credentials, this can mean stolen funds,” MetaMask tweeted.
So this is just warning to all to be safe in every aspect because one wrong step can land all your funds in your wallet to the hackers as we are seeing day by day.Use hardware wallets more and your seeds stored on some safe offline storage with proper backup for them as this online services could easily be hacked.
Metamask iCloud phishing scam