Bitcoin Forum
November 05, 2024, 07:57:51 AM *
News: Latest Bitcoin Core release: 28.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1] 2 »  All
  Print  
Author Topic: New Scam Alert - Address Poisoining  (Read 284 times)
Bitcoin Smith (OP)
Sr. Member
****
Offline Offline

Activity: 1092
Merit: 334


Catalog Websites


View Profile WWW
January 12, 2023, 11:37:38 AM
Merited by elevates (1)
 #1

Scam alert: Metamask warns crypto users about address poisoning

While exploring the Binance news tab I found this article which highlights how a hacker is stealing the crypto assets by switching the address by matching the characters we normally use to send funds so beware of copying and pasting the recipient address no matter what kind of wallet your using and crosscheck all the characters not prefix and random alone.

I will quote the important part of the article and will leave the link below.

Quote
While the attempt would not give the hackers access to user wallets, people who may have gotten into the habit of copying their wallet address from the transaction history before sending digital asset balances could potentially send their funds to copycat addresses.
Because of this, the wallet provider warned users always to be careful and double-check their transactions before sending their balances. The firm highlighted that it would be best to check every single character of the wallet address to make sure that the funds will be sent to the correct wallet.

source: Scam alert: MetaMask warns crypto users about address poisoning

█▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
███████▄▄████▄▄░
████▄████▀▀▀▀█░███▄
██▄███▀████████▀████▄
█░▄███████████████████▄
█░█████████████████████
█░█████████████████████
█░█████████████████████
█░▀███████████████▄▄▀▀
██▀███▄████████▄███▀
████▀████▄▄▄▄████▀
███████▀▀████▀▀
█▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
BitList
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀█











▄▄▄▄█
█▀▀▀▀











█▄▄▄▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
.
REAL-TIME DATA TRACKING
CURATED BY THE COMMUNITY

.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀█











▄▄▄▄█
█▀▀▀▀











█▄▄▄▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
List #kycfree Websites
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀█











▄▄▄▄█
Baofeng
Legendary
*
Offline Offline

Activity: 2772
Merit: 1679



View Profile
January 12, 2023, 11:41:11 AM
 #2

Thanks for this, and that is why it is very important to check everything first before sending any to a address. Because hackers are clever enough to change the first and last of any address that it looks very similar to the one you are sending.

So if you are not that careful you might fall for this trick.

And this could be related to this, What is Clipboard Hijacker?.

 
 RAZED  
███████▄▄▄████▄▄▄▄
████▄███████████████
██▄██████▀▀████▀▀█████▄
████
██████████████
▄████████▄████████████▄
████████▀███████████▄
██████████████▐█▄█▀████████
▀████████████▌▐█▀██████████
▀███████████▌▀████████████
█████████▄▄▄
█████▄▄██████
████████████████████████
█████▀█████████████████▀
██████████████
▄▄███████▄▄
▄███████████████
▄███████████████████▄
█████████████████████▄
▄███████████████████████▄
████████████████████████
█████████████████████████
██████████████████████
▀█████
█████████████████▀
▀█
████████████████████▀
▀█████
█████████████
▀███████████████▀
█████████
 
RAZED ORIGINALS
SLOTS & LIVE CASINO
SPORTSBOOK
|
 NO 
KYC
 
 RAZE THE LIMITS   PLAY NOW 
swogerino
Legendary
*
Offline Offline

Activity: 3332
Merit: 1248


Bitcoin Casino Est. 2013


View Profile
January 12, 2023, 11:57:32 AM
 #3

So is the hacker able to change the copy/paste of my Metamask wallet for example,as I have been using it since Ethereum moved to PoS and I have a lot of Ethereum Fair and some Ethereum PoW there.However I never have received such warnings and maybe this is because I only send and receive money with websites I fully trust,I do not venture in uncharted territories and above all I am using Linux which I think it has an added layer of security because hackers target Windows devices as most of people use that system (not long ago,in fact very recently that manager who got hacked through his system I believe he was using Windows).

Nevertheless a good advice for people using Windows and not only,even for us who use Linux it is always a good practice to double check where we are sending money.

███▄▀██▄▄
░░▄████▄▀████ ▄▄▄
░░████▄▄▄▄░░█▀▀
███ ██████▄▄▀█▌
░▄░░███▀████
░▐█░░███░██▄▄
░░▄▀░████▄▄▄▀█
░█░▄███▀████ ▐█
▀▄▄███▀▄██▄
░░▄██▌░░██▀
░▐█▀████ ▀██
░░█▌██████ ▀▀██▄
░░▀███
▄▄██▀▄███
▄▄▄████▀▄████▄░░
▀▀█░░▄▄▄▄████░░
▐█▀▄▄█████████
████▀███░░▄░
▄▄██░███░░█▌░
█▀▄▄▄████░▀▄░░
█▌████▀███▄░█░
▄██▄▀███▄▄▀
▀██░░▐██▄░░
██▀████▀█▌░
▄██▀▀██████▐█░░
███▀░░
Bitcoin Smith (OP)
Sr. Member
****
Offline Offline

Activity: 1092
Merit: 334


Catalog Websites


View Profile WWW
January 12, 2023, 11:58:27 AM
 #4

And this could be related to this, What is a Clipboard Hijacker?.

Clipboard hijacking is more advanced than this if I am not wrong where the hacker replaces the recipient address with his desired destination address, but the attack explained in the article says the hacker doesn't replace the address but matches the address with similar one and hoping the victim will choose the wrong address and send funds to it.

█▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
███████▄▄████▄▄░
████▄████▀▀▀▀█░███▄
██▄███▀████████▀████▄
█░▄███████████████████▄
█░█████████████████████
█░█████████████████████
█░█████████████████████
█░▀███████████████▄▄▀▀
██▀███▄████████▄███▀
████▀████▄▄▄▄████▀
███████▀▀████▀▀
█▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
BitList
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀█











▄▄▄▄█
█▀▀▀▀











█▄▄▄▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
.
REAL-TIME DATA TRACKING
CURATED BY THE COMMUNITY

.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀█











▄▄▄▄█
█▀▀▀▀











█▄▄▄▄
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
List #kycfree Websites
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀▀█











▄▄▄▄█
Aanuoluwatofunmi
Sr. Member
****
Offline Offline

Activity: 770
Merit: 434



View Profile
January 12, 2023, 12:10:46 PM
 #5

This is a common ransomware that focus on the clipboard malware attack, if you're sending a transaction forward to an address, make sure that you check the address to be correct from the one you copied and you might have pasted it before sending the transaction, this could be a costly mistake because transactions are irreversible regardless of the mistakes, and those that uses metamask crypto wallet needed to be extra more careful because they are dealing with multiple cryptos which they can got infected from any side where they were being open and careless from the sites they visit.

████████▄▄▄▄▄▄▀▀▀▀▀▀▄
███▄▀▀▀▀▀███████████
███▐▌████████████▀█▀▐▌
███▐▌███▄█▀█████████████████▄▄▄▄
▄▀█████▐█████████▄▄▄▐█▌▄█▌██▀▀
██████▐███▐██▌▄█▀▀▀▐█████▀███▄
▐█
██▐▌██▐████▌█▌█▌███▐█▌█▄▄▄▄██
▐██
▐▌██▐█▌▐█▀█▌▀█▄▄█▐███▀▀▀▀▀▀
████████▐█▌█▌▀▀▀██▀▀████▄▌████▄
███▄███▌▐████▄██▌█▌██▐████▌█▌▄█▀
██▐█▄▄▄▄██████████▌██▐████▌█▌▐██
███▀███▀▀████▌█████▄▄▐█▄▄█▌██▀▀
████████████▀███▌▀▀▀▀██▀▀
▄███████████████████████▄
█▌▐▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▌▐█
█▌▐█████▌▐█████▌▐█████▌▐█
█▌▐█▄▄▄█▌▐█▄▄▄█▌▐█▄▄▄█▌▐█
█▌▐██▀▄█▌▐██▀▄█▌▐██▀▄█▌▐█
█▌▐██░██▌▐██░██▌▐██░██▌▐█
█▌▐█████▌▐█████▌▐█████▌▐█
█▌▐▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▌▐█
█████████████████████████
▀██████████▀▀▀██████████▀
███████
▄███████████▄
IN-HOUSE
SLOTS
LIVE GAMES
TABLE
NO FEES ON
BITCOIN WITHDRAWALS

▄▄███████▄▄
▄███████████████▄
▄███████████████████▄
▄█████████████████████▄
▄███████████████████████▄
█████████████████████████
████████████████████████
█████████████████████████
▀██████████████████████▀
▀█████████████████████▀
▀███████████████████▀
▀███████████████▀
▀▀███████▀▀

▀███████████▀
[
[
RELOAD
BONUS
 

RAKEBACK
BONUS
]
]
[
[
FREE
COINS
 

VIP
REWARDS
]
]
[ 
 Play Now
]
DeathAngel
Legendary
*
Offline Offline

Activity: 3290
Merit: 1617


#1 VIP Crypto Casino


View Profile
January 12, 2023, 12:22:52 PM
 #6

This type of scam isn’t new. It’s been happening for a while, most likely it’s able to be carried out by hackers if you unfortunately download malware on your device. When you copy an address to send crypto to he/she is able to switch around some letters/numbers in the middle of the address & send to an address they are in control of which is very similar to the one you use. It’s commonly known as a clipboard hack.

The only way to minimise the risk here is don’t go on shady sites using a device you use for crypto. Don’t download movies, torrents, files. Don’t use a VPN, don’t use the device for pretty much anything other than crypto. You shouldn’t be using the device you use for crypto for regular browsing & leisure. You need a seperare device for crypto, it’s the best way to keep it clean.


█████████████████████████
███████████▄█████████████
██████▀░▀█▀░▀█▀░▀████████
███████▄███▄███▄█████████
████▀██▀██▀░▀████▀░▀█████
███████████░███▀██▄██████
████▀██▀██░░░█░░░████████
███████████░███▄█▀░▀█████
████▀██▀██▄░▄███▄░░░▄████
███████▀███▀███▀██▄██████
██████▄░▄█▄░▄█▄░▄████████
███████████▀█████████████
█████████████████████████
 
.Bitcasino.io.
 
.BTC  ✦  Where winners play  BTC.
.
..
.
    ..





████
████
░░▄████▄████████████▄███▄▄
░███████▄██▄▄▄▄▄▄█████████▄
███████████████████████████
▀████████████████████████▀
░░▀▀████████████████████
██████████████████▄█████████
██
▐███████▀███████▀██▄██████
███████▄██▄█▀████▀████████
░░██████▀▀▀▄▄▄████▀▀████
██▐██████████▀███▀█████████████    ████
███
████████████
███████████████    ████
█████▀████████████████▀
███████▀▀▀█████████▀▀
..
....
 
 ..✦ Play now... 
.
..
Jackl87
Sr. Member
****
Offline Offline

Activity: 1722
Merit: 269


View Profile
January 12, 2023, 01:51:38 PM
 #7

Scam alert: Metamask warns crypto users about address poisoning
While exploring the Binance news tab I found this article which highlights how a hacker is stealing the crypto assets by switching the address by matching the characters we normally use to send funds so beware of copying and pasting the recipient address no matter what kind of wallet your using and crosscheck all the characters not prefix and random alone.

Thanks for the warning OP. I just read through the article and i have to say, that i am not sure though how high the success rate of those hacking attempt is. I would guess that it is extremely low, which is a very good thing of course. So the scammer sends you a worthless token from an adress that is identical to yours on the first and also on the last number but not in between. That is all.
This means you have to make a few big mistakes at the same time in order to send the scammer your money. First of all you have to copy the address you want to sent to from a completely different location within metamask than you usually do and secondly you have to be completely blind at the same time to not see that the address is not the same as usual.
gunhell16
Hero Member
*****
Offline Offline

Activity: 1876
Merit: 531



View Profile
January 12, 2023, 02:21:30 PM
 #8

I think that the other community members here on the forum did not lack a reminder to crypto enthusiasts entering the world of crypto. We should always make it a habit to double-check the wallet address that we send or deposit to avoid this method of merciless hackers.

So anyway, thank you dude for this matter of giving once more reminders to the members here in the forum.

███████████████████████████
███████▄████████████▄██████
████████▄████████▄████████
███▀█████▀▄███▄▀█████▀███
█████▀█▀▄██▀▀▀██▄▀█▀█████
███████▄███████████▄███████
███████████████████████████
███████▀███████████▀███████
████▄██▄▀██▄▄▄██▀▄██▄████
████▄████▄▀███▀▄████▄████
██▄███▀▀█▀██████▀█▀███▄███
██▀█▀████████████████▀█▀███
███████████████████████████
 
 Duelbits 
██
██
██
██
██
██
██
██

██

██

██

██

██
TRY OUR UNIQUE GAMES!
    ◥ DICE  ◥ MINES  ◥ PLINKO  ◥ DUEL POKER  ◥ DICE DUELS   
█▀▀











█▄▄
 
███
▀▀▀
███
▀▀▀
███
▀▀▀
███
▀▀▀

███
▀▀▀
███
▀▀▀
 
███
▀▀▀

███
▀▀▀
███
▀▀▀
███
▀▀▀
███
▀▀▀
███
▀▀▀
 
███
▀▀▀
███
▀▀▀
███
▀▀▀
███
▀▀▀

███
▀▀▀
███
▀▀▀
 
███
▀▀▀
███
▀▀▀
███
▀▀▀

███
▀▀▀
███
▀▀▀
███
▀▀▀
 
███
▀▀▀
███
▀▀▀

███
▀▀▀
███
▀▀▀
███
▀▀▀

███
▀▀▀
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
 KENONEW 
 
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀█











▄▄█
10,000x
 
MULTIPLIER
██
██
██
██
██
██
██
██

██

██

██

██

██
 
NEARLY
UP TO
50%
REWARDS
██
██
██
██
██
██
██
██

██

██

██

██

██
[/tabl
vv181
Legendary
*
Offline Offline

Activity: 1932
Merit: 1273


View Profile
January 12, 2023, 03:50:09 PM
 #9

A thorough explanation of Address Poisoning can be seen on What are Address Poisoning Scams?

Based on the explanation over the thread, the attack was initially known in November of 2022. Firstly, it initiated by the scammer with sending a small amount of tokens and then cames the zero token transaction scam.

And this could be related to this, What is Clipboard Hijacker?.

Clipboard hijacking is rooted in the user's infiltrated device. But with this type of scam, the users did have any malware and the scammer does not have access to the user's device, it happened solely due to how the wallet operated--the user behaviour and the smart contract accepting 0 tx.
yhiaali3
Legendary
*
Offline Offline

Activity: 1876
Merit: 2003



View Profile WWW
January 12, 2023, 05:18:24 PM
 #10

This is completely different from the Clipboard Hijacker virus, in this case we are talking about there is no virus or hacking of the victim's machine, it is just that the attacker sends a zero transaction to the victim's address and hopes that the victim mistakenly copies the address from the transaction history and sends the tokens to attackers.

This is a primitive type of attack based on the idea that some people copy addresses from their transaction history when they want to send tokens.

They just wait for the user to send the tokens to their address by mistake or rush.


░▄██████████████▀█▀▀████████▄░
███████████░░▀██▄░▀▄░█████████
███████████▄▄▄░▀▀▄░░█░████████
██████████▀▀░░░▄▄░░░▀░░███████
████████▀░░░░▀▀█▀░░░░░████████
███▀████▀░░░░░░░░░░░░████▀▀██
███▄████▀▀▀████░░░░░░░████▄▄██
█▀▀▀▀▀▀▀▀▀▀█████░░░░░░██▀▀▀▀▀█
█▄▄▄███████▀█░░░░░░░░▀███▄▄▄█
█████▄▄▄▄███▄▄▄▄▄▄▄▄▄█████████
█████▀▀▀███████████████▀▀██▄██
░▀████████████████▄▄▄▄██████▀░
First Ever⠀⠀⠀───── Powered by: BSC Network
Leverage Driven CLMM + DLMM Model
───▸Dynamic Fee Structure   ───▸Revenue Sharing⠀
.
.       █
.  █   ███
. ███  ███   █
. ███▄▀███▄ ███
▀▀███  ███ ▀███ ▄
. ███  ▀█▀  ███▀█▀
. ███   ▀   ███
.  █        ▀█▀
.            ▀
Trade
.
. ▄▄▄▄▄▄▄    ▄▄▌‎▐▄▄
▄█▀  ▄  ▀█ ███▀▄▄▀███
█    █    ████ ▀█▄████
█    ▀▀▀▀ ████▀█▄ ████
▀█▄      ▄ ███▄▀▀▄███▀
. ▀▀█▄▄█▀   ▀▀█▌‎▐█▀▀
.▄▄▄▄▄
.████████▀▄ ▄▄▄██▀
.   ▀▀▀██████▀▀
Lend
.
.        ▄█
.     ▄███▄▄▄
.   ▀██████████
.     ▀███▀▀▀███
▄    ▄▄  ▀    ▀█
███▄▄███▄
▀█████████▄
. ▀▀▀████▀
.    █▀
Swap
.
.     ██▄▄
.   ██████
.    ████
.  ▄██▄▄▄██▄
.▄████▀ ▀█████
▄█████ ▀███████
██████▀▀ ██████
███████▄███████
.▀▀█████████▀▀
Earn
.
⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
WHITELIST ME

⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
Cling18
Full Member
***
Offline Offline

Activity: 1708
Merit: 126


View Profile
January 12, 2023, 05:34:14 PM
 #11

This is completely different from the Clipboard Hijacker virus, in this case we are talking about there is no virus or hacking of the victim's machine, it is just that the attacker sends a zero transaction to the victim's address and hopes that the victim mistakenly copies the address from the transaction history and sends the tokens to attackers.

This is a primitive type of attack based on the idea that some people copy addresses from their transaction history when they want to send tokens.

They just wait for the user to send the tokens to their address by mistake or rush.

Those who transact and send funds by just copying the address of the receiver without double checking it will surely fall for this trap. To be honest, this happened to me when I copied an unknown address and I really can't remember where I copied it so I sent the funds to the wrong address. I'm not sure if I've been a victim of that scam or if I was just so reckless that time because of hurrying. It should be a reminder for us that we should always double-check every single character of the address that we will be transacting with. Scammers are everywhere and they will always find new ways to fool people.
Silberman
Legendary
*
Offline Offline

Activity: 2688
Merit: 1374


View Profile
January 12, 2023, 07:21:23 PM
 #12

A thorough explanation of Address Poisoning can be seen on What are Address Poisoning Scams?

Based on the explanation over the thread, the attack was initially known in November of 2022. Firstly, it initiated by the scammer with sending a small amount of tokens and then cames the zero token transaction scam.

And this could be related to this, What is Clipboard Hijacker?.

Clipboard hijacking is rooted in the user's infiltrated device. But with this type of scam, the users did have any malware and the scammer does not have access to the user's device, it happened solely due to how the wallet operated--the user behaviour and the smart contract accepting 0 tx.
Thanks for the explanation because on the surface both attacks seems similar to the untrained eye but it seems they are different in their nature, fortunately for me since I have been aware that clipboard hijacking has been a thing I check every single character of the address I wish to send a payment, fortunately I have never been a victim of this but that is not a reason to lower my guard as who knows when it could happen and I could lose some of holdings because of it.
robelneo
Legendary
*
Offline Offline

Activity: 3416
Merit: 1225



View Profile WWW
January 12, 2023, 10:33:00 PM
 #13

Scam alert: Metamask warns crypto users about address poisoning

While exploring the Binance news tab I found this article which highlights how a hacker is stealing the crypto assets by switching the address by matching the characters we normally use to send funds so beware of copying and pasting the recipient address no matter what kind of wallet your using and crosscheck all the characters not prefix and random alone.

I will quote the important part of the article and will leave the link below.

Quote
While the attempt would not give the hackers access to user wallets, people who may have gotten into the habit of copying their wallet address from the transaction history before sending digital asset balances could potentially send their funds to copycat addresses.
Because of this, the wallet provider warned users always to be careful and double-check their transactions before sending their balances. The firm highlighted that it would be best to check every single character of the wallet address to make sure that the funds will be sent to the correct wallet.

source: Scam alert: MetaMask warns crypto users about address poisoning

The target is specific to people who are copying their address on their transaction history, I wonder what the percentage of people who are doing this, could be big numbers because they create specific targets I haven't done this on all my transactions I have a compilation of my wallets and I always see to it that I memorize at least the first three characters some characters in the middle and last three characters and check it on explorers especially if I'm moving big amount, took me at least 2 minutes but it's part of the precautions.

..cryptomus..   
  
.
lllllllllllllllllll CRYPTO
PAYMENT GATEWAY
▄█▀▀██▄░░░▄█████▄░░░▄▀████▄
██░▀▄██░░░██▄░▄██░░░██▄▀▀▀█
██░▀▄██░░░███▄███░░░███░░▄█
▀▀▀▀▀░░░░░▀▀▀▀▀░░░░░▀▀▀▀▀
▄▄▄▄▄░░░░░▄▄▄▄▄░░░░░▄▄▄▄▄
███▀▄██░░░██▀░▀██░░░██▀▀▀▀█
██▀▄███░░░██░░░██░░░█▄███░█
▀█▄▄▄█▀░░░▀██▄██▀░░░▀█▄▄▄█▀

▄█████▄░░░▄█▀▀██▄░░░▄█████▄
█▀░█░▀█░░░█░▀░▀▀█░░░██▄░▄██
█▄█▄█▄█░░░███░▀▄█░░░███▄███
▀▀▀▀▀░░░░░▀▀▀▀▀░░░░░▀▀▀▀▀
ACCEPT
CRYPTO
PAYMENTS
..GET STARTED..
serjent05
Legendary
*
Offline Offline

Activity: 3024
Merit: 1280


Get $2100 deposit bonuses & 60 FS


View Profile
January 12, 2023, 11:39:34 PM
 #14

Scam alert: Metamask warns crypto users about address poisoning

While exploring the Binance news tab I found this article which highlights how a hacker is stealing the crypto assets by switching the address by matching the characters we normally use to send funds so beware of copying and pasting the recipient address no matter what kind of wallet your using and crosscheck all the characters not prefix and random alone.

I will quote the important part of the article and will leave the link below.

Quote
While the attempt would not give the hackers access to user wallets, people who may have gotten into the habit of copying their wallet address from the transaction history before sending digital asset balances could potentially send their funds to copycat addresses.
Because of this, the wallet provider warned users always to be careful and double-check their transactions before sending their balances. The firm highlighted that it would be best to check every single character of the wallet address to make sure that the funds will be sent to the correct wallet.

source: Scam alert: MetaMask warns crypto users about address poisoning

Hackers are getting smarter every day, who would have thought that they will use the tactic of sending 0 transactions just to overpopulate a person's transaction history with an address that is almost identical to the used address or to confuse the users and make him made a mistake of copying the address given by hacker to mistakenly transfer the funds to the hackers address.

We must always be vigilant in conducting transfers and always triple-check or more the destination address to ensure that we are sending our funds to the right address.

█████
██
██
██
██
██
██
██
██
██
██
██
█████

...........▄▄▄██████▄▄
.▄██▄..▄▄███▀▀▀...▀▀███▄
.............█▄█.▄.............▄▄▄
..▀██████▀
...........███▄.............▄▀▀▀...........▄██▀.█...............▄█
...▄████
..............███............███.............██..█...............▄██
..██▀.▀██
............███▀...........▄▄▄...▄▄.▄▄▄▄...███.█▄▄......▄▄▄▄..▄▄██▄▄▄▄
.██▀...▀██
..........███▀.▄▄█▀▀██▄...███..▄██▀▀▀███..███▀▀███...▄██▀▀██...██
███
.....███..▄▄▄▄████▀.▄██▀...██▀..███...██▀...██▀.███....██..██▀.▄██▀..███
██.▄
.....██.████▀▀▀...▄██▄...██▀..▄██▀..███...███..██....██▀.█████▀...▄███
██▄▀█...▄██..▀███
.....▀█████▀██████████▀██...██████▀█████████▀▀██▄▄▄██▀▀███▄▄▄██▀
.███▄▄▄███
....▀███▄.....▀▀▀...▀▀...▀▀▀..▀▀.....▀▀....▀▀▀▀▀......▀▀▀▀......▀▀▀▀
..▀▀███▀▀
.......▀███▄▄....▄▄
..................▀▀███████▀
.......................▀▀

 ▄▄▄▄▄▄▄▄░░░░░░▄▄▄██▄
██████████████████████▄
██████████████████████▀
█████████████████████
██████▀▀▀▀██████████
▀████░░░▄██████████
░░░░░░░▄██████████
░░░░░░███████████▀
░░░░▄████████████
░░░▄████████████▀
░░░█████████████
█████
██
██
██
██
██
██
██
██
██
██
██
█████

UP TO
60 FS

..PLAY NOW..
autumnleaf
Member
**
Offline Offline

Activity: 219
Merit: 19


View Profile
January 13, 2023, 03:05:21 AM
 #15

Thanks for the information. It's sad to think that some people have fallen victim to these types of activities, but this scenario has been present in the crypto space for some time. Therefore, we ought to refrain from copying and pasting addresses from the history and instead make a new copy of deposit address before pasting it.
klidex
Hero Member
*****
Offline Offline

Activity: 1498
Merit: 504



View Profile
January 13, 2023, 05:34:31 AM
 #16

Scam alert: Metamask warns crypto users about address poisoning

While exploring the Binance news tab I found this article which highlights how a hacker is stealing the crypto assets by switching the address by matching the characters we normally use to send funds so beware of copying and pasting the recipient address no matter what kind of wallet your using and crosscheck all the characters not prefix and random alone.

I will quote the important part of the article and will leave the link below.

Quote
While the attempt would not give the hackers access to user wallets, people who may have gotten into the habit of copying their wallet address from the transaction history before sending digital asset balances could potentially send their funds to copycat addresses.
Because of this, the wallet provider warned users always to be careful and double-check their transactions before sending their balances. The firm highlighted that it would be best to check every single character of the wallet address to make sure that the funds will be sent to the correct wallet.

source: Scam alert: MetaMask warns crypto users about address poisoning
We must always be vigilant and careful in making all crypto transactions.
However, a hacker himself has above average intelligence and intelligence. Not everyone can carry out hacking and acts of theft through a network on the blockchain.
Sometimes someone who has been careful and always vigilant in their actions still has the misfortune of being hacked and having all of their valuable assets stolen, especially if we just act as we please.
tvplus006
Legendary
*
Offline Offline

Activity: 2478
Merit: 1944


To the Moon


View Profile WWW
January 13, 2023, 05:23:11 PM
 #17

...And this could be related to this, What is Clipboard Hijacker?.

If you use Google search, you can easily find information about the virus Trojan.Coinbitclip, which changes the address in the clipboard to the address of a fraudster. I remember that a similar topic existed on our forum about the dangers of using copy/paste, but I couldn't find it.

██████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
██████████████████████
.SHUFFLE.COM..███████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
█████████████████████
████████████████████
██████████████████████
████████████████████
██████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
██████████████████████
██████████████████████
██████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
.
...Next Generation Crypto Casino...
evichi
Jr. Member
*
Offline Offline

Activity: 1330
Merit: 7


View Profile
January 13, 2023, 06:45:05 PM
 #18

Thanks for this valuable information. This is an important reminder that it is not enough to 'copy' address, and that we have to cross check after 'pasting' the address in the wallet to ensure it exactly corresponds to the address we intend to send. I think it is a good practice to check the five characters at the beginning and end end of the address, and some middle characters. This also reminds us not to be too much in a hurry when we are sending funds/carrying out crypto transactions so as not to make mistakes. It is worth taking time to double check the address before sending - why risk losing your hard earned money? 

ARTEMIS ∞ https://artemiscoin.co (https://artemiscoin.co)
♦ SECURE PLATFORM FOR GLOBAL TRADE ♦
vv181
Legendary
*
Offline Offline

Activity: 1932
Merit: 1273


View Profile
January 14, 2023, 02:19:18 AM
 #19

A thorough explanation of Address Poisoning can be seen on What are Address Poisoning Scams?

Based on the explanation over the thread, the attack was initially known in November of 2022. Firstly, it initiated by the scammer with sending a small amount of tokens and then cames the zero token transaction scam.

And this could be related to this, What is Clipboard Hijacker?.

Clipboard hijacking is rooted in the user's infiltrated device. But with this type of scam, the users did have any malware and the scammer does not have access to the user's device, it happened solely due to how the wallet operated--the user behaviour and the smart contract accepting 0 tx.
Thanks for the explanation because on the surface both attacks seems similar to the untrained eye but it seems they are different in their nature, fortunately for me since I have been aware that clipboard hijacking has been a thing I check every single character of the address I wish to send a payment, fortunately I have never been a victim of this but that is not a reason to lower my guard as who knows when it could happen and I could lose some of holdings because of it.

It is completely different, clipboard hijacking changes the address fully, but on address poisoning, it did not technically change any address. This specific scam, the scammer makes use of user behaviour when they are using a wallet. Most of them copy an address from the last transaction from their wallet, which in turn, this is the part where the scammers get in.

Do also note that there is also a web extension malware who are similar to clipboard hijacking but the displayed address is not changed visually but within. So, the displayed address is kept but when the user clicks the action either withdraw or anything, the address that is actually being sent is changed.
uneng
Hero Member
*****
Offline Offline

Activity: 2212
Merit: 824


Leading Crypto Sports Betting & Casino Platform


View Profile
January 14, 2023, 10:44:12 PM
 #20

A thorough explanation of Address Poisoning can be seen on What are Address Poisoning Scams?

Based on the explanation over the thread, the attack was initially known in November of 2022. Firstly, it initiated by the scammer with sending a small amount of tokens and then cames the zero token transaction scam.

And this could be related to this, What is Clipboard Hijacker?.

Clipboard hijacking is rooted in the user's infiltrated device. But with this type of scam, the users did have any malware and the scammer does not have access to the user's device, it happened solely due to how the wallet operated--the user behaviour and the smart contract accepting 0 tx.
Thanks for the explanation because on the surface both attacks seems similar to the untrained eye but it seems they are different in their nature, fortunately for me since I have been aware that clipboard hijacking has been a thing I check every single character of the address I wish to send a payment, fortunately I have never been a victim of this but that is not a reason to lower my guard as who knows when it could happen and I could lose some of holdings because of it.

It is completely different, clipboard hijacking changes the address fully, but on address poisoning, it did not technically change any address. This specific scam, the scammer makes use of user behaviour when they are using a wallet. Most of them copy an address from the last transaction from their wallet, which in turn, this is the part where the scammers get in.

Do also note that there is also a web extension malware who are similar to clipboard hijacking but the displayed address is not changed visually but within. So, the displayed address is kept but when the user clicks the action either withdraw or anything, the address that is actually being sent is changed.
It has to change at least one character of the address. It could be a letter or number. Scammers can forge almost identical addresses, but not exactly ones. The point is that they rely on the fact Metamask displays only the summed up version of the address, so not everyone checks it completely, especially the characters of the middle.

To avoid being scammed, better to only copy addresses from valid transactions or from a saved notepad file, instead of going for the most recent transactions' history on Metamask.

..Stake.com..   ▄████████████████████████████████████▄
   ██ ▄▄▄▄▄▄▄▄▄▄            ▄▄▄▄▄▄▄▄▄▄ ██  ▄████▄
   ██ ▀▀▀▀▀▀▀▀▀▀ ██████████ ▀▀▀▀▀▀▀▀▀▀ ██  ██████
   ██ ██████████ ██      ██ ██████████ ██   ▀██▀
   ██ ██      ██ ██████  ██ ██      ██ ██    ██
   ██ ██████  ██ █████  ███ ██████  ██ ████▄ ██
   ██ █████  ███ ████  ████ █████  ███ ████████
   ██ ████  ████ ██████████ ████  ████ ████▀
   ██ ██████████ ▄▄▄▄▄▄▄▄▄▄ ██████████ ██
   ██            ▀▀▀▀▀▀▀▀▀▀            ██ 
   ▀█████████▀ ▄████████████▄ ▀█████████▀
  ▄▄▄▄▄▄▄▄▄▄▄▄███  ██  ██  ███▄▄▄▄▄▄▄▄▄▄▄▄
 ██████████████████████████████████████████
▄▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▄
█  ▄▀▄             █▀▀█▀▄▄
█  █▀█             █  ▐  ▐▌
█       ▄██▄       █  ▌  █
█     ▄██████▄     █  ▌ ▐▌
█    ██████████    █ ▐  █
█   ▐██████████▌   █ ▐ ▐▌
█    ▀▀██████▀▀    █ ▌ █
█     ▄▄▄██▄▄▄     █ ▌▐▌
█                  █▐ █
█                  █▐▐▌
█                  █▐█
▀▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▀█
▄▄█████████▄▄
▄██▀▀▀▀█████▀▀▀▀██▄
▄█▀       ▐█▌       ▀█▄
██         ▐█▌         ██
████▄     ▄█████▄     ▄████
████████▄███████████▄████████
███▀    █████████████    ▀███
██       ███████████       ██
▀█▄       █████████       ▄█▀
▀█▄    ▄██▀▀▀▀▀▀▀██▄  ▄▄▄█▀
▀███████         ███████▀
▀█████▄       ▄█████▀
▀▀▀███▄▄▄███▀▀▀
..PLAY NOW..
Pages: [1] 2 »  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!