Etherscan, CoinGecko warn against ongoing MetaMask phishing attacks

Share This Post

While investigations are underway, the ongoing attack on various crypto platforms may be connected to the compromise of Coinzilla, an advertising and marketing agency.

Popular crypto analytics platforms Etherscan and CoinGecko have parallelly issued an alert against an ongoing phishing attack on their platforms. The firms began investigating the attack after numerous users reported unusual MetaMask pop-ups prompting users to connect their crypto wallets to the website. 

Based on the information disclosed by the analytics firms, the latest phishing attack attempts to gain access to users’ funds by requesting to integrate their crypto wallets via MetaMask once they access the official websites.

Etherscan further revealed that the attackers have managed to display phishing pop-ups via third-party integration and advised investors to refrain from confirming any transactions requested by MetaMask.

Pointing toward the possible cause of the attack, @Noedel19, a member of Crypto Twitter, connected the ongoing phishing attacks to the compromise of Coinzilla, an advertising and marketing agency, stating that “Any website that makes use of Coinzilla Ads are compromised.”

Compromised CoinZilla source code with phishing link. Source: @Noedel19

The screenshots shared below show the automated pop-up from MetaMask asking to connect with the link falsely portraying as Bored Ape Yacht Club’s (BAYC) non-fungible token (NFT) offering.

CoinGecko website showing fake MetaMask pop-up. Source: @Noedel19

On May 4, Cointelegraph further warned readers about the rise in Ape-themed airdrop phishing scams, which is further cemented by the latest warnings issued by Etherscan and CoinGecko.

While an official confirmation from Coinzilla is still underway, @Noedel19 suspects that all companies that have ad integration with Coinzilla remain at risk of similar attacks wherein their users get pop-ups for MetaMask integration.

As a primary means of damage control, Etherscan has disabled the compromised third-party integration on its website.

Coinzilla has not yet responded to Cointelegraph’s request for comment.

Related: Bored Ape Yacht Club NFTs stolen in Instagram phishing attack

The team behind BAYC recently warned investors about an attack after hackers were found to breach their official Instagram account.

As Cointelegraph reported on April 25, hackers were able to gain access to BAYC’s official Instagram account. The hackers then contacted BAYC’s Instagram followers and shared links to fake airdrops. 

Users who connected their MetaMask wallets to the scam website were subsequently drained of their Ape NFTs. Unconfirmed reports suggest that approximately 100 NFTs were stolen during the phishing attack.

Read Entire Article
spot_img

Related Posts

This Crypto Trader Just Sold All His Bitcoin For Altcoins Like Cardano And XRP, Here’s Why

Crypto expert Michaël van de Poppe recently revealed that he had sold all his Bitcoin and rotated his capital to altcoins The analyst explained the reason for this move and remarked that he was

Blackrock Bitcoin ETF Attracts 414 Institutional Holders — Analyst Says IBIT ‘Blows Away Record’

Blackrock’s spot bitcoin exchange-traded fund (ETF), the Ishares Bitcoin Trust (IBIT), has amassed 414 insitutional holders in less than three months, according to filings with the US

Bitcoin Breakout From Major Resistance Levels Signals Bullish Momentum

Bitcoin which has been moving downward for a while now has managed to break above its previous resistance level of $67,30398 and has been showing signs of a potential rally ever since At the time of

China’s $53.3B Divestment in US Treasuries Signals Massive Shift From Dollar Assets

According to records, China has divested $533 billion in US Treasury notes and agency bonds during the first quarter Some analysts suggest this reduction in foreign exchange reserves might be

Floki Inu Frenzy: Memecoin Eyes New Highs As Open Interest Soars

Floki Inu (FLOKI), the Shiba Inu-inspired memecoin, has rocketed into the spotlight with a surge in trading activity and a nearly 20% price increase in the past week However, experts caution that

Ripple Market Report: Why Is XRP Volume Getting The Spotlight?

Cryptocurrency payment company Ripple has released XRP’s market report for the first quarter of 2024 The report sheds light on XRP’s soaring trading volume It also highlights updates on the
- Advertisement -spot_img