Crypto investor loses $1M in Uniswap scam exploiting Ethereum’s EIP-7702

Share This Post

A single phishing attack drained nearly $1 million worth of tokens from a crypto investor who unknowingly signed a batch of malicious transactions disguised as Uniswap swaps, according to blockchain security firm Scam Sniffer.

In an Aug. 22 post on X, Yu Xiang, founder of blockchain security firm SlowMist, noted that the incident involved five tokens siphoned through a transaction exploiting Ethereum’s new EIP-7702 mechanism.

He explained:

“From the perspective of a phished user, it goes like this: the user opens a phishing website, a wallet signature prompt pops up, the user clicks confirm, and with just that one action, all valuable assets in the wallet address vanish in a snap.”

EIP-7702 was introduced in the Pectra upgrade to streamline the Ethereum user experience. The feature allows a wallet to act like a temporary smart contract, making it possible to batch multiple transactions, enable gas sponsorship, or set spending limits in one step.

In principle, the delegation is revocable and network-specific. However, attackers have found ways to weaponize the feature in practice.

Crypto market maker Wintermute has warned that the standard’s implementation is being exploited at scale. Its June analysis showed that more than 90% of EIP-7702 delegations were linked to malicious contracts.

The firm pointed out that many of these contracts are simple copy-paste scripts that scan for vulnerable wallets and drain their holdings automatically.

Considering this, Scam Sniffer and Xiang urged crypto users to take extra care before signing wallet requests. They recommended verifying domain names, avoiding rushed confirmations, and rejecting signatures that seem unclear or overly broad.

They also stated that some of the red flags that could arise include requests for unlimited token approvals, contract upgrades under EIP-7702, or transaction simulations that do not match expectations.

The post Crypto investor loses $1M in Uniswap scam exploiting Ethereum’s EIP-7702 appeared first on CryptoSlate.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Stellar’s December Outlook Brightens as Network Use Cases Grow, but Major Resistance Still Looms

Surging about 4% in the past 24 hours, Stellar (XLM) goes through December with a mix of optimism and caution as new payment integrations and institutional pilots draw attention back to the

SpaceX Moves $95M in Bitcoin Ahead of Potential Mega IPO

Bitcoin Magazine SpaceX Moves $95M in Bitcoin Ahead of Potential Mega IPO SpaceX moved 1,021 BTC worth $945, part of a series of transfers this year totaling 8,910 BTC as the company consolidates

FOMC Crypto Crash Alert: Why Bitcoin and XRP Prices Are Falling Today

The post FOMC Crypto Crash Alert: Why Bitcoin and XRP Prices Are Falling Today appeared first on Coinpedia Fintech News Crypto markets have slid into the red zone, hours before the Federal

Pi Network News: Analyst Says $307 Pi Price Claim in Lawsuit Has ‘Zero Basis’ in Reality

The post Pi Network News: Analyst Says $307 Pi Price Claim in Lawsuit Has ‘Zero Basis’ in Reality appeared first on Coinpedia Fintech News A new lawsuit against Pi Network’s parent company,

Strategy Challenges MSCI Digital Asset Exclusion Threatening Bitcoin Treasury Firms

Strategy Inc warns that MSCI’s plan to drop digital-asset-focused companies from major indexes could distort global markets, curb bitcoin-driven innovation, and trigger significant investment

What Ripple’s CEO Appearance At The Banking Committee Means For XRP

Crypto pundit JackTheRippler recently drew the community’s attention to Ripple CEO Brad Garlinghouse’s appearance at the Senate Banking Committee hearing The CEO spoke about XRP amid his talk on