econintersect.com
  • 토토사이트
    • 카지노사이트
    • 도박사이트
    • 룰렛 사이트
    • 라이브카지노
    • 바카라사이트
    • 안전카지노
  • 경제
  • 파이낸스
  • 정치
  • 투자
No Result
View All Result
  • 토토사이트
    • 카지노사이트
    • 도박사이트
    • 룰렛 사이트
    • 라이브카지노
    • 바카라사이트
    • 안전카지노
  • 경제
  • 파이낸스
  • 정치
  • 투자
No Result
View All Result
econintersect.com
No Result
View All Result
Home Econ Intersect News

How To Avoid Being Trapped By Crypto ‘Ice Phishing’ Scammers – CertiK

admin by admin
12월 21, 2022
in Econ Intersect News, Economics
0
How To Avoid Being Trapped By Crypto ‘Ice Phishing’ Scammers – CertiK
0
SHARES
0
VIEWS

Ice phishing is a form of scam that exists only in Web3 and is a growing threat to the crypto industry, according to Certik.

Microsoft releases analysis of Web3 'ice phishing' attack

Blockchain security firm Certik has reminded the crypto space to remain on high alert over ‘ice phishing’ scams – a new form of phishing scam that targets Web3 users – first identified by Microsoft earlier in 2022.

In a December 20 analysis report, Certik described ice phishing scams as a form of attack that tricks Web3 users into signing permissions that end up letting a scammer spend their tokens.

It differs from the traditional phishing attacks which try to access confidential information including passwords and private keys, such as the phony websites set up which alleged to help FTX investors recover funds lost on the crypto exchange.

https://twitter.com/CertiKAlert/status/1605297043085447186

A December 17 scam where 14 Bored Apes were stolen is a great example of an elaborate ice phishing scam. One investor was convinced to sign a transaction request disguised as a film contract, which eventually enabled the scammer to sell all of the user’s apes to themselves for a negligible amount.

The company noted that this kind of scam was a considerable threat that was dominating the Web3 world, as investors are mostly needed to sign permissions to decentralized finance (DeFi) protocols that they interact with, which might easily get faked:

“The hacker just needs to make a user believe that the malicious address that they are granting approval to is legitimate. Once a user has approved permissions for the scammer to spend tokens, then the assets are at risk of being drained.”

Once a scammer gains approval, they can transfer assets to an address of their choice.

An example of how an ice phishing attack works on Etherscan. Source: Certik
An example of how an ice phishing attack works on Etherscan. Source: Certik

To protect themselves from ice phishing, Certik recommended that investors should revoke permissions for addresses they do not recognize on blockchain explorer sites like Etherscan, using a token approval tool.

Moreover, addresses that users want to interact with need to be looked up on these blockchain explorers for any suspicious activity. In its analysis, Certik points to an address that was funded by Tornado Cash withdrawals as an example of suspicious activity.

Certik also indicated that users need to only interact with official sites that they can verify, and to be specifically wary of social media sites like Twitter, highlighting a fake Optimism Twitter account as an example.

Fake Optimism Twitter account. Source: Certik
Fake Optimism Twitter account. Source: Certik
Buy Crypto Now

The company also advised users to take several minutes to check a trusted sites like Coingecko and CoinMarketCap, users would have managed to see that the linked URL was not a legitimate site and needs to be avoided.

Tech giant Microsoft was the first one that highlighted this practice in a February 16 blog post, saying at the time that while credential phishing is quite predominant in the Web2 space, ice phishing gives individual scammers the ability to steal lots of the crypto sector while maintaining “almost complete anonymity.”

They recommended that Web3 projects and wallet providers increase the security of their services on the software level to prevent the burden of avoiding ice phishing attacks being placed mainly on the end-user.

Tags: analysisblockchainbusinessCertikcryptocrypto phishingcrypto scamcryptocurrencycybercrimeice phishinginvestmentMicrosoftphishingscamscamssecurityWeb2Web3
Previous Post

Bitcoin Miner Core Scientific Allegedly Files For Chapter 11 Bankruptcy

Next Post

Twitter’s New Feature Displays BTC Price, Links To Robinhood

Related Posts

Bitcoin Is Finally Trading Perfectly Like 'Digital Gold'
Economics

Bitcoin Is Finally Trading Perfectly Like ‘Digital Gold’

by admin
6,746 ETH Valued At $12M Was Just Burned
Economics

6,746 ETH Valued At $12M Was Just Burned

by admin
Bitcoin Is Steady Above $29,000 Awaiting US NFP Figures
Economics

Bitcoin: What Next After Consolidation Ends?

by admin
US Government Offloads Another 8,200 Bitcoin – On-chain Data
Economics

US Government Offloads Another 8,200 Bitcoin – On-chain Data

by admin
Bitcoin Stumbles As Macro And Regulatory Concerns Arise, What Next?
Economics

Bitcoin Stumbles As Macro And Regulatory Concerns Arise, What Next?

by admin
Next Post
Advisory Firm Innisfree Sues Twitter Seeking $1.9 Million In Unpaid Bills

Twitter’s New Feature Displays BTC Price, Links To Robinhood

답글 남기기 응답 취소

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다

Browse by Category

  • Business
  • Econ Intersect News
  • Economics
  • Finance
  • Politics
  • Uncategorized

Browse by Tags

adoption altcoins bank banking banks Binance Bitcoin Bitcoin market blockchain BTC BTC price business China crypto crypto adoption cryptocurrency crypto exchange crypto market crypto regulation decentralized finance DeFi Elon Musk ETH Ethereum Europe Federal Reserve finance FTX inflation investment market analysis Metaverse NFT nonfungible tokens oil market price analysis recession regulation Russia stock market technology Tesla the UK the US Twitter

Categories

  • Business
  • Econ Intersect News
  • Economics
  • Finance
  • Politics
  • Uncategorized

© Copyright 2024 EconIntersect

No Result
View All Result
  • 토토사이트
    • 카지노사이트
    • 도박사이트
    • 룰렛 사이트
    • 라이브카지노
    • 바카라사이트
    • 안전카지노
  • 경제
  • 파이낸스
  • 정치
  • 투자

© Copyright 2024 EconIntersect