More than $4.7M stolen in Uniswap fake token phishing attack

Share This Post

Some initially interpreted the hack as an exploit of the Uniswap V3 protocol, but it was quickly clarified as the result of a phishing campaign.

A sophisticated phishing campaign targeting liquidity providers (LPs) of the Uniswap v3 protocol has seen attackers make off with at least $4.7 million worth of Ethereum (ETH). However, the community is reporting the losses could be even greater. 

Metamask security researcher Harry Denley was one of the first to raise the alarm bells of the attack, telling his 13,000 Twitter followers on July 11 that 73,399 addresses had been sent malicious ERC-20 tokens to steal their assets.

At least $4.7 million in ETH has been lost in the attack, according to a Twitter post from Binance CEO Changpeng “CZ” Zhao. However, there are also reports amongst the crypto community that there may be more significant losses from the incursion.

Prominent crypto Twitter user 0xSisyphus noted on July 11 that a “large LP” with around 16,140 ETH, worth $17.5 million, may have also been phished.

How it works

According to Denley, the phishing attack works by sending unsuspecting users a “malicious token” called “UniswapLP” — made to appear as coming from the legitimate “Uniswap V3: Positions NFT” contract by manipulating the “From” field in the blockchain transaction explorer.

Users curious about their new tokens would be directed to a website purporting to allow them to swap their new tokens for Uniswap’s native token UNI, worth $5.34 each at the time of writing.

The website would instead send the users’ address and browser client info to the attackers’ command center, which would also attempt to drain cryptocurrency from their wallets.

A Reddit post also explaining the attack noted that the attackers had stolen native tokens (ETH), ERC20 tokens, and NFTs (namely Uniswap LP positions) from victims.

Not an exploit

Binance’s CEO Zhao created some waves in the crypto markets when he first sounded alarms about the attack, calling it a “potential exploit” of the Uniswap protocol on the ETH blockchain.

Related: Finance Redefined: Uniswap goes against the bearish trends, overtakes Ethereum

Zhao clarified soon after the post with another update, sharing a conversation with the Uniswap team, who noted the attack was part of a phishing attack rather than any issue with the protocol.

CZ’s initial alarming comments coincided with a sharp drop in the Uniswap price, which fell to a 24-hour low of $5.34. The price of UNI has since recovered following the clarification to $5.48 at the time of writing but is still down 11% in 24 hours and is 87.8% down from its all-time-high (ATH).

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Bitcoin Soars Towards $68K Amid Microsoft’s BTC Investment SEC Filing

Microsoft is preparing for a critical shareholder meeting on December 10, during which the future of Bitcoin as a potential investment will be a heated topic At present, Bitcoin is trading at

7 Best Meme Coins Outperforming The Ethereum Price Dip

The post 7 Best Meme Coins Outperforming The Ethereum Price Dip appeared first on Coinpedia Fintech News While meme coins are thriving, Ethereum has shown significant weakness this week This reflects

US and Nigeria unite to tackle crypto crime with new liaison group

The United States and Nigeria have formed a Bilateral Liaison Group to counter cryptocurrency-related crimes and illicit finance An Oct 23 announcement reaffirmed the United States’ dedication

GPT-4 Prediction: Ethereum (ETH) Tanks to $2,200, Ripple (XRP) to $0.4—IntelMarkets Prepares For A $2 Mega Rally

The post GPT-4 Prediction: Ethereum (ETH) Tanks to $2,200, Ripple (XRP) to $04—IntelMarkets Prepares For A $2 Mega Rally appeared first on Coinpedia Fintech News As market sentiment shifts, GPT-4

XRP and ADA Rally to $1 Unlikely in the Nearest Terms Experts Claim; Traders Turn to This 2000x Altcoin Alternative

The post XRP and ADA Rally to $1 Unlikely in the Nearest Terms Experts Claim; Traders Turn to This 2000x Altcoin Alternative appeared first on Coinpedia Fintech News Experts indicate that major

Bitcoin miner from 2010 moves part of 50 BTC stash to active wallet linked to exchanges

For the first time, an anonymous Bitcoin miner from the Satoshi era has moved part of their 50 BTC ($34 million) rewards from block 66,138, mined to ‘1FHft3AFk9’ 299 BTC was moved to