MetaMask warns of ‘address poisoning’ wallet scam

Share This Post

MetaMask notified the crypto community of a new type of scam called “address poisoning” in a recent post.

The scam was rated as “rather innocuous compared to other scam types.” However, the company warned that address poisoning still has the potential to dupe unsuspecting users into losing funds.

Address poisoning is an attack vector that, in contrast to other scams — which often use methods that have served many scammers so well, such as unlimited token approvals, phishing for your Secret Recovery Phrase, etc. — relies on user carelessness and haste above all else.”

How “address poisoning” works

Address poisoning centers on wallet addresses being long hexadecimal numbers that are difficult to remember and easy to mistake for other, similar addresses.

Crypto addresses are often shortened to show the first few characters, a blank, and then the last few. Scammers exploit the tendency to trust the familiarity of the first and last few characters.

When transacting, the usual routine consists of copying and pasting an address. Many wallet providers, including MetaMask, feature a one-click function to copy an address.

Address poisoning exploits users’ inattention at this point in the transaction process. Specifically, scammers observe and track transactions of particular tokens, with stablecoins commonly targeted. Then, using a “vanity” address generator, the scammer will create an address that closely matches the target address, especially the first and last few characters.

The scammer sends a transaction of nominal value from the newly generated address to the target address; at this point, the latter becomes poisoned.

In the future, when wishing to send a transaction, the user may mistakenly copy the wrong address based on the familiarity of the first and last few characters. Once executed, the funds end up with the scammer.

“And since on-chain transactions like this are immutable (cannot be altered once confirmed), the lost funds will be irretrievable.”

MetaMask explains how to stay safe

Unfortunately, the nature of public blockchains means anyone, including scammers, can send transactions to any address if they choose.

MetaMask reiterated the importance of checking every address character when sending funds, not just the first and last few.

“Develop a habit of thoroughly checking every single character of an address before you send a transaction. This is the only way to be completely sure you’re sending to the right place.”

Other strategies to avoid falling victim to address poisoning include not using transaction history to copy addresses, whitelisting frequently used addresses to avoid copying and pasting altogether, and using test transactions, especially when transferring large sums.

The post MetaMask warns of ‘address poisoning’ wallet scam appeared first on CryptoSlate.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Ripple CEO Reacts To Trump’s Billionaire Treasury Secretary Nominee

After weeks of intense speculation, incoming US President Donald Trump has named Scott Bessent his Treasury Secretary pick The drawn-out selection process has attracted many popular names, including

Flat Tax Frenzy: Americans Debate Tax Code Overhaul on X

Conversations about adopting a flat tax in the United States are lighting up the social media platform X 16 Million Words Too Many Department of Government Efficiency Sparks Flat Tax Debate The

Bitcoin Rally Benefits From US Buyers – Coinbase Premium Gap Reveals Strong Demand

Bitcoin has surged past the $99,800 mark, setting another all-time high as it inches closer to the psychological $100,000 milestone Despite briefly testing the level, BTC has yet to break through,

Bitcoin, ETH & XRP Price Prediction: Key Levels To Watch This Week!

The post Bitcoin, ETH & XRP Price Prediction: Key Levels To Watch This Week! appeared first on Coinpedia Fintech News Story Highlights Bitcoin price struggles to achieve the $100k mark and

Cameron Winkelvoss Calls for Inquiry Into SBF’s $100M Campaign Finance Breaches

The post Cameron Winkelvoss Calls for Inquiry Into SBF’s $100M Campaign Finance Breaches appeared first on Coinpedia Fintech News Cameron Winkelvoss, the Gemini co-founder and CEO, in a recent X

WIF Shakes Off Setbacks As Bullish Resurgence Targets More Gains

WIF is making a powerful return to the market, as bullish momentum takes hold and drives the price higher After showing signs of resilience, the digital asset is on an upward trajectory, with strong