OpenSea Discord server hacked, increasing the risk of phishing scams

Share This Post


OpenSea, a non-fungible token marketplace, has become the victim of a hack on its main Discord channel. The breach has allowed the threat actors to post fake announcements about partnerships between OpenSea and other projects.

OpenSea’s Discord channel hacked

OpenSea shared a screenshot on May 6 showing the fake news about partnerships. The screenshot also contained a link to a phishing website. The official Twitter account for OpenSea’s support posted that the Discord server for the NFT marketplace had been breached on Friday morning. The company even issued a warning to users, urging them not to follow any of the links posted on the channel.

The first post made by the hacker included an announcement channel claiming that the NFT marketplace had “partnered with YouTube to bring their community into the NFT Space.” The company also said it would publish a mint pass with OpenSea to allow holders to mint their NFT project at no cost.

The hacker remained on the server for a long time before OpenSea could recover the account. However, the hacker had already engaged in several attempts to trigger users into reacting to the announcement by instilling the fear of missing out. The hacker posted follow-up posts, and it claimed that 70% of the supply had been minted.

The hacker also tried to entice the users on OpenSea by saying that YouTube would offer “insane utilities.” These utilities would be given to those who claimed the NFTs. They also claimed that the offer would be unique and that additional rounds would not be required for participation.

On-chain metrics reveal that 13 wallets have been compromised so far, and the most valuable NFT that was stolen was Founders’ Pass, valued at 3.33 Ether, equivalent to around $8900.

Webhooks attributed to server breach

The first reports said that the intruder adopted Webhooks to access the server controls. Webhooks are server plugins that allow other software to receive real-time information. Webhooks are gaining increased use as an attack vector for hackers because they facilitate messaging with the official server accounts.

Webhooks have not only been used to attack the OpenSea discord server but have also been used to attack popular NFT collections. The Bored Ape Yacht Club, KaijuKIngs and Doodles were breached early last month after exploiting a similar vulnerability allowing hackers to use the official server accounts to publish phishing links.

Your capital is at risk.

Read more:

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Crypto Investment Products See Record $2.2 Billion Inflows—Is The Bull Run Here?

The latest weekly digital asset fund flow report from CoinShares has revealed that last week, crypto asset investment products saw roughly $22 billion in net inflows globally, marking the largest

BRICS Unites 40 Nations at Leaders’ Summit — Russia Pushes for Global Partnerships

Nearly 40 countries will participate in the BRICS Plus/Outreach session, expanding the reach of the 2024 BRICS Summit hosted by Russia The summit will address cooperation in politics, security, and

MEW Set to Hit All-Time High, Key Data Reveals

The post MEW Set to Hit All-Time High, Key Data Reveals appeared first on Coinpedia Fintech News The popular Solana-based meme coin Cat in a Dog World (MEW) is gaining significant attention from the

2 Outcomes: Ripple’s Legal Chief Reveals Best SEC Can Hope for in XRP Appeal

Ripple’s chief legal officer has highlighted two potential outcomes for the US Securities and Exchange Commission (SEC)’s appeal in the Ripple lawsuit over XRP He explained the

Analyst Predicts Dogecoin Price Will More Than Double To $0.37, The Timeline Will Shock You

Analyst Crypto Universe has predicted that the Dogecoin price will enjoy a gain of over 100% as it rises to $037 While the prediction undoubtedly looks feasible, the timeline for which he said this

Pump.fun launches ‘Advanced’ terminal to rival Photon, confirms token launch

Solana-based memecoin launch platform Pumpfun teased a new token and potential airdrop following its most successful week to date The announcement was made during a Twitter Spaces event introducing