OpenSea planned upgrade stalls as phishing attack targets NFT migration

Share This Post

OpenSea announced a new smart contract upgrade with a one-week deadline yesterday. However, the urgency and short deadline opened up a small window of opportunity for hackers.

Just yesterday, OpenSea announced a smart contract upgrade, which requires users to migrate their listed NFTs from Ethereum (ETH) blockchain to a new smart contract. As a direct result of the upgrade, users that don’t migrate over from Ethereum risk losing their old, inactive listings — which currently require no gas fees for migration.

Major nonfungible token (NFT) marketplace OpenSea has reportedly fallen victim to an ongoing phishing attack within hours after announcing a week-long planned upgrade to delist inactive NFTs on the platform. 

However, the urgency and short deadline opened up a small window of opportunity for hackers. Within hours after OpenSea’s upgrade announcement, reports across multiple sources emerged about an ongoing attack that targets the soon-to-be-delisted NFTs.

Further investigations revealed that attackers used phishing emails to steal the NFTs before they get migrated over OpenSea’s new smart contract. Once a user authorizes the NFT migration from the fraudulent email, the attackers gain access to the NFTs.

Users are now advised to be wary of all communications from OpenSea in addition to revoking all permissions about the migration to the new smart contract.

OpenSea co-founder and CEO Devin Finzer acknowledged the phishing attack while confirming that 32 users have lost NFTs so far. While the NFT marketplace is yet to decipher the ongoing attack, blockchain investigator Peckshield suspects a possible leak of user information (including email ids) that fuels the ongoing phishing attack.

However, Finzer has asked affected users to reach out to the company as he concluded:

“If you are concerned and want to protect yourself, you can un-approve access to your NFT collection.”

Related: UK tax authority makes first NFT seizure in VAT fraud case

Her Majesty’s Revenue and Customs (HMRC), the chief tax authority in the United Kingdom, seized three NFTs associated with a suspected tax evasion fraud.

As Cointelegraph reported, the suspects used fake identities and created 250 fake “shell” companies to evade 1.4 million British pounds (roughly $1.8 million) in value-added taxes.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Ripple’s Chris Larsen Pledges $10M in XRP to Back Kamala Harris’s Campaign

Chris Larsen, a well-known figure in the world of American business and angel investing, is making headlines once again This time, the co-founder of multiple Silicon Valley tech ventures, including

Over 700 Exahash—Bitcoin’s Hashrate Shatters All-Time Records

Bitcoin’s network hashrate has hit a groundbreaking peak of 72588 exahash per second (EH/s) for the very first time in its history Imagine this: 725 quintillion hashes are being crunched every

XRP Primed For Explosive 10x Rally: Expert Lays Out Strategic Roadmap

Popular altcoin XRP is gaining traction in the crypto market as the digital asset continues to attract bold predictions from inspired crypto enthusiasts following a recent price recovery due to a

Northern Data embraces AI boom, mulls ditching Bitcoin mining roots

Europe’s largest Bitcoin miner, Northern Data, is exploring the potential divestment of its mining division, Peak Mining, as part of a strategic shift to focus entirely on its rapidly growing

Bitcoin 9% Away From its ATH-Here’s Why The Upcoming Bull Market Peak is Way Ahead of $100K

The post Bitcoin 9% Away From its ATH-Here’s Why The Upcoming Bull Market Peak is Way Ahead of $100K appeared first on Coinpedia Fintech News After breaking above the 7-month-old consolidation, the

ApeCoin Climbs Over 100% On Major Tech Advancements – Details

ApeCoin (APE) has seen its price jump by over 100% today, driven largely by the rollout of advanced technologies and newly implemented incentive programs These initiatives are designed to boost user