• bitcoinBitcoin (BTC) $ 92,420.00
  • ethereumEthereum (ETH) $ 3,203.20
  • tetherTether (USDT) $ 0.999584
  • bnbBNB (BNB) $ 919.39
  • xrpXRP (XRP) $ 1.96
  • usd-coinUSDC (USDC) $ 0.999610
  • tronTRON (TRX) $ 0.317605
  • staked-etherLido Staked Ether (STETH) $ 3,199.95
  • dogecoinDogecoin (DOGE) $ 0.126922
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.00
  • cardanoCardano (ADA) $ 0.364446
  • wrapped-stethWrapped stETH (WSTETH) $ 3,922.07
  • whitebitWhiteBIT Coin (WBT) $ 56.13
  • bitcoin-cashBitcoin Cash (BCH) $ 589.52
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 3,484.74
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 92,123.00
  • moneroMonero (XMR) $ 614.40
  • wrapped-eethWrapped eETH (WEETH) $ 3,477.68
  • usdsUSDS (USDS) $ 0.999473
  • chainlinkChainlink (LINK) $ 12.83
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.999442
  • leo-tokenLEO Token (LEO) $ 9.26
  • wethWETH (WETH) $ 3,201.99
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 92,396.00
  • stellarStellar (XLM) $ 0.212659
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • suiSui (SUI) $ 1.58
  • zcashZcash (ZEC) $ 358.62
  • hyperliquidHyperliquid (HYPE) $ 23.99
  • avalanche-2Avalanche (AVAX) $ 12.68
  • litecoinLitecoin (LTC) $ 69.77
  • hedera-hashgraphHedera (HBAR) $ 0.108974
  • usdt0USDT0 (USDT0) $ 0.999521
  • shiba-inuShiba Inu (SHIB) $ 0.000008
  • canton-networkCanton (CC) $ 0.121044
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.162985
  • daiDai (DAI) $ 0.999707
  • susdssUSDS (SUSDS) $ 1.09
  • the-open-networkToncoin (TON) $ 1.61
  • crypto-com-chainCronos (CRO) $ 0.096443
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.21
  • paypal-usdPayPal USD (PYUSD) $ 0.999745
  • usd1-wlfiUSD1 (USD1) $ 0.998588
  • polkadotPolkadot (DOT) $ 1.96
  • uniswapUniswap (UNI) $ 4.97
  • rainRain (RAIN) $ 0.008878
  • mantleMantle (MNT) $ 0.914630
  • memecoreMemeCore (M) $ 1.59
  • bitget-tokenBitget Token (BGB) $ 3.69
  • aaveAave (AAVE) $ 163.66
  • tether-goldTether Gold (XAUT) $ 4,654.75
  • bittensorBittensor (TAO) $ 250.73
  • okbOKB (OKB) $ 109.60
  • pepePepe (PEPE) $ 0.000005
  • falcon-financeFalcon USD (USDF) $ 0.997210
  • internet-computerInternet Computer (ICP) $ 3.77
  • nearNEAR Protocol (NEAR) $ 1.58
  • binance-peg-wethBinance-Peg WETH (WETH) $ 3,203.47
  • jito-staked-solJito Staked SOL (JITOSOL) $ 167.65
  • ethereum-classicEthereum Classic (ETC) $ 11.83
  • pax-goldPAX Gold (PAXG) $ 4,675.82
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • ondo-financeOndo (ONDO) $ 0.340591
  • htx-daoHTX DAO (HTX) $ 0.000002
  • solanaSolana (SOL) $ 133.63
  • global-dollarGlobal Dollar (USDG) $ 0.999641
  • aster-2Aster (ASTER) $ 0.645701
  • pi-networkPi Network (PI) $ 0.187214
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.73
  • ethenaEthena (ENA) $ 0.195893
  • hash-2Provenance Blockchain (HASH) $ 0.028965
  • pump-funPump.fun (PUMP) $ 0.002537
  • hashnote-usycCircle USYC (USYC) $ 1.11
  • kucoin-sharesKuCoin (KCS) $ 11.06
  • skySky (SKY) $ 0.063397
  • binance-staked-solBinance Staked SOL (BNSOL) $ 146.16
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.135230
  • ripple-usdRipple USD (RLUSD) $ 0.999423
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.15
  • wbnbWrapped BNB (WBNB) $ 919.43
  • worldcoin-wldWorldcoin (WLD) $ 0.488274
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,699.42
  • bfusdBFUSD (BFUSD) $ 0.998947
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999716
  • aptosAptos (APT) $ 1.64
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,398.97
  • gatechain-tokenGate (GT) $ 10.09
  • cosmosCosmos Hub (ATOM) $ 2.36
  • arbitrumArbitrum (ARB) $ 0.194852
  • kaspaKaspa (KAS) $ 0.042167
  • quant-networkQuant (QNT) $ 77.48
  • usddUSDD (USDD) $ 1.00
  • algorandAlgorand (ALGO) $ 0.118689
  • render-tokenRender (RENDER) $ 2.00
  • ignition-fbtcFunction FBTC (FBTC) $ 92,872.00
  • filecoinFilecoin (FIL) $ 1.37
  • myx-financeMYX Finance (MYX) $ 5.25
  • dashDash (DASH) $ 79.43
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 92,633.00
  • official-trumpOfficial Trump (TRUMP) $ 4.96
  • nexoNEXO (NEXO) $ 0.953416
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 92,458.00
  • story-2Story (IP) $ 2.66
  • vechainVeChain (VET) $ 0.010763
  • midnight-3Midnight (NIGHT) $ 0.055591
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 3,439.20
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,475.54
  • usdtbUSDtb (USDTB) $ 0.999032
  • flare-networksFlare (FLR) $ 0.010164
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999588
  • bonkBonk (BONK) $ 0.000009
  • xdce-crowd-saleXDC Network (XDC) $ 0.041556
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 10.96
  • wrappedm-by-m0WrappedM by M0 (WM) $ 0.996676
  • ousgOUSG (OUSG) $ 114.00
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 92,177.00
  • sei-networkSei (SEI) $ 0.111246
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.02
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,420.82
  • clbtcclBTC (CLBTC) $ 91,038.00
  • morphoMorpho (MORPHO) $ 1.28
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.01
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.10
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.11
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 155.46
  • beldexBeldex (BDX) $ 0.087500
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 3,404.41
  • usdaiUSDai (USDAI) $ 1.00
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.010374
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 3,202.05
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999617
  • jupiter-exchange-solanaJupiter (JUP) $ 0.198969
  • tezosTezos (XTZ) $ 0.560903
  • optimismOptimism (OP) $ 0.309123
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.22
  • chilizChiliz (CHZ) $ 0.058175
  • wrapped-flareWrapped Flare (WFLR) $ 0.010165
  • usual-usdUsual USD (USD0) $ 0.998337
  • blockstackStacks (STX) $ 0.329215
  • curve-dao-tokenCurve DAO (CRV) $ 0.395162
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.243784
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.848135
  • c8ntinuumc8ntinuum (CTM) $ 0.127083
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 3,202.78
  • tbtctBTC (TBTC) $ 92,525.00
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 24.24
  • riverRiver (RIVER) $ 27.03
  • gtethGTETH (GTETH) $ 3,201.47
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.998710
  • a7a5A7A5 (A7A5) $ 0.012663
  • ghoGHO (GHO) $ 0.999558
  • true-usdTrueUSD (TUSD) $ 0.999464
  • fasttokenFasttoken (FTN) $ 1.09
  • injective-protocolInjective (INJ) $ 4.71
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 3,443.40
  • spx6900SPX6900 (SPX) $ 0.499418
  • janus-henderson-anemoy-treasury-fundJanus Henderson Anemoy Treasury Fund (JTRSY) $ 1.09
  • msolMarinade Staked SOL (MSOL) $ 180.90
  • lido-daoLido DAO (LDO) $ 0.544293
  • aerodrome-financeAerodrome Finance (AERO) $ 0.501493
  • ether-fiEther.fi (ETHFI) $ 0.645809
  • stader-ethxStader ETHx (ETHX) $ 3,452.92
  • lighterLighter (LIT) $ 1.79
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,587.09
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.11
  • celestiaCelestia (TIA) $ 0.501420
  • doublezeroDoubleZero (2Z) $ 0.124028
  • flokiFLOKI (FLOKI) $ 0.000044
  • sbtc-2sBTC (SBTC) $ 93,921.00
  • newton-projectAB (AB) $ 0.004358
  • starknetStarknet (STRK) $ 0.080311
  • staked-aaveStaked Aave (STKAAVE) $ 163.79
  • cap-usdCap USD (CUSD) $ 1.00
  • the-graphThe Graph (GRT) $ 0.038135
  • syrupMaple Finance (SYRUP) $ 0.352788
  • usdbUSDB (USDB) $ 0.997111
  • sun-tokenSun Token (SUN) $ 0.020864
  • bittorrentBitTorrent (BTT) $ 0.00000041
  • wrapped-apecoinWrapped ApeCoin (WAPE) $ 0.197653
  • decredDecred (DCR) $ 22.62
  • trust-wallet-tokenTrust Wallet (TWT) $ 0.911188
  • gnosisGnosis (GNO) $ 142.65
  • bitcoin-svBitcoin SV (BSV) $ 18.73
  • jasmycoinJasmyCoin (JASMY) $ 0.007562
  • conflux-tokenConflux (CFX) $ 0.072090
  • resolv-usrResolv USR (USR) $ 0.999616
  • the-sandboxThe Sandbox (SAND) $ 0.138808
  • crvusdcrvUSD (CRVUSD) $ 1.00
  • iotaIOTA (IOTA) $ 0.086145
  • ethereum-name-serviceEthereum Name Service (ENS) $ 9.56
  • wrapped-stx-velarWrapped STX (Velar) (WSTX) $ 0.361515
  • resolv-wstusrResolv wstUSR (WSTUSR) $ 1.13
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 3,195.57
  • kinesis-goldKinesis Gold (KAU) $ 149.76
  • euro-coinEURC (EURC) $ 1.16
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 92,309.00
  • justJUST (JST) $ 0.040195
  • apenftAINFT (NFT) $ 0.00000036
  • humanityHumanity (H) $ 0.193824
  • olympusOlympus (OHM) $ 21.39

Chainalysis discovers 82K wallets tied to address poisoning scam

0 109

Chainalysis discovers 82K wallets tied to address poisoning scam

Address poisoning is a seemingly simple scam, which nevertheless can affect even experienced crypto users. Chainalysis has discovered up to 82K wallets linked to a campaign of targeting users with high balances.

Address poisoning continues as one of the most common, yet efficient attacks. Public blockchains reveal wallets with attractive balances, and bots target them, hoping to mix technological attacks with a human mistake. The poisoned addresses were created in a short time span, but personal losses happen multiple times, once the victim becomes active again on-chain. In the past day, one loss of $57,000 was registered due to a poisoned address copied from the transaction history.

?? 42 minutes ago, a victim lost $57,000 by copying the wrong address from a contaminated transaction history.

Note: Never copy addresses from transaction history. ?? pic.twitter.com/ypjn8iMOcO

— NODE GUARD SOLUTION. (@NodeGuard_Pro) October 23, 2024

Chainalysis has tracked down 82K wallets tied to attempts at poisoning by posting fake zero-value tokens. The address poisoning scam is also similar to the zero-value token attack, though with the added generation of a confusing address. Tools for poisoned address attacks are also distributed on darknet markets.

The attack depends on users not verifying their addresses closely enough, by issuing similar digits at the beginning and end of the address. The attack hinges on crypto user habits of only checking the first and last four digits of an address.

Some of the most common fake tokens or zero-sum transactions involve USDT, TRX, or MATIC, or a faked version of the token. A part of the transactions also copy the amount previously used, creating a similar-looking wallet entry. Others send entirely new tokens as an airdrop. The wallet itself is not hacked in this type of attack, and there is no risk to the funds when receiving seeding transactions.

Poisoned address scams may target even small balances, but this type of attack was behind one of the biggest losses in 2024. Poisoned addresses managed to drain $68M Wrapped BTC (WBTC) from a single wallet.

In this case, the exploiter later returned the funds, after earning $3M due to the appreciation of BTC at that time. The victim contacted the exploiter through Ethereum micro-transactions with messages attached, leading to a full refund three days later.

Poisoned addresses still spread on Ethereum

The large-scale heist helped Chainalysis discover more poisoned addresses. A total of eight wallets were responsible for launching the fake addresses during a campaign-like, concentrated event.

Chainalysis discovered a total of 82,031 spoofed addresses, which resemble legitimate counterparties. The newly created poisoned addresses were close to 1% of all new Ethereum wallets launched in a similar time period.

The network of poisoned addresses managed to scam more experienced users with a higher wallet balance. A total of 2,774 wallets sent funds to the faked addresses, diverting a total of $69.72M. The wallets contained up to $338K, though most held smaller sums of $1,000. What was also common is that the victims were usually active traders and Ethereum users.

The wide network of poisoned addresses had a relatively small success. Of the wallets targeted, 756 caught the scam with a test transaction or a smaller sum under $100. The transactions sometimes even spoofed the victim’s own wallets. In that case, owning a human-readable ENS address could mitigate the risk.

Similar campaigns have ran on Binance Smart Chain, with the Binance team now flagging zero-value transactions and spoof addresses. Reports of Toncoin (TON) poisoned addresses have also surfaced, with 0 TON transactions as the bait.

Scammers launder funds through DeFi and exchanges

While the biggest $68M haul was not laundered efficiently, smaller sums could be disguised and liquidated. Scammers used DeFi protocols, then centralized exchanges to both clear their tracks and swap the initial funds.

Some of the exchanges involved in the scam were no-KYC markets in Eastern Europe, with less stringent regulations on the origin of funds. The transfers to an exchange were the last leg of the destination, after mixing the funds through DeFi protocols and decentralized markets.

Campaigns of seeding wallets are usually short, but can have outsized earnings. Block explorers have started flagging the fake transactions, so users can check their history before sending funds.

Source

Leave A Reply

Your email address will not be published.