• bitcoinBitcoin (BTC) $ 117,777.00
  • ethereumEthereum (ETH) $ 3,796.23
  • xrpXRP (XRP) $ 3.14
  • tetherTether (USDT) $ 0.999927
  • bnbBNB (BNB) $ 789.74
  • solanaSolana (SOL) $ 178.56
  • usd-coinUSDC (USDC) $ 0.999805
  • staked-etherLido Staked Ether (STETH) $ 3,792.67
  • dogecoinDogecoin (DOGE) $ 0.221001
  • tronTRON (TRX) $ 0.325955
  • cardanoCardano (ADA) $ 0.774021
  • wrapped-stethWrapped stETH (WSTETH) $ 4,583.09
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 117,604.00
  • hyperliquidHyperliquid (HYPE) $ 43.06
  • suiSui (SUI) $ 3.79
  • stellarStellar (XLM) $ 0.413603
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 4,083.29
  • chainlinkChainlink (LINK) $ 17.63
  • bitcoin-cashBitcoin Cash (BCH) $ 567.43
  • hedera-hashgraphHedera (HBAR) $ 0.257069
  • wrapped-eethWrapped eETH (WEETH) $ 4,068.66
  • avalanche-2Avalanche (AVAX) $ 23.32
  • wethWETH (WETH) $ 3,797.40
  • litecoinLitecoin (LTC) $ 109.59
  • leo-tokenLEO Token (LEO) $ 8.96
  • the-open-networkToncoin (TON) $ 3.34
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • usdsUSDS (USDS) $ 0.999755
  • shiba-inuShiba Inu (SHIB) $ 0.000013
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 117,669.00
  • whitebitWhiteBIT Coin (WBT) $ 43.96
  • uniswapUniswap (UNI) $ 10.13
  • polkadotPolkadot (DOT) $ 3.82
  • moneroMonero (XMR) $ 305.45
  • bitget-tokenBitget Token (BGB) $ 4.51
  • pepePepe (PEPE) $ 0.000011
  • crypto-com-chainCronos (CRO) $ 0.144211
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.19
  • aaveAave (AAVE) $ 277.24
  • daiDai (DAI) $ 1.00
  • ethenaEthena (ENA) $ 0.564331
  • bittensorBittensor (TAO) $ 372.27
  • nearNEAR Protocol (NEAR) $ 2.66
  • ethereum-classicEthereum Classic (ETC) $ 21.41
  • pi-networkPi Network (PI) $ 0.417599
  • aptosAptos (APT) $ 4.49
  • ondo-financeOndo (ONDO) $ 0.953253
  • internet-computerInternet Computer (ICP) $ 5.39
  • okbOKB (OKB) $ 47.83
  • jito-staked-solJito Staked SOL (JITOSOL) $ 217.73
  • mantleMantle (MNT) $ 0.755323
  • kaspaKaspa (KAS) $ 0.093672
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • binance-peg-wethBinance-Peg WETH (WETH) $ 3,804.39
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.036321
  • algorandAlgorand (ALGO) $ 0.254348
  • usd1-wlfiUSD1 (USD1) $ 0.999043
  • bonkBonk (BONK) $ 0.000028
  • arbitrumArbitrum (ARB) $ 0.417734
  • vechainVeChain (VET) $ 0.024660
  • gatechain-tokenGate (GT) $ 17.39
  • cosmosCosmos Hub (ATOM) $ 4.43
  • render-tokenRender (RENDER) $ 3.83
  • fasttokenFasttoken (FTN) $ 4.58
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.218672
  • worldcoin-wldWorldcoin (WLD) $ 1.07
  • binance-staked-solBinance Staked SOL (BNSOL) $ 190.45
  • official-trumpOfficial Trump (TRUMP) $ 9.28
  • susdssUSDS (SUSDS) $ 1.06
  • skySky (SKY) $ 0.084707
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.690447
  • sei-networkSei (SEI) $ 0.309385
  • rocket-pool-ethRocket Pool ETH (RETH) $ 4,316.53
  • story-2Story (IP) $ 5.89
  • filecoinFilecoin (FIL) $ 2.51
  • spx6900SPX6900 (SPX) $ 1.84
  • flare-networksFlare (FLR) $ 0.024272
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,981.59
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 117,594.00
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 5.03
  • xdce-crowd-saleXDC Network (XDC) $ 0.099165
  • jupiter-exchange-solanaJupiter (JUP) $ 0.522654
  • usdtbUSDtb (USDTB) $ 0.999929
  • kucoin-sharesKuCoin (KCS) $ 11.33
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 3,991.81
  • curve-dao-tokenCurve DAO (CRV) $ 1.02
  • mantle-staked-etherMantle Staked Ether (METH) $ 4,064.93
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 4,102.28
  • usdt0USDT0 (USDT0) $ 0.998924
  • injective-protocolInjective (INJ) $ 13.92
  • blockstackStacks (STX) $ 0.754421
  • nexoNEXO (NEXO) $ 1.33
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.998938
  • celestiaCelestia (TIA) $ 1.79
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,996.00
  • optimismOptimism (OP) $ 0.704230
  • polygon-bridged-usdt-polygonPolygon Bridged USDT (Polygon) (USDT) $ 0.999816
  • falcon-financeFalcon USD (USDF) $ 0.999866
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 117,479.00
  • flokiFLOKI (FLOKI) $ 0.000112
  • fartcoinFartcoin (FARTCOIN) $ 1.08
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 201.06
  • wbnbWrapped BNB (WBNB) $ 790.98
  • conflux-tokenConflux (CFX) $ 0.200862
  • immutable-xImmutable (IMX) $ 0.550371
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 1.00
  • the-graphThe Graph (GRT) $ 0.099421
  • dogwifcoindogwifhat (WIF) $ 0.973532
  • sonic-3Sonic (S) $ 0.299878
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.80
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 117,632.00
  • pax-goldPAX Gold (PAXG) $ 3,313.03
  • ethereum-name-serviceEthereum Name Service (ENS) $ 28.13
  • clbtcclBTC (CLBTC) $ 120,697.00
  • syrupusdcSyrupUSDC (SYRUPUSDC) $ 1.11
  • kaiaKaia (KAIA) $ 0.158555
  • saros-financeSaros (SAROS) $ 0.353510
  • lido-daoLido DAO (LDO) $ 1.03
  • msolMarinade Staked SOL (MSOL) $ 234.33
  • pump-funPump.fun (PUMP) $ 0.002599
  • paypal-usdPayPal USD (PYUSD) $ 0.999768
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 1.33
  • tezosTezos (XTZ) $ 0.826288
  • vaultaVaulta (A) $ 0.535927
  • theta-tokenTheta Network (THETA) $ 0.835685
  • tether-goldTether Gold (XAUT) $ 3,306.48
  • super-oethSuper OETH (SUPEROETH) $ 3,795.69
  • mantle-restaked-ethMantle Restaked ETH (CMETH) $ 4,066.08
  • cgeth-hashkey-cloudcgETH Hashkey Cloud (CGETH.HASH) $ 3,984.79
  • iotaIOTA (IOTA) $ 0.200408
  • raydiumRaydium (RAY) $ 2.94
  • jasmycoinJasmyCoin (JASMY) $ 0.015521
  • galaGALA (GALA) $ 0.016405
  • pendlePendle (PENDLE) $ 4.37
  • the-sandboxThe Sandbox (SAND) $ 0.287469
  • aerodrome-financeAerodrome Finance (AERO) $ 0.812780
  • ousgOUSG (OUSG) $ 111.98
  • pyth-networkPyth Network (PYTH) $ 0.121674
  • bittorrentBitTorrent (BTT) $ 0.00000070
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.08
  • usdx-money-usdxStables Labs USDX (USDX) $ 0.998939
  • tbtctBTC (TBTC) $ 117,517.00
  • jito-governance-tokenJito (JTO) $ 1.84
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 3,796.58
  • zcashZcash (ZEC) $ 38.64
  • flowFlow (FLOW) $ 0.387364
  • newton-projectAB (AB) $ 0.008487
  • heliumHelium (HNT) $ 3.20
  • stader-ethxStader ETHx (ETHX) $ 4,039.82
  • usual-usdUsual USD (USD0) $ 0.997725
  • walrus-2Walrus (WAL) $ 0.419043
  • morphoMorpho (MORPHO) $ 1.79
  • ripple-usdRipple USD (RLUSD) $ 1.00
  • solv-protocol-solvbtc-bbnSolv Protocol Staked BTC (XSOLVBTC) $ 117,208.00
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 117,750.00
  • decentralandDecentraland (MANA) $ 0.295779
  • usddUSDD (USDD) $ 0.999713
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.221463
  • beldexBeldex (BDX) $ 0.076885
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 4,185.03
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 3,784.57
  • bitcoin-svBitcoin SV (BSV) $ 27.43
  • based-brettBrett (BRETT) $ 0.054575
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 3,797.47
  • syrupMaple Finance (SYRUP) $ 0.451312
  • memecoreMemeCore (M) $ 0.321811
  • mog-coinMog Coin (MOG) $ 0.000001
  • coredaoorgCore (CORE) $ 0.530815
  • chain-2Onyxcoin (XCN) $ 0.015597
  • swethSwell Ethereum (SWETH) $ 4,164.44
  • build-onBUILDon (B) $ 0.499690
  • true-usdTrueUSD (TUSD) $ 0.996673
  • thorchainTHORChain (RUNE) $ 1.38
  • ether-fiEther.fi (ETHFI) $ 1.16
  • reserve-rights-tokenReserve Rights (RSR) $ 0.008185
  • apecoinApeCoin (APE) $ 0.601321
  • apenftAPENFT (NFT) $ 0.00000048
  • arweaveArweave (AR) $ 7.30
  • telcoinTelcoin (TEL) $ 0.005125
  • zebec-networkZebec Network (ZBCN) $ 0.005337
  • savings-daiSavings Dai (SDAI) $ 1.16
  • keetaKeeta (KTA) $ 1.11
  • frax-etherFrax Ether (FRXETH) $ 3,732.88
  • starknetStarknet (STRK) $ 0.124122
  • neoNEO (NEO) $ 6.32
  • polygon-pos-bridged-weth-polygon-posPolygon PoS Bridged WETH (Polygon POS) (WETH) $ 3,796.36
  • dydx-chaindYdX (DYDX) $ 0.585446
  • wrapped-hypeWrapped HYPE (WHYPE) $ 43.02
  • compound-governance-tokenCompound (COMP) $ 46.67
  • aioz-networkAIOZ Network (AIOZ) $ 0.369096
  • ecasheCash (XEC) $ 0.000022
  • wemix-tokenWEMIX (WEMIX) $ 0.944068
  • elrond-erd-2MultiversX (EGLD) $ 15.02
  • dexeDeXe (DEXE) $ 7.34
  • kavaKava (KAVA) $ 0.384418
  • bridged-usdc-polygon-pos-bridgeBridged USDC (Polygon PoS Bridge) (USDC.E) $ 0.999803
  • treehouse-ethTreehouse ETH (TETH) $ 4,592.67
  • tripTrip (TRIP) $ 13.99
  • sun-tokenSun Token (SUN) $ 0.021535

DeFi Llama warns against malicious link spoofing its service

0 42

DeFi Llama warns against malicious link spoofing its service

DeFi Llama is the latest victim of a spoofing link. The data service warns against using top links from Google, as malicious activity has been noticed.

DeFi Llama warned against using Google to search for Llama Swap. The search yielded an advertising site as the top sponsored result, which remained live for more than two hours.

The website is not the native DEX on DeFi Llama, and will instead contain malicious links. The site has been reported to Google, but remained live for a while after DeFi Llama’s signal. The DeFi Llama Swap contracts have not been compromised, and there are no additional risk to users.

https://twitter.com/DefiLlama/status/1856288177608159679

DeFi Llama Swap aims to be a zero-fee service, seeking the most efficient route among multiple aggregators. The swap service is targeting Ethereum and L2 tokens, and is not compatible with Solana wallets. DeFi Llama itself is a passive data service that does not require a wallet connection.

Even with a malicious link, some wallets should warn about the discrepancy through internal checks, and prevent any transactions or permissions. Using sponsored content on Google is a relatively old way to serve fake links and attempt to drain wallets.

Google ads have targeted crypto projects, especially during bull runs when mainstream enthusiasm for crypto is rising. The ad arrived after a slight uptick in ‘DeFi’ search terms on Google.

The Defi Llama Swap spoof site was identical to the original, with the exception of the URL. The faked site was flagged for suspicious activity, but contains no malware. The risk comes from the voluntary decision of the user to connect a wallet and attempt a swap.

DeFi Llama warns against malicious link spoofing its service

DeFi Llama notified of a spoof link, which showed a suspicious URL. | Source: URL Analysis

DeFi Llama advises to reach the URL from its main data service page, and then make sure it is the same tab and connection. Similar search results remain a risk for other DEX and services. Any unofficial links requiring a wallet connection have the potential to send out transactions and drain wallets. As long as the user does not sign approvals or issue transactions, the link itself was not dangerous.

Phishing link scams accelerate, become more sophisticated

In addition to social media or chats, malicious calls to sign a transaction have also come from Lottie Player, a WordPress tool for animations and popups. Other recent reports reveal wallets may be attacked by malware posing as a Zoom link. Similar links have been posted for MetaMask and other often-used crypto services.

Phishing scams are a relatively minor part of overall crypto losses. However, they are some of the most damaging, as they attack personal holdings and wealth. In October, scams and project attacks accelerated, to more than 46 events based on Certik’s reporting. Phishing scams are an additional risk of loss, and may affect both end users and platforms.

Estimates put phishing scams at around $20M in October, extending the trend in the new month. This type of scam was happening the most often. The attempts to drain wallets reawakened in September, after a few slow months.

Targeting personal wallets is happening during NFT and meme token booms, where multiple crypto events may require a wallet connection. The hackers make use of lowered attention and hide behind legitimate services or spoofed links. On social media, malicious links are also contained in promises for fund recovery, often attempting to ask for a wallet’s private keys.

On-chain data shows up to 493 ETH stolen in September, the highest level for 14 weeks in a row. Scams are not happening regularly, and may hinge on campaigns and clustered attempts. Usually, a handful of wallets will spawn an attack in a short time frame. Similar to malicious links, poisoned addresses are also targeted operations, working fast within days to hit as many victims as possible.

More than 90% of phishing scam victims are users of the Ethereum network. Most wallet attacks are phishing, with under 10% linked to poisoned addresses.

Source

Leave A Reply

Your email address will not be published.

Verified by MonsterInsights