financetom
Cryptocurrency
financetom
/
Cryptocurrency
/
Crypto User Loses $3.05 Million in Sophisticated Phishing Attack
News World Market Environment Technology Personal Finance Politics Retail Business Economy Cryptocurrency Forex Stocks Market Commodities
Crypto User Loses $3.05 Million in Sophisticated Phishing Attack
Aug 6, 2025 7:06 AM

A single deceptive transaction cost one cryptocurrency user a staggering $3.05 million in USDT tokens today.

Blockchain security firms Lookonchain, PeckShield, and Scam Sniffer reported the incident, tracing the theft to a phishing attack where the victim unknowingly signed a malicious transfer, draining their wallet of Aave-wrapped USDT (aEthUSDT).

Anatomy of a Multi-Million Dollar Theft

According to on-chain data analyzed by Scam Sniffer, the victims address, 0x2d986695, interacted with a phishing contract, after which they signed a transaction authorizing the transfer of their aEthUSDT tokens, worth over $3 million, to the scammers address.

The security experts stated that the scam relied entirely on tricking the user into approving this single, harmful transaction, bypassing the need for direct wallet access.

This incident follows a worrying pattern identified by Scam Sniffer involving attackers exploiting EIP-7702 upgraded addresses. Only recently, the platform revealed two addresses that lost $146,551 and $66,000 from such tactics, with malicious batched transfers disguised as legitimate Uniswap swap operations.

Attackers use batch transfers routing through Uniswap Universal Router to appear legitimate. Be extra cautious! the on-chain security platform warned.

Just days ago, the firm reported on another victim who lost more than $908,000 from a phishing approval they had signed 458 days earlier, advising users to “regularly review and revoke old approvals.”

These events follow broader trends highlighted in a recent Bitget report: crypto recorded $4.6 billion in scam losses during 2024, with AI-enabled fraud accounting for nearly 40% of high-value drain events.

What Users Need to Know

Phishing attack lines often simulate support, wallet prompts, or investment depictions, only to steal when users sign fake requests. Those behind such scams commonly use social media links, fake KYC portals, or false contract prompts. Therefore, users are advised to religiously verify all transactions before signing, especially batch or approval prompts, and confirm that URLs come from official sources.

This latest case demonstrates how high-value addresses remain only a signature away from ruin, despite strong on-chain experience or wallet age. The fact that over $3 million was transferred in a batch suggests advanced targeting, not just random spam.

Recent regulatory moves and industry watchdog programs, like Bitget, SlowMist, and Elliptic’s $300 million Anti‑Scam Hub, are aiming to detect and disrupt such fraudulent networks, but users must remain cautious. Not all security providers can act in real time, and, like crypto security experts warn, defenders lose more than they can prevent unless every on‑chain signature is questioned.

Comments
Welcome to financetom comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
Related Articles >
Bitcoin Plummets Toward $60k As Federal Reserve Considers Keeping Rates Elevated
Bitcoin Plummets Toward $60k As Federal Reserve Considers Keeping Rates Elevated
May 10, 2024
Bitcoin’s price fell 2.5% to $60,300 on Friday as Federal Reserve officials weighed their options for combatting stubborn price inflation in the United States. Bitcoin traded for $63,400, at noon UTC on Friday, before plummeting below $61,000 over the next few hours. According to Coinglass, the volatility triggered $175 million in liquidations over the past 24 hours. The single largest...
Kraken Challenges SEC’s Case Accuracy in Ongoing Dispute
Kraken Challenges SEC’s Case Accuracy in Ongoing Dispute
May 10, 2024
Kraken and the US Securities and Exchange Commission (SEC) remain embroiled in a dispute, as the crypto exchange filed a new document questioning the accuracy of the regulators case. The development comes three months after Kraken filed a motion to dismiss the SECs lawsuit against it. SECs Case Isnt Worded Correctly Kraken recently filed a response to the SECs April...
The Most Important Developments in the Ripple v. SEC Trial: Two Week Recap
The Most Important Developments in the Ripple v. SEC Trial: Two Week Recap
May 10, 2024
TL;DR The legal confrontation between Ripple and the SEC intensifies, with recent filings focusing on whether a key witnesss declaration is standard evidence or unsolicited expert testimony. As both parties await a judicial ruling, speculations arise about a potential settlement this summer. The SECs Actions The legal case between Ripple and the US Securities and Exchange Commission (SEC), which dates...
Top Polkadot (DOT) Price Predictions for 2024
Top Polkadot (DOT) Price Predictions for 2024
May 10, 2024
TL;DR Despite its recent 14% decline to around $7, some analysts think Polkadot (DOT) has a huge potential to rally in the near future. A potential bull run depends on technical advancements and overcoming certain support zones. Is DOT a Sleeping Giant? The blockchain protocol Polkadot has passed through numerous developments as of late, capturing the eye of many industry...
Copyright 2023-2025 - www.financetom.com All Rights Reserved