$3 Million Phishing Attack Targets Multi-Signature Wallet
- An unidentified crypto investor lost over $3 million in USDC due to a phishing attack on September 11.
- The attack involved a fraudulent contract that mimicked a legitimate address, making detection difficult.
- Funds were quickly converted to Ethereum and laundered via Tornado Cash.
- The compromised wallet was a multi-signature wallet with a Safe protocol setup.
- Request Finance confirmed the deployment of a counterfeit version of its Batch Payment contract, affecting only one customer.
This incident highlights vulnerabilities in crypto transaction approvals, particularly through deceptive contracts that closely resemble legitimate ones. Security firms warn that such sophisticated phishing techniques may become more common as attackers refine their strategies.
The phishing attack drained $3 million from the victim’s wallet, underscoring the need for enhanced security measures in cryptocurrency transactions. (Source)