Aerodrome Finance Users Drained via Malicious DNS Hijacking Front-End Attack
The protocol's reliance on a centralized DNS provider was exploited, enabling a malicious frontend to solicit unlimited token approvals from users.
Web Users Targeted by Malware Using Blockchain for Payload Delivery
The EtherHiding campaign leverages smart contracts for resilient, decentralized malware C2, transforming the blockchain into a novel supply chain attack vector.
Web3 Users Compromised by EtherHiding Malware Campaign via JavaScript Injection
Threat actors are leveraging compromised websites and four BSC contracts to deploy credential-stealing malware, bypassing traditional network defenses.
Single Wallet Drained of ARB Tokens via Sophisticated Phishing Scam
Malicious token approval from a phishing vector bypassed cold storage security, leading to a swift $350K asset drain.
DeFi Exchange Users Drained by DNS Hijacking Front-End Attack
DNS infrastructure compromise redirected users to a malicious frontend, enabling the theft of over $1M via fraudulent unlimited token approvals.
