Centralized Exchange Hot Wallet Compromised via Private Key Deduction Flaw
A critical wallet system vulnerability allowed private key inference from public transaction data, demonstrating catastrophic operational security failure.
Malicious Signature Phishing Drains User Wallets across Web3 Ecosystem
The systemic risk is shifting from smart contract flaws to user-signed malicious approvals, enabling rapid, irreversible wallet-draining attacks.
Web3 Users Compromised by New Eleven Drainer Phishing-as-a-Service
Eleven Drainer is the latest DaaS threat, leveraging social engineering to trick users into signing malicious token approvals, bypassing smart contract security.
New Phishing-as-a-Service Group Targets Web3 Wallet Token Approvals
The emergence of Eleven Drainer professionalizes social engineering, weaponizing malicious `permit` and `approve` calls to systematically sweep user-approved assets.
Ethereum Whale Loses $6m to Gas-Free Phishing Attack
A critical vulnerability in off-chain approval mechanisms allowed a sophisticated phishing attack to drain $6 million in assets.
