Connect with us

Hi, what are you looking for?

Top Stories

Fake MetaMask 2FA Pages Uncovered as New Phishing Scheme Targets Users

A recent alert reveals scammers using fake MetaMask 2FA pages to steal wallet recovery phrases.

In a significant alert, SlowMist Chief Security Officer, known as “23pds,” has unveiled a new phishing campaign aimed at MetaMask users. This sophisticated scheme employs counterfeit two-factor authentication (2FA) verification pages to deceive individuals into divulging their wallet recovery phrases.

The phishing attack operates through convincingly designed replicas of MetaMask“s security interface, creating an illusion of routine security checks. Victims are initially drawn to spoofed websites with domains closely resembling the official MetaMask site, such as “mertamask.” Upon arriving at these sites, users are confronted with what appears to be a legitimate security alert indicating suspicious account activity.

As the scam unfolds, victims are coerced into completing a fabricated 2FA verification process, complete with countdown timers and realistic safety messaging. The final stage of this malicious scheme prompts users to enter their seed phrase, misleadingly framed as a requirement to finalize the authentication. This action effectively grants attackers unrestricted access to the victim”s wallet.

Despite a notable decline in phishing-related cryptocurrency losses in 2025, experts caution that attackers are refining their methods. Data from ScamSniffer indicates that wallet-draining losses plummeted 83% year-over-year, totaling $83.85 million, down from nearly $494 million in 2024. Additionally, the number of affected users saw a significant reduction, decreasing by 68% to around 106,000.

However, the trends reveal that phishing activity remains closely tied to broader market fluctuations. Notably, losses peaked during the third quarter of 2025, coinciding with a robust rally in Ethereum, with the months of August and September accounting for nearly 29% of the total losses for the year. The most prominent incident recorded involved a theft amounting to $6.5 million in September, linked to a malicious Permit signature.

The evolving landscape of Ethereum exploits and a notable shift towards targeting retail victims is evident following the Pectra upgrade. Attackers have been taking advantage of EIP-7702-based malicious signatures, enabling them to bundle multiple harmful actions into a single approval. Recent coordinated attacks across EVM-compatible chains have drained hundreds of wallets, typically extracting less than $2,000 per address.

In response to the rising threat of phishing attacks, major wallet providers, including MetaMask, Phantom, WalletConnect, and Backpack, have united with the Security Alliance (SEAL) to establish a global phishing defense network. This collaboration aims to enhance real-time identification and blocking of phishing threats, offering users a more secure experience.

As the cryptocurrency landscape continues to evolve, it is crucial for users to remain vigilant and informed about the tactics employed by scammers. Awareness and education are key components in safeguarding digital assets against sophisticated phishing schemes.

Trending

You May Also Like

Markets

Bitcoin"s value against gold has reached a critical support level; will it bounce back?

Markets

AVAX is currently trading between $21.40 support and $23.50 resistance levels, with potential for short-term recovery.

Top Stories

BitRss provides real-time updates and curated content for the crypto community around the clock

Top Stories

A counterfeit Hyperliquid app has been identified, raising concerns over user scams.

Markets

Dogecoin"s open interest has fallen to its lowest in six months, signaling potential price volatility ahead.

Business

Ripple"s recent achievements spark discussions on an IPO, though the company denies any immediate plans.

Markets

Ethereum struggles to maintain a $3.2K floor amidst significant DeFi market outflows and low buying conviction.

Business

Despite market fears, crypto investment is robust, with AI projects attracting significant capital.

Business

Kazakhstan plans to establish a national crypto reserve fund to diversify its economy beyond oil.

Regulation

Finland will adopt the OECD"s Crypto-Asset Reporting Framework to enhance crypto transaction transparency by 2026.

Markets

Ethereum"s price has dropped to around $3,200, with significant losses recorded over the past month.

Markets

WunderTrading offers a non-custodial platform for automated cryptocurrency trading without asset custody.

Copyright © 2024 COINNEWSBYTE.COM. All rights reserved. This website provides educational content, emphasizing that investing involves risks. Ensure you conduct thorough research before investing and be ready for any potential losses. For those over 18 and interested in gambling: Online gambling laws differ across countries; adhere to your local regulations. By using this site, you agree to our terms, including the presence of affiliate links that do not impact our evaluations. Cryptocurrency offers on this site are not in line with UK financial promotion regulations and are not aimed at UK consumers.