简体中文
繁體中文
English
Pусский
日本語
ภาษาไทย
Tiếng Việt
Bahasa Indonesia
Español
हिन्दी
Filippiiniläinen
Français
Deutsch
Português
Türkçe
한국어
العربية
Bad Actor Drained More than 7,500 ETH Out of Uniswap LP Wallets
Abstract:The bad actor targeted over 70,000 ETH wallets, spending over 8 ETH in gas fees. How the phishing attack was carried out, including the technical side and defensive measures.

Hackers are becoming more sophisticated and employ different tactics to deceive investors. A method that is becoming increasingly popular is a malicious airdrop.
Take Advantage of the Biggest Financial Event in London. This year we have expanded to new verticals in Online Trading, Fintech, Digital Assets, Blockchain, and Payments.
Initially, it was believed Uniswap's protocols were exploited. It was later determined that a phishing attack drained approximately $8 million out of Uniswap's liquidity providers.
Uniswap is a popular decentralized exchange (DEX) for Ethereum including tokens on the ETH mainnet.
How the Phishing Attack Starts?
In the first stage, the bad actor hits the explorers index so the 'From' address appears legitimate, 'Uniswap V3: Positions NFT'. This is called an event pollution attack.

Tokens are sent from the bad actor to numerous addresses. Investors that receive the tokens are curious why 'Uniswap' send them tokens. When checking the token's name the investors are led to the following website: uniswaplp.com (do not visit).
The LP that follows Uniswap in the url stands for liquidity provider.
Upon visiting the website, the following message is displayed:
Liquidity provider rewards At 14:00 UTC, July 11, 2022, Uniswap distributed the UniswapLP tokens, based on the provided liquidity, to the existing UNI-V3 liquidity providers.
“If you have received the UniswapLP tokens, then you are eligible to claim the UNI tokens from this page by clicking on the below button.”

As the investors already have received tokens from 'Uniswap' and that only 10k UNI will be airdropped, if claiming is not done immediately there is a risk of the investors missing a portion from the 10,000 UNI.
Employing fear of missing out (FOMO) plays a major role in luring investors into the trap. Upon clicking on the document, a call is made to ethall().
The user's browser info and wallet address are sent to /66312712367123.com.
It may then ask the user to send the tokens to their ETH address. Upon doing so, the bad actor gains full access to the victim's address and drains the account.
The above findings were reported by Harry Denley.
The bad actor sent the 'uniswap' tokens to over 70,000 addresses, spending a substantial amount (over 8 ethers) on gas fees. Among the targeted addresses were large ETH holders.
The vast majority of crypto investors are aware of these scams. However, many are caught off guard if they do not pay full attention to the information in from of them.
The bad actor already commenced laundering the stolen ethers via Tornado Cash, sending 100 ETH per transaction to the mixer.
How to Defend against Similar Attacks?
There are several methods that can be adopted that may reduce the odds of becoming a phishing attack victim in the crypto space. Airdrops must be verified through the project's social media channels.
It may be Twitter, Telegram or Discord etc. If we take a scenario where the project's social media accounts are compromised, which has occurred in the past, paying attention to the permissions that are given upon interacting with the contract including the web address may help.
Another method, which is fairly new is using Forta, which offers real-time security. Forta's threat detection kit may be used for threat detections in NFTs, stablecoins, bridges and more.
ZenGo wallet has a feature called ClearSign that verifies interactions with contracts. As attacks are becoming more sophisticated, it is essential to take the required time to investigate the legitimacy of what you receive including in emails.

Disclaimer:
The views in this article only represent the author's personal views, and do not constitute investment advice on this platform. This platform does not guarantee the accuracy, completeness and timeliness of the information in the article, and will not be liable for any loss caused by the use of or reliance on the information in the article.
Read more

Charles Schwab Review: Traders Claim Illegitimate Profit Cancellation, Trade Manipulation & More
Have you been lured into the Charles Schwab app for trading on the back of outrageous profit claims by the broker? Did you fail to receive any of these? Does the broker deny withdrawals every time you request and cancel your forex trading account? Have you been victimized financially by its trade manipulation? Act before you are left with a NIL balance in your account. Many traders have questioned Charles Schwab customer service and many other operational executives for the aforementioned illegitimate trading activities. In this Charles Schwab review article, we have shared some of their comments. Read on!

AMP Futures Exposed: Traders Raise Alarms Over Illegitimate Account Blocks & Bad Customer Service
Has AMP Futures blocked your forex trading account? Does it fail to provide any explanation for this act? Do you face issues concerning deposits to your AMP Futures account? Is the customer service non-existent for any trading query you raise with it? You are not alone! Many traders have been facing these issues upon AMP Futures login. Some of them have commented on AMP Futures review platforms. In this article, we have shared some reviews that you can look at. Read on!

FXGlory Review: Vanishing Profits, Capital Scams & Withdrawal Charges Keep Annoying Traders
Does FXGlory remove all your forex trading account balances upon fund withdrawal requests? Or do you witness incorrect trading account balances after fund withdrawals? Does the Saint Lucia-based forex broker charge you for fund withdrawals? All these and many more scam-related complaints have been filed against the forex broker. In this FXGlory review article, we will discuss several complaints. Read on!

PINAKINE Broker Review: A Complete Look at Its Services and Risks
Finding a trustworthy broker from the huge and often confusing world of online trading options is one of the biggest challenges a trader faces. In this competitive market, PINAKINE Liquidity Limited has appeared, getting attention with promises of high leverage and zero-commission trading. However, a closer look shows important factors that every potential client must think about before investing. The most important thing to consider with PINAKINE is that it has no regulation. This fact completely changes how risky the broker is and has major effects on how safe your investments will be. This review gives a complete and fair examination based on information available to the public. We will break down its services, trading conditions, platform technology, and the possible risks involved, helping you make a fully informed decision.

