News

Pendle Permit Phishing Scam Causes Crypto User Loses $11 Million

Key Points:

  • A Pendle Permit phishing scam led to a user losing $11 million in aEthMKR and Pendle USDe tokens.
  • The scam involved tricking the user into signing fraudulent permits and granting unauthorized access to their assets.
A user has fallen victim to a sophisticated phishing scam, resulting in the loss of $11 million in digital assets, including aEthMKR and Pendle USDe tokens.

Pendle Permit Phishing Scam Costs Crypto User $11 Million in Digital Assets

Phishing is a cyber-attack where victims are tricked into providing sensitive information, such as private keys or passwords, by attackers posing as trustworthy entities. In this case, the Pendle Permit phishing scam, reported by Scam Sniffer, the user was deceived into signing a fraudulent permit, leading to the unauthorized transfer of their assets.

The Pendle Permit phishing scam exploited a feature enabled through EIP-2612, known as Pendle Permit. The protocol removes the need for prior authorization when interacting with smart contracts, allowing for the generation of authorization signatures without on-chain transactions.

As a result, victims can unknowingly sign permits for malicious websites without broadcasting them to the blockchain. The possession of these signatures alone grants authorization, making the system particularly vulnerable to abuse.

According to cybersecurity firm SlowMist, this feature carries significant risks as attackers can easily deceive users into signing malicious permits by imitating legitimate websites.

MakerDAO Governance Delegate Falls Victim to Cyber Attack

Wu Blockchain revealed that the victim’s address was identified by Arkham as belonging to a MakerDAO governance delegate, a key role within the MakerDAO ecosystem. Governance delegates are responsible for voting on crucial proposals, governance polls, and executive votes, thereby influencing major decisions within the Maker protocol.

MKR holders and delegates typically vote to progress proposals from initial polls to final executive votes, which are then implemented after a delay period known as the governance security module (GSM).

Harold

With a passion for untangling the complexities of the financial world, I've spent over four years in financial journalism, covering everything from traditional equities to the cutting edge of venture capital. "The financial markets are a fascinating puzzle," I often say, "and I love helping people make sense of them." That's what drives me to bring clear and insightful financial journalism to the readers of Coincu.

Recent Posts

Canada Extends Crypto Compliance Deadline Amid Stablecoin Risks

Canada extends crypto compliance deadline to the end of 2024, giving exchanges more time to…

6 hours ago

Which Cryptos Are Securities?

This article will explore which cryptos are considered securities, and how you can navigate the…

6 hours ago

BlockDAG Rolls Out a 50% Bonus On Coin Purchase Amid Rebranding While AVAX Face Troubles & Solana Updates

Score a 50% bonus on BDAG purchases! Explore how BlockDAG's presale exceeded $77M, delve into…

7 hours ago

Top Trending in Crypto Today: Hamster kombat’s (HMSTR) ‘Interlude’ Season, Rexas Finance’s (RXS) Presale Surge

This is the most thrilling time for every crypto enthusiast, and for good reason, there…

7 hours ago

Bitcoin ETF Inflow Surpasses $1 Billion This Week

Spot Bitcoin ETF inflows hit $494 million on September 27 with over $1 billion this…

10 hours ago

Binance Founder CZ Posted First Tweet Since Released From Prison

Binance founder CZ marked his return to social media with a tweet greeting the crypto…

11 hours ago

This website uses cookies.