Phantom Wallet Security Breach: $264K WBTC Lost in Address Poisoning Scam
A Phantom wallet user fell victim to an address poisoning attack, losing $264,000 in Wrapped Bitcoin (WBTC). The scam involved the attacker sending small transactions to the victim's wallet, hoping the user would mistakenly copy the fraudulent address for future transactions. Blockchain investigator ZachXBT highlighted Phantom Chat as a potential vulnerability, urging the company to improve its interface to filter spam.
The crypto community, including Binance co-founder Changpeng Zhao, is calling for enhanced wallet security measures. Zhao emphasized the need for wallets to automatically detect and block known phishing addresses. This incident underscores the persistent risks in decentralized finance and the importance of user vigilance.
Security experts warn that address poisoning scams are becoming increasingly sophisticated. The attack Leveraged Nansen's 'high balance' tagging system, demonstrating how public blockchain data can be weaponized against holders of significant assets.