top of page

Crypto investor falls victim to phishing scam, loses $3M with single click

 Crypto investor falls victim to phishing scam, loses $3M with single click
Published date:
Source:
BB Finews
8/9/25, 6:46 AM

A cryptocurrency investor lost $3 million in a phishing scam after signing a malicious blockchain transaction without verifying the contract address, highlighting the risk posed by digital asset scams.

A single wrong click was all it took to drain $3 million worth of USDt (USDT) from an investor who failed to verify the contract address before signing the blockchain transaction.

“Someone fell victim to a phishing attack, signed a malicious transfer, and lost 3.05M $USDT,” according to a Wednesday X post from blockchain analytics platform Lookonchain. “Stay alert, stay safe. One wrong click can drain your wallet. Never sign a transaction you don’t fully understand.”

Wallet “0x2d9” total holdings Source: Nansen 

Crypto phishing attacks are social engineering schemes in which attackers share fraudulent links to steal victims’ sensitive information, such as private keys to cryptocurrency wallets.

Like most investors, the victim probably validated the wallet address by only matching the first and last few characters before transferring the $3 million to the malicious actor. The difference would have been noticeable in the middle characters, often hidden on platforms to improve visual appeal.

Related: Lazarus Group laundered over $200M in hacked crypto since 2020

Highlighting the need for more investor due diligence, another victim lost over $900,000 worth of digital assets to a sophisticated phishing attack on Sunday, 458 days after unknowingly signing a malicious approval transaction to a wallet-draining scam, Cointelegraph reported.

Source: SlowMist

These amounts pale in comparison to the $71 million lost to a wallet poisoning scam in May 2024, which took a surprising turn when the scammer had a change of heart and returned the $71 million in two weeks after folding to the growing pressure from global blockchain investigators who revealed the attacker’s potential Hong Kong-based IP address.

Related: CrediX recovers $4.5M in crypto after successful exploit negotiation

Crypto phishing attacks top security concern of 2024

Hackers are gradually shifting their focus from code to exploiting vulnerabilities in human psychology, which may be easier to bypass than protocol guardrails. 

Phishing attacks were the most costly attack vector for the crypto industry in 2024, netting attackers over $1 billion worth of stolen digital assets across 296 incidents, according to CertiK’s annual Web3 security report

Out of the almost 300 phishing attacks in 2024, at least three resulted in over $100 million worth of losses.

Incidents and losses in 2024 by month. Source: CertiK

“Phishing was the most costly attack vector last year,” a CertiK spokesperson told Cointelegraph. “Our figures are conservative; the actual figure is higher when you consider unreported incidents and other types of phishing scams like pig butchering.”

To counter this growing threat, the security team of Binance, the world’s largest exchange, developed an “antidote” against address poisoning scams, which launched an algorithm that detected nearly 15 million poisoned addresses, Cointelegraph reported in May 2024.

Magazine: $12.1M fraud suspect with ‘new face’ arrested, crypto scam boiler rooms busted: Asia Express

24 Hot News

 Strategy adds $18M in Bitcoin on fifth anniversary of BTC strategy

Strategy adds $18M in Bitcoin on fifth anniversary of BTC strategy

BB Finews
 Space tourism meets crypto as Blue Origin accepts Bitcoin, Ether, USDt

Space tourism meets crypto as Blue Origin accepts Bitcoin, Ether, USDt

BB Finews
 CoinDesk owner Bullish ups IPO goal to $1B as Wall Street backs crypto push

CoinDesk owner Bullish ups IPO goal to $1B as Wall Street backs crypto push

BB Finews
 Do Kwon to change plea in criminal case at Tuesday conference

Do Kwon to change plea in criminal case at Tuesday conference

BB Finews
 Paxos renews push for US bank license as stablecoin rules take shape

Paxos renews push for US bank license as stablecoin rules take shape

BB Finews
 Bitcoin miner MARA to acquire majority stake in Exaion in AI, HPC play

Bitcoin miner MARA to acquire majority stake in Exaion in AI, HPC play

BB Finews
 Ethereum core dev 'safe and free' after being detained in Turkey

Ethereum core dev 'safe and free' after being detained in Turkey

BB Finews
How AI could create the first one-person unicorn

How AI could create the first one-person unicorn

BB Finews
Ethereum’s $4,300 push meets falling Bitcoin dominance – Is a flippening next?

Ethereum’s $4,300 push meets falling Bitcoin dominance – Is a flippening next?

BB Finews
  • Page 44

Disclaimer:

This article is an original work by BBFinews, with copyright owned by Jinse Finance. Unauthorized reproduction is prohibited. Authorized media must indicate: “Source: BBFinews” when using this content. Violators will be held legally accountable.

 

Risk Warning:

Investment involves risks. Please exercise caution when entering the market. This content does not constitute investment or financial advice.

bottom of page