CCT - Crypto Currency Tracker logo CCT - Crypto Currency Tracker logo
crypto.news 2025-01-13 09:12:32

Leaked OpenSea user emails now public, SlowMist warns of phishing risks

Over 7 million OpenSea users are at risk after email addresses compromised in a 2022 data breach were recently made fully public. According to blockchain security firm SlowMist’s chief information security officer, 23pds, the leaked data significantly increases the risk of phishing and other attacks. In a Jan. 13 X post , the security researcher alerted crypto community members that the compromised data had been disseminated multiple times before it was publicized. 23pds added that the leaked data includes email addresses belonging to prominent figures in the cryptocurrency industry, such as former Binance CEO Changpeng “CZ” Zhao, as well as well-known companies, key opinion leaders, and other influential individuals, warning that it poses additional risks to the privacy and asset security of the crypto industry in the future. The email addresses in question were compromised in a June 2022 incident involving an employee of Customer.io, OpenSea’s email delivery vendor, who misused their access to download and share email addresses provided by OpenSea users and newsletter subscribers with an unauthorized external party. At the time, the non-fungible token marketplace advised users to be on the lookout for phishing and impersonation attempts, warning against downloading attachments or signing wallet transactions from email links, adding that all official communication would come only from its ‘opensea.io’ domain. You might also like: OpenSea to launch new platform next month, CEO says As one of the largest NFT marketplaces, OpenSea users have been targeted by phishing scammers on several occasions. Just months after the data leak, in December 2022, a blockchain security platform alerted users that attackers were using phishing websites to exploit OpenSea’s gasless transaction feature. Victims were tricked into signing unintelligible signature requests, which unknowingly authorized private sales or immediate transfers of valuable NFTs to the account of the attackers. In November 2023, OpenSea developers were targeted by phishing campaigns, including fake developer account risk alerts, leading some experts to believe developer contact information may have been breached. Similarly, in January 2024, scammers sent emails to OpenSea users promising an exclusive mint event for a limited edition NFT collaboration between Nike and RTFKT. The email claimed recipients were among 400 selected participants and included a link to “Mint RTFKT Now,” which reportedly directed victims to a malicious website designed to steal wallet information or funds. Phishing scams remain a major threat for cryptocurrency enthusiasts due to the many forms they come in, making them difficult to trace and even harder to prevent effectively. Experts advise users to stay vigilant by verifying email sources, avoiding clicking on unknown links, enabling two-factor authentication, and never sharing private wallet keys or sensitive information online. Read more: Pudgy Penguin NFT price exceeds Bitcoin’s price on OpenSea

면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.