$3M Crypto Phishing Attack Targets Multi-Sig Wallet

$3M Crypto Phishing Attack Targets Multi-Sig Wallet
This article was prepared using automated systems that process publicly available information. It may contain inaccuracies or omissions and is provided for informational purposes only. Nothing herein constitutes financial, investment, legal, or tax advice.

A sophisticated phishing attack has resulted in a $3 million loss from a multi-signature wallet, highlighting evolving security threats in the crypto space. The attacker used a carefully crafted malicious contract that mimicked legitimate transactions. Blockchain investigators traced the stolen funds through Ethereum swaps into privacy mixer Tornado Cash.

  • Attackers used an Etherscan-verified fake contract deployed two weeks in advance with multiple batch payment functions to appear legitimate
  • The exploit specifically targeted the Safe Multi Send mechanism, disguising abnormal approvals within routine transaction authorizations
  • Security experts warn that similar attacks could originate from app vulnerabilities, compromised front-ends, malware, or DNS hijacking
Notifications 0