Crypto Holder Loses $12.25M to Address Poisoning Attack

ETH2,32%

In an address-poisoning scam, a crypto trader lost 4,556 ETH, worth $12.25 million. Fraudsters capitalize on transaction history by adding fraudulent addresses on a daily basis.

One crypto-holder lost 4,556 ETH, equivalent to $12.25million, in an advanced address-poisoning heist. The victim became a victim of scammers who were adding fraudulent addresses to transaction histories.

According to ScamSniffer on X, the attack occurred after the victim copied an address in an infected transfer history. The blockchain security service cautions its users against copying addresses on transaction histories.

🚨💔 10 hours ago, another victim lost 4,556 ETH ($12.25M) by copying the wrong address from a contaminated transfer history.

⚠️ Never copy the address from transfer histories. pic.twitter.com/L563Pug0qj

— Scam Sniffer | Web3 Anti-Scam (@realScamSniffer) January 31, 2026

Source: realScamSniffer

How Scammers Vanish With Millions Daily

Address poisoning exploits the address display in crypto wallets. Scammers create millions of vanity addresses that appear to be real and exploit them to send dust transactions to the wallets of victims.

The address of the victim, 0xd6741220a947941bF290799811FcDCeA8AE4A7Da, was supposed to transfer money to 0x6D90CC8Ce83B6D0ACf634ED45d4bCc37eDdD2E48. Nevertheless, they deposited ETH to the address of the scammer, 0x6d9052b2DF589De00324127fe2707eb34e592e48.

ScamSniffer described on X how transaction-history poisoning operates: scammers submit fraudulent transfers to similar addresses, and the transfers will be presented in the history of a victim. These are addresses that are copied by victims who believe they are genuine.

The transactions in blockchain are irreversible. The stolen money disappeared forever in the wallet of the scammer.

December Attack Claimed $50M From Single Trader

Another trader lost 49,999,950 USDT in December 2025 through similar tactics. The victim initially sent a test deposit of 50 USDT, then the scammer had his or her automated script poison the history prior to the rest of the 50 million USD being transferred.

Security specialists at Cyvers and Immunefi report industrial-scale attacks.In January 2026, there were 2.8 million Ethereum transactions per day. Millions of them are poisonous transactions aimed at victims, according to Citi researchers.

Over 1 million attempts to poison are made each day on Ethereum. On January 21, 2026, the Saga EVM blockchain suspended its operations following the drain of 7 million dollars by hackers. The Truebit protocol had lost 26.6 million ETH in a security exploit that had occurred previously.

ShinyHunters hackers demanded ransom money to have Waltio, a French crypto-tax site, release customer information of 50,000 users, purportedly stolen.

Chainalysis announced that over 17 billion was stolen by means of several types of scams in 2025. Impersonation fraud, such as address poisoning, increased 1,400 percent in comparison to past years.

Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.

Related Articles

Web3 wallet Zerion detected abnormal activity on the platform; the web service is temporarily offline

Gate News message, April 11, Web3 wallet Zerion posted an announcement on the X platform saying that it detected abnormal activity on the platform, and the web app service has been temporarily taken offline. Zerion urges users to temporarily not use the web app; at the moment, the iOS and Android apps, as well as the browser extension program, are running normally and are secure, and users’ funds in the wallet are not affected. Zerion says it is actively monitoring the situation, and it will notify users separately once the web application is restored.

GateNews2h ago

Phantom Wallet crashes big time! During the airdrop period, token prices went haywire and balances were reset to zero—users blasted it for “making them pay up.”

Phantom, a wallet in the Solana ecosystem, experienced a service outage during the airdrop, causing abnormal token prices and account balances to be displayed, which affected user transactions. Some users suffered losses as a result and demanded compensation. Security experts warned of the risk of phishing attacks and advised users to verify on-chain data. Although the issue has been fixed, the trust crisis still needs to be monitored. This incident highlights the challenges of self-custody wallets in terms of system stability and the user experience.

区块客3h ago

TAO Plummets 25% as Bittensor Co-Founder Accused of Using Token Sales to Coerce Compliance

Bittensor's TAO token dropped 25% due to allegations of centralized control by co-founder Jacob Steeves, resulting in $650 million market cap loss and $9.1 million liquidations. The controversy raises concerns about the project's governance.

Coinpedia3h ago

Bitcoin Depot Discloses $3.6M BTC Theft After Hack on Settlement Accounts

Bitcoin Depot reported a security breach where hackers stole 50.9 BTC, worth approximately $3.6 million, by compromising internal settlement account credentials. This incident highlights vulnerabilities in crypto companies' operational infrastructure, emphasizing the need for enhanced security measures.

CryptoNewsFlash6h ago

OpenAI Releases an Announcement on a Third-Party Library Security Incident: No Evidence of User Data Leaks or System Intrusion Found

OpenAI issued a security advisory on April 11 confirming that it identified a security issue involving the third-party library Axios, but found no evidence that user data was accessed. To ensure security, the company requires all macOS users to update to the latest version to prevent the risk of forged applications.

GateNews7h ago

Blockchain security losses from 2026 to date are nearly $800 million, with incidents related to North Korea accounting for about 42%.

Since January 1, 2026, CertiK Alert has recorded 163 blockchain security incidents, with total losses of about $796.7 million. Of these, 12 were related to North Korean hacker organizations, with losses of about $329 million, accounting for 42% of total losses. Compared with the 60% share in 2025, it has declined.

GateNews9h ago
Comment
0/400
No comments