The incident, flagged on Sept. 18, shows how attackers are exploiting Ethereum’s convenience features to strike with little warning. A […] The post Ethereum Whale Wiped Out in $6M Gas-Free Phishing Attack appeared first on Coindoo.The incident, flagged on Sept. 18, shows how attackers are exploiting Ethereum’s convenience features to strike with little warning. A […] The post Ethereum Whale Wiped Out in $6M Gas-Free Phishing Attack appeared first on Coindoo.

Ethereum Whale Wiped Out in $6M Gas-Free Phishing Attack

2025/09/19 10:01

The incident, flagged on Sept. 18, shows how attackers are exploiting Ethereum’s convenience features to strike with little warning.

A Gas-Free Trap

The target lost both staked Ethereum (stETH) and Aave-wrapped Bitcoin (aEthWBTC) after approving a series of wallet prompts that looked routine. Because the signatures required no gas fees, the transaction raised no immediate suspicion. Within minutes, the assets were transferred out.

SlowMist founder Yu Xian noted that the victim likely believed he was just confirming harmless requests. “It felt like a couple of clicks — no cost involved — and suddenly millions were gone,” he said.

The attackers abused Ethereum’s Permit function, a tool created to simplify token transfers by letting users sign off-chain approvals. When combined with the TransferFrom function, that authorization allows funds to be drained directly once executed on-chain. By the time the approval shows up in a wallet interface, it’s already too late.

Bigger Trend of Phishing Losses

This whale isn’t alone. Scam Sniffer data shows August was one of the worst months on record for phishing, with over $12 million stolen from more than 15,000 addresses. Just three wallets made up nearly half of the losses, one of them losing more than $3 million in a single attack.

READ MORE:

XRP Gains Spotlight With U.S. Reserve Inclusion and ETF Hype

Researchers point to the rise of batch-signature schemes and malicious smart contracts as driving forces behind the surge. Attackers are increasingly relying on social engineering and deceptive approvals rather than complex exploits or costly gas wars.

Staying Safe in a Hostile Environment

Experts are urging users to treat wallet requests with extreme caution. Unlimited approvals, in particular, remain a common entry point for theft. Even experienced investors with deep pockets are falling victim, highlighting how fragile security can be when convenience tools are abused.

The $6 million theft serves as another warning that in decentralized finance, the weakest link isn’t always the code — sometimes it’s the human behind the screen.


The information provided in this article is for educational purposes only and does not constitute financial, investment, or trading advice. Coindoo.com does not endorse or recommend any specific investment strategy or cryptocurrency. Always conduct your own research and consult with a licensed financial advisor before making any investment decisions.

The post Ethereum Whale Wiped Out in $6M Gas-Free Phishing Attack appeared first on Coindoo.

Market Opportunity
FreeRossDAO Logo
FreeRossDAO Price(FREE)
$0.00011986
$0.00011986$0.00011986
+2.51%
USD
FreeRossDAO (FREE) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Will XRP Price Increase In September 2025?

Will XRP Price Increase In September 2025?

Ripple XRP is a cryptocurrency that primarily focuses on building a decentralised payments network to facilitate low-cost and cross-border transactions. It’s a native digital currency of the Ripple network, which works as a blockchain called the XRP Ledger (XRPL). It utilised a shared, distributed ledger to track account balances and transactions. What Do XRP Charts Reveal? […]
Share
Tronweekly2025/09/18 00:00
Why The Green Bay Packers Must Take The Cleveland Browns Seriously — As Hard As That Might Be

Why The Green Bay Packers Must Take The Cleveland Browns Seriously — As Hard As That Might Be

The post Why The Green Bay Packers Must Take The Cleveland Browns Seriously — As Hard As That Might Be appeared on BitcoinEthereumNews.com. Jordan Love and the Green Bay Packers are off to a 2-0 start. Getty Images The Green Bay Packers are, once again, one of the NFL’s better teams. The Cleveland Browns are, once again, one of the league’s doormats. It’s why unbeaten Green Bay (2-0) is a 8-point favorite at winless Cleveland (0-2) Sunday according to betmgm.com. The money line is also Green Bay -500. Most expect this to be a Packers’ rout, and it very well could be. But Green Bay knows taking anyone in this league for granted can prove costly. “I think if you look at their roster, the paper, who they have on that team, what they can do, they got a lot of talent and things can turn around quickly for them,” Packers safety Xavier McKinney said. “We just got to kind of keep that in mind and know we not just walking into something and they just going to lay down. That’s not what they going to do.” The Browns certainly haven’t laid down on defense. Far from. Cleveland is allowing an NFL-best 191.5 yards per game. The Browns gave up 141 yards to Cincinnati in Week 1, including just seven in the second half, but still lost, 17-16. Cleveland has given up an NFL-best 45.5 rushing yards per game and just 2.1 rushing yards per attempt. “The biggest thing is our defensive line is much, much improved over last year and I think we’ve got back to our personality,” defensive coordinator Jim Schwartz said recently. “When we play our best, our D-line leads us there as our engine.” The Browns rank third in the league in passing defense, allowing just 146.0 yards per game. Cleveland has also gone 30 straight games without allowing a 300-yard passer, the longest active streak in the NFL.…
Share
BitcoinEthereumNews2025/09/18 00:41
Bank of Canada cuts rate to 2.5% as tariffs and weak hiring hit economy

Bank of Canada cuts rate to 2.5% as tariffs and weak hiring hit economy

The Bank of Canada lowered its overnight rate to 2.5% on Wednesday, responding to mounting economic damage from US tariffs and a slowdown in hiring. The quarter-point cut was the first since March and met predictions from markets and economists. Governor Tiff Macklem, speaking in Ottawa, said the decision was unanimous. “With a weaker economy […]
Share
Cryptopolitan2025/09/17 23:09