MetaMask users are at risk of a new “2FA verification” phishing scam that steals their seed phrase under the guise of improving security. According to blockchainMetaMask users are at risk of a new “2FA verification” phishing scam that steals their seed phrase under the guise of improving security. According to blockchain

MetaMask users targeted by fake 2FA phishing scam that steals seed phrases

MetaMask users are at risk of a new “2FA verification” phishing scam that steals their seed phrase under the guise of improving security.

Summary
  • MetaMask users are being targeted by a phishing campaign involving a fake 2FA verification process.
  • The new campaign comes on the heels of a large-scale wallet exploit and the Trust Wallet Chrome extension incident.

According to blockchain security firm SlowMist, MetaMask users are receiving a spoofed email that creates a false sense of urgency by prompting them to enable Two-Factor Authentication. The message is MetaMask-branded and appears convincing at first glance. (See below.)

A spoof email sent by attackers.

Notably, the malicious notifier also comes with a countdown timer, which increases pressure on the user and attempts to force a quick response.

Upon clicking the “Enable 2FA Now” button, users are redirected to a fake page hosted by the attacker. However, in reality, the entire process is a sham. The main goal is to trick MetaMask users into entering their mnemonic phrase, which attackers can use to access and transfer funds from their wallets. (See below.)

Malicious website asking users to input their seed phrase.

While at first glance a less cautious user may fall for this scheme, the spoof email contains several giveaways that can help users spot the fraud.

For instance, such phishing messages often include subtle typos or design inconsistencies that can reveal their true nature. In this case, the URL to which MetaMask users were redirected was spelled as “mertamask” instead of “metamask.” In some cases, these emails are also sent from completely unrelated email accounts, or from addresses using public domains like Gmail. (See below.)

Typos within spoof emails.

Lastly, it is important to remember that MetaMask does not send unsolicited emails asking users to verify their accounts or perform security updates. Any such requests are typically scams.

Recent phishing campaigns targeting crypto users

Late last week, cybersecurity researcher Vladimir S. flagged a similar campaign that pushed a fake MetaMask app update. It is believed to be connected to an ongoing wallet-draining exploit.

According to on-chain sleuth ZachXBT, the incident resulted in losses of less than $2,000 per wallet but affected a wide range of users across several EVM-compatible networks. However, it has not been confirmed whether the two campaigns are definitely connected.

The incident was also linked to the Trust Wallet hack that occurred on Christmas Day, where losses climbed to roughly $7 million. 

The attacker managed to gain access to the wallet’s browser extension source code and uploaded a malicious version of the extension to the Chrome Web Store. Trust Wallet has vowed to compensate all users affected by the incident.

Separately, Cardano users were also warned about a different ongoing attack that circulated emails promoting a fraudulent Eternl Desktop application.

Despite these events all happening within less than two weeks, a recent Scam Sniffer report showed that total losses from crypto phishing campaigns dropped nearly 88% in 2025 from the previous year.

Market Opportunity
Scamcoin Logo
Scamcoin Price(SCAM)
$0.001114
$0.001114$0.001114
-2.87%
USD
Scamcoin (SCAM) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Ethereum unveils roadmap focusing on scaling, interoperability, and security at Japan Dev Conference

Ethereum unveils roadmap focusing on scaling, interoperability, and security at Japan Dev Conference

The post Ethereum unveils roadmap focusing on scaling, interoperability, and security at Japan Dev Conference appeared on BitcoinEthereumNews.com. Key Takeaways Ethereum’s new roadmap was presented by Vitalik Buterin at the Japan Dev Conference. Short-term priorities include Layer 1 scaling and raising gas limits to enhance transaction throughput. Vitalik Buterin presented Ethereum’s development roadmap at the Japan Dev Conference today, outlining the blockchain platform’s priorities across multiple timeframes. The short-term goals focus on scaling solutions and increasing Layer 1 gas limits to improve transaction capacity. Mid-term objectives target enhanced cross-Layer 2 interoperability and faster network responsiveness to create a more seamless user experience across different scaling solutions. The long-term vision emphasizes building a secure, simple, quantum-resistant, and formally verified minimalist Ethereum network. This approach aims to future-proof the platform against emerging technological threats while maintaining its core functionality. The roadmap presentation comes as Ethereum continues to compete with other blockchain platforms for market share in the smart contract and decentralized application space. Source: https://cryptobriefing.com/ethereum-roadmap-scaling-interoperability-security-japan/
Share
BitcoinEthereumNews2025/09/18 00:25
Let insiders trade – Blockworks

Let insiders trade – Blockworks

The post Let insiders trade – Blockworks appeared on BitcoinEthereumNews.com. This is a segment from The Breakdown newsletter. To read more editions, subscribe ​​“The most valuable commodity I know of is information.” — Gordon Gekko, Wall Street Ten months ago, FBI agents raided Shayne Coplan’s Manhattan apartment, ostensibly in search of evidence that the prediction market he founded, Polymarket, had illegally allowed US residents to place bets on the US election. Two weeks ago, the CFTC gave Polymarket the green light to allow those very same US residents to place bets on whatever they like. This is quite the turn of events — and it’s not just about elections or politics. With its US government seal of approval in hand, Polymarket is reportedly raising capital at a valuation of $9 billion — a reflection of the growing belief that prediction markets will be used for much more than betting on elections once every four years. Instead, proponents say prediction markets can provide a real service to the world by providing it with better information about nearly everything. I think they might, too — but only if insiders are free to participate. Yesterday, for example, Polymarket announced new betting markets on company earnings reports, with a promise that it would improve the information that investors have to work with.  Instead of waiting three months to find out how a company is faring, investors could simply watch the odds on Polymarket.  If the probability of an earnings beat is rising, for example, investors would know at a glance that things are going well. But that will only happen if enough of the people betting actually know how things are going. Relying on the wisdom of crowds to magically discern how a business is doing won’t add much incremental knowledge to the world; everyone’s guesses are unlikely to average out to the truth. If…
Share
BitcoinEthereumNews2025/09/18 05:16
Nvidia’s Rubin, AMD’s Chips, And Razer’s Avatars Dominate Las Vegas

Nvidia’s Rubin, AMD’s Chips, And Razer’s Avatars Dominate Las Vegas

The post Nvidia’s Rubin, AMD’s Chips, And Razer’s Avatars Dominate Las Vegas appeared on BitcoinEthereumNews.com. CES 2026 Unveils Stunning AI Revolution: Nvidia
Share
BitcoinEthereumNews2026/01/07 08:17