The post Singapore Entrepreneur Loses Entire Crypto Portfolio After Downloading Fake Game appeared on BitcoinEthereumNews.com. In brief A Singapore-based man hasThe post Singapore Entrepreneur Loses Entire Crypto Portfolio After Downloading Fake Game appeared on BitcoinEthereumNews.com. In brief A Singapore-based man has

Singapore Entrepreneur Loses Entire Crypto Portfolio After Downloading Fake Game

For feedback or concerns regarding this content, please contact us at crypto.news@mexc.com

In brief

  • A Singapore-based man has lost his entire crypto portfolio after falling victim to an elaborate scam involving a fake online game.
  • Despite using antivirus software and deleting suspicious files, the uploaded malware was able to use token theft and a Google Chrome bug to steal over $14,000 in crypto.
  • The man advises other individuals, particularly developers and investors, to delete seed phrases from browser-based hot wallets when not in use.

A Singapore-based entrepreneur has lost a six-figure sum in crypto after falling victim to malware disguised as an elaborate game-testing scam.

Mark Koh, the founder of victim-support organization RektSurvivor, detailed his experience in an interview with Lianhe Zaobao and in a LinkedIn post.

The two accounts describe that on December 5, Koh came across a beta testing opportunity on Telegram for an online game called MetaToy.

Koh, who has invested in and evaluated numerous Web3 projects, was convinced that the MetaToy game was legitimate, based on the professional appearance of its website and Discord, and based on the responsiveness of team members.

However, Koh reports that downloading MetaToy’s game launcher resulted in malware being uploaded to his computer.

His Norton antivirus did flag suspicious activity on his PC, and Koh took the steps of running full system scans, deleting suspicious files and registries, and even reinstalling Windows 11.

Yet within 24 hours of doing this, every single software wallet he had connected to his Rabby and Phantom browser extensions was drained of all available funds, which amounted to $14,189 (100,000 yuan) in crypto that he had accumulated over eight years.

“I didn’t even log into my wallet app. I had separate seed phrases. Nothing was saved digitally,” he told Decrypt.

Koh also tells Decrypt that the attack was most likely a combination of an authentication token theft, as well as a Google Chrome zero-day vulnerability that was first discovered in September and that can enable the execution of malicious code.

He also underlines the fact that the exploit likely had multiple attack vectors, given that he had scanned all identifiably suspicious files and that his Norton antivirus managed to block two DLL (dynamic link library) hijack attempts.

“So it had multiple vectors and also implanted a malicious scheduled process too,” he added.

In the face of this apparent sophistication, Koh said potential targets—especially angel investors or developers likely to download beta launchers—take extra safety measures.

“So I would advise even if the usual precautions are taken to actually remove and delete seeds from browser-based hot wallets when not in use,” he said. “And if possible use the private key, not the seed, because then all the other derivative wallets won’t be at risk.”

Koh has reported the fraud to the Singapore police, which confirmed to the Chinese-language Lianhe Zaobao newspaper that it has received a corresponding report.

The RektSurvivor founder also put Decrypt in contact with Daniel, another victim of the MetaToy exploit, who was also based in Singapore.

The other victim told Decrypt that he was still in contact with the scammer, who was under the impression that he, Daniel, was still trying to download the game launcher.

The MetaToy exploit comes as cybercriminals use increasingly sophisticated techniques to infect computers with malware.

In October, McAfee discovered that hackers were using GitHub repositories to enable its banking malware to connect to new servers whenever a previous server is taken down.

Similarly, this year has witnessed the use of fake AI tools aimed at spreading crypto-stealing malware, as well as the use of fake Captchas and malicious pull requests inserted into Ethereum code extensions.

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.

Source: https://decrypt.co/352752/singapore-entrepreneur-loses-entire-crypto-portfolio-after-downloading-fake-game

Market Opportunity
SQUID MEME Logo
SQUID MEME Price(GAME)
$30.3074
$30.3074$30.3074
-0.12%
USD
SQUID MEME (GAME) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact crypto.news@mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Aave DAO to Shut Down 50% of L2s While Doubling Down on GHO

Aave DAO to Shut Down 50% of L2s While Doubling Down on GHO

The post Aave DAO to Shut Down 50% of L2s While Doubling Down on GHO appeared on BitcoinEthereumNews.com. Aave DAO is gearing up for a significant overhaul by shutting down over 50% of underperforming L2 instances. It is also restructuring its governance framework and deploying over $100 million to boost GHO. This could be a pivotal moment that propels Aave back to the forefront of on-chain lending or sparks unprecedented controversy within the DeFi community. Sponsored Sponsored ACI Proposes Shutting Down 50% of L2s The “State of the Union” report by the Aave Chan Initiative (ACI) paints a candid picture. After a turbulent period in the DeFi market and internal challenges, Aave (AAVE) now leads in key metrics: TVL, revenue, market share, and borrowing volume. Aave’s annual revenue of $130 million surpasses the combined cash reserves of its competitors. Tokenomics improvements and the AAVE token buyback program have also contributed to the ecosystem’s growth. Aave global metrics. Source: Aave However, the ACI’s report also highlights several pain points. First, regarding the Layer-2 (L2) strategy. While Aave’s L2 strategy was once a key driver of success, it is no longer fit for purpose. Over half of Aave’s instances on L2s and alt-L1s are not economically viable. Based on year-to-date data, over 86.6% of Aave’s revenue comes from the mainnet, indicating that everything else is a side quest. On this basis, ACI proposes closing underperforming networks. The DAO should invest in key networks with significant differentiators. Second, ACI is pushing for a complete overhaul of the “friendly fork” framework, as most have been unimpressive regarding TVL and revenue. In some cases, attackers have exploited them to Aave’s detriment, as seen with Spark. Sponsored Sponsored “The friendly fork model had a good intention but bad execution where the DAO was too friendly towards these forks, allowing the DAO only little upside,” the report states. Third, the instance model, once a smart…
Share
BitcoinEthereumNews2025/09/18 02:28
New Crypto Investors Are Backing Layer Brett Over Dogecoin After Topping The Meme Coin Charts This Month

New Crypto Investors Are Backing Layer Brett Over Dogecoin After Topping The Meme Coin Charts This Month

Climbing to the top of the meme coin charts takes more than a viral mascot or celebrity tweets. Hype may spark attention, but only momentum, utility, and adaptability keep it alive. That’s why the latest debate among crypto enthusiasts is catching attention. While Dogecoin remains a household name, a new player has entered the arena […] The post New Crypto Investors Are Backing Layer Brett Over Dogecoin After Topping The Meme Coin Charts This Month appeared first on Live Bitcoin News.
Share
LiveBitcoinNews2025/09/18 00:30
US Fed Slashes Interest Rates by 25 BPS: How Will Bitcoin’s Price React?

US Fed Slashes Interest Rates by 25 BPS: How Will Bitcoin’s Price React?

BTC experienced some enhanced volatility during the day, what's next?
Share
CryptoPotato2025/09/18 02:05