A new phishing campaign is targeting cryptocurrency users by impersonating Aave, one of the most widely used decentralized finance platforms. On June 20, web3 security firm Scam Sniffer issued a warning that fake Aave (AAVE) ads were appearing at the…A new phishing campaign is targeting cryptocurrency users by impersonating Aave, one of the most widely used decentralized finance platforms. On June 20, web3 security firm Scam Sniffer issued a warning that fake Aave (AAVE) ads were appearing at the…

Fake Aave ads appear at the top of Google search results, prompting fears of phishing attacks

2025/06/20 17:18
2분 읽기
이 콘텐츠에 대한 의견이나 우려 사항이 있으시면 crypto.news@mexc.com으로 연락주시기 바랍니다

A new phishing campaign is targeting cryptocurrency users by impersonating Aave, one of the most widely used decentralized finance platforms.

On June 20, web3 security firm Scam Sniffer issued a warning that fake Aave (AAVE) ads were appearing at the top of Google search results. These ads lead users to malicious websites intended to steal funds, tricking them into signing harmful transactions.

The phishing websites closely resemble Aave’s official platform in terms of user interface and misleading domain names. After connecting a wallet, users are asked to authorize transactions that can steal assets without them noticing. This kind of scam is hard to spot without technical scrutiny and relies on users’ trust in the top search engine results.

The incident resembles a trend observed in 2024, when several high-profile phishing scams resulted in significant losses for the cryptocurrency industry. In one notable case, a fake XRP (XRP) airdrop campaign impersonated Ripple’s CEO and promoted a fraudulent giveaway that directed users to phishing websites. 

Another popular campaign used Google Play sponsored ads to target MetaMask users, resulting in wallet compromises and credential theft. Due to the development of sophisticated techniques such as malicious ad placements, phishing has emerged as one of the most dangerous threats in the digital asset ecosystem.

Adding to the concern, on June 19, Cybernews reported the exposure of 16 billion login credentials, harvested by infostealer malware and stored in unprotected cloud databases. These include login credentials for websites such as GitHub, Apple, Google, and Telegram. 

Although it isn’t directly related to the Aave phishing scheme, this leak could give attackers a wealth of data to start credential-stuffing attacks and more focused phishing campaigns.

Users are cautioned against using search engines to access cryptocurrency platforms. Instead, they should use verified URLs or saved bookmarks. Additional risk mitigation measures include utilizing hardware wallets, turning on multi-factor authentication, and avoiding storing seed phrases in cloud services.

The Aave impersonation scam highlights a persistent security gap in online advertising. Sites like Google and Meta have come under fire for allowing bad actors to profit from sponsored ad placements. As phishing techniques advance, users will need to be protected by more stringent platform-level controls and increased awareness within the crypto community.

시장 기회
TOP Network 로고
TOP Network 가격(TOP)
$0.0000697
$0.0000697$0.0000697
0.00%
USD
TOP Network (TOP) 실시간 가격 차트
면책 조항: 본 사이트에 재게시된 글들은 공개 플랫폼에서 가져온 것으로 정보 제공 목적으로만 제공됩니다. 이는 반드시 MEXC의 견해를 반영하는 것은 아닙니다. 모든 권리는 원저자에게 있습니다. 제3자의 권리를 침해하는 콘텐츠가 있다고 판단될 경우, crypto.news@mexc.com으로 연락하여 삭제 요청을 해주시기 바랍니다. MEXC는 콘텐츠의 정확성, 완전성 또는 시의적절성에 대해 어떠한 보증도 하지 않으며, 제공된 정보에 기반하여 취해진 어떠한 조치에 대해서도 책임을 지지 않습니다. 본 콘텐츠는 금융, 법률 또는 기타 전문적인 조언을 구성하지 않으며, MEXC의 추천이나 보증으로 간주되어서는 안 됩니다.

$30,000 in PRL + 15,000 USDT

$30,000 in PRL + 15,000 USDT$30,000 in PRL + 15,000 USDT

Deposit & trade PRL to boost your rewards!