A new analysis from Scam Sniffer shows that wallet-draining phishing attacks across Ethereum-compatible chains caused far less financial damage last […] The postA new analysis from Scam Sniffer shows that wallet-draining phishing attacks across Ethereum-compatible chains caused far less financial damage last […] The post

2025 Sees Sharp Drop in Crypto Phishing Losses, Report Finds

2026/01/04 14:55
4분 읽기
이 콘텐츠에 대한 의견이나 우려 사항이 있으시면 crypto.news@mexc.com으로 연락주시기 바랍니다

A new analysis from Scam Sniffer shows that wallet-draining phishing attacks across Ethereum-compatible chains caused far less financial damage last year, even as the underlying threat continued to adapt and evolve.

Key Takeaways
  • Crypto phishing losses dropped sharply in 2025, largely due to lower market activity rather than attackers disappearing.
  • Scammers shifted toward smaller, higher-volume attacks, reducing average losses per victim.
  • New Ethereum features were quickly exploited, showing phishing threats continue to evolve.

Losses plunge, but not for the reason many expect

Total funds stolen through phishing-linked wallet drainers fell to about $84 million in 2025, a dramatic decline compared with the previous year. The number of affected wallets also dropped steeply, landing near 106,000 victims.

At first glance, this might suggest that phishing is losing relevance. Scam Sniffer’s data tells a different story. The decline appears to be driven less by improved security alone and more by shifts in market activity. When trading slowed, phishing returns dried up. When activity picked up, losses followed.

In other words, phishing success still scales with user engagement.

Activity spikes remain prime hunting ground

The clearest example came during Ethereum’s strongest rally of the year. As onchain activity surged in late summer, phishing losses climbed with it. August and September together accounted for a disproportionate share of the year’s damage, while quieter months saw losses collapse to low single-digit millions.

Scam Sniffer described phishing as a probability game: the more transactions users sign, the more opportunities attackers have to slip malicious approvals through.

Attackers refine techniques instead of scaling size

While fewer dollars were stolen overall, attackers did not simply give up. Instead, they adjusted their strategy.

Large, headline-grabbing thefts became less common. Only a small number of incidents crossed the $1 million threshold in 2025, a sharp reduction from the year before. In their place came higher-volume, lower-value campaigns aimed squarely at retail users.

READ MORE:

17 Years of Bitcoin: How the Top Cryptocurrency Redefined Money

That shift dragged the average loss per victim down to under $800, suggesting that drainers increasingly favor small hits spread across thousands of wallets rather than a handful of massive scores.

Old tricks still work, new ones emerge fast

Despite all the changes, familiar tools remained effective. Malicious Permit-style signatures were still the single most damaging method, responsible for the largest individual theft of the year and a significant share of high-value losses.

At the same time, attackers quickly latched onto new protocol features. Shortly after Ethereum’s Pectra upgrade, scammers began abusing EIP-7702, which allows multiple actions to be bundled into one signature. That capability opened the door to more complex drainers, enabling attackers to extract funds with fewer user interactions.

Within weeks of the upgrade, several campaigns exploiting this mechanism had already caused millions in losses, underlining how quickly threat actors respond to changes at the protocol level.

The drainer ecosystem is shrinking, not dying

One of the report’s key conclusions is that phishing operations behave like a revolving door. As older drainers burn out or get exposed, new ones take their place, often reusing the same ideas with minor tweaks.

The result is a quieter but persistent threat environment. Losses may be lower, but the infrastructure behind phishing attacks remains active, waiting for periods of heightened market excitement to scale up again.

The takeaway for users is uncomfortable but clear. Phishing didn’t go away in 2025 – it simply became less profitable in a cooler market. If activity accelerates again, attackers are likely to follow, armed with both proven tricks and freshly adapted exploits.


The information provided in this article is for educational purposes only and does not constitute financial, investment, or trading advice. Coindoo.com does not endorse or recommend any specific investment strategy or cryptocurrency. Always conduct your own research and consult with a licensed financial advisor before making any investment decisions.

The post 2025 Sees Sharp Drop in Crypto Phishing Losses, Report Finds appeared first on Coindoo.

시장 기회
Ambire Wallet 로고
Ambire Wallet 가격(WALLET)
$0.01182
$0.01182$0.01182
+0.08%
USD
Ambire Wallet (WALLET) 실시간 가격 차트
면책 조항: 본 사이트에 재게시된 글들은 공개 플랫폼에서 가져온 것으로 정보 제공 목적으로만 제공됩니다. 이는 반드시 MEXC의 견해를 반영하는 것은 아닙니다. 모든 권리는 원저자에게 있습니다. 제3자의 권리를 침해하는 콘텐츠가 있다고 판단될 경우, crypto.news@mexc.com으로 연락하여 삭제 요청을 해주시기 바랍니다. MEXC는 콘텐츠의 정확성, 완전성 또는 시의적절성에 대해 어떠한 보증도 하지 않으며, 제공된 정보에 기반하여 취해진 어떠한 조치에 대해서도 책임을 지지 않습니다. 본 콘텐츠는 금융, 법률 또는 기타 전문적인 조언을 구성하지 않으며, MEXC의 추천이나 보증으로 간주되어서는 안 됩니다.

USD1 Genesis: 0 Fees + 12% APR

USD1 Genesis: 0 Fees + 12% APRUSD1 Genesis: 0 Fees + 12% APR

New users: stake for up to 600% APR. Limited time!