Safe wallet scam through a fake Request Finance contract lost USDC 3.047M. This address poisoning trick is something to learn. A significant crypto theft emptied a wallet of USDC of 3.047 million. The attack took advantage of a bogus Request Finance contract, which defrauded the multi-signature security of the wallet.  The scheme is an update […] The post $3M USDC Stolen in Fake Request Finance Scam Explosion appeared first on Live Bitcoin News.Safe wallet scam through a fake Request Finance contract lost USDC 3.047M. This address poisoning trick is something to learn. A significant crypto theft emptied a wallet of USDC of 3.047 million. The attack took advantage of a bogus Request Finance contract, which defrauded the multi-signature security of the wallet.  The scheme is an update […] The post $3M USDC Stolen in Fake Request Finance Scam Explosion appeared first on Live Bitcoin News.

$3M USDC Stolen in Fake Request Finance Scam Explosion

2025/09/14 05:00
3분 읽기
이 콘텐츠에 대한 의견이나 우려 사항이 있으시면 crypto.news@mexc.com으로 연락주시기 바랍니다

Safe wallet scam through a fake Request Finance contract lost USDC 3.047M. This address poisoning trick is something to learn.

A significant crypto theft emptied a wallet of USDC of 3.047 million. The attack took advantage of a bogus Request Finance contract, which defrauded the multi-signature security of the wallet. 

The scheme is an update of the old-fashioned fraud of address poisoning that is quickly gaining momentum.

The victim had a 2-of-4 Safe multi-sig wallet that was in control of the victim. The hacker used a batch transaction request to hack into the Request Finance app interface. 

This was an evil contract address very like the original, except that it started and finished with the same characters.

Source – X 

This attack on X (formerly Twitter) was disclosed by security researcher @realScamSniffer. They described the way the evil contract 0x3Cf6e5…c03F was a sneak preview of the legit 0x3cF638…C03f address. 

The two addresses seem almost the same, which makes users accept the scam without realizing it. The scammer registered the fake contract in Etherscan, which increased credibility.

Deceptive Contract Mimicry Sparks New Scam Wave

This type of attack is through minor errors made by users who give approvals on contracts. The fraudsters target them with almost the same addresses. 

The majority of crypto wallets display the initial few and final characters of the addresses of the contracts. This is used by the attackers to mislead the users that the contract is authentic.

The interface of the Request Finance app gives the attacker a chance to package malicious commands into batch transactions. 

These consignments have enabled fraudsters to loot money after the permission to undertake the contract has been given. This approach circumvents several wallet holders in case one of them gives in without any scrutiny.

The fake contract quickly transferred more than 3 million USDC as confirmed by the researchers in their Safe wallet transaction history. 

The scam points out the new weaknesses in multi-signature wallets that are linked to DeFi apps.

How Users Can Defend Against Address Poisoning Scams

Experts on the account of @zachxbt and @evilcos on X recommend extra care in signing contracts. Before giving permissions, users need to make sure that they enter the entire contract address accurately.

Do not use only partial address views or glimpse checks on Etherscan. Rather, verify the authenticity of cross-check contracts through numerous independent sources.  Always reject batch transactions unless everybody who will sign the wallet is present.

Approvals by hardware wallet and allowing transaction notifications can take additional security measures. Address poisoning scam should be publicized more since the deceptive strategy is on the rise.

Users of safe wallets must check permissions on a regular basis and cancel any suspicious approvals of the contract.

This theft of 3.047 million US dollars is an indication that address poisoning fraud is on the increase.  The increasing interconnectivity of DeFi apps and wallets requires a stronger verification behavior among users.

시장 기회
Brainedge 로고
Brainedge 가격(LEARN)
$0.006875
$0.006875$0.006875
+0.01%
USD
Brainedge (LEARN) 실시간 가격 차트
면책 조항: 본 사이트에 재게시된 글들은 공개 플랫폼에서 가져온 것으로 정보 제공 목적으로만 제공됩니다. 이는 반드시 MEXC의 견해를 반영하는 것은 아닙니다. 모든 권리는 원저자에게 있습니다. 제3자의 권리를 침해하는 콘텐츠가 있다고 판단될 경우, crypto.news@mexc.com으로 연락하여 삭제 요청을 해주시기 바랍니다. MEXC는 콘텐츠의 정확성, 완전성 또는 시의적절성에 대해 어떠한 보증도 하지 않으며, 제공된 정보에 기반하여 취해진 어떠한 조치에 대해서도 책임을 지지 않습니다. 본 콘텐츠는 금융, 법률 또는 기타 전문적인 조언을 구성하지 않으며, MEXC의 추천이나 보증으로 간주되어서는 안 됩니다.

USD1 Genesis: 0 Fees + 12% APR

USD1 Genesis: 0 Fees + 12% APRUSD1 Genesis: 0 Fees + 12% APR

New users: stake for up to 600% APR. Limited time!