TLDR Hackers are using the EIP-7702 exploit to drain WLFI tokens from vulnerable wallets. The EIP-7702 exploit relies on private key leaks, enabling token theft during transactions. WLFI users have reported significant thefts in forums, with hackers quickly sweeping tokens. World Liberty Financial warns of phishing attacks and urges users to double-check official communication. World [...] The post WLFI Token Holders Targeted by EIP-7702 Exploit Following Token Launch appeared first on CoinCentral.TLDR Hackers are using the EIP-7702 exploit to drain WLFI tokens from vulnerable wallets. The EIP-7702 exploit relies on private key leaks, enabling token theft during transactions. WLFI users have reported significant thefts in forums, with hackers quickly sweeping tokens. World Liberty Financial warns of phishing attacks and urges users to double-check official communication. World [...] The post WLFI Token Holders Targeted by EIP-7702 Exploit Following Token Launch appeared first on CoinCentral.

WLFI Token Holders Targeted by EIP-7702 Exploit Following Token Launch

2025/09/02 14:18

TLDR

  • Hackers are using the EIP-7702 exploit to drain WLFI tokens from vulnerable wallets.
  • The EIP-7702 exploit relies on private key leaks, enabling token theft during transactions.

  • WLFI users have reported significant thefts in forums, with hackers quickly sweeping tokens.

  • World Liberty Financial warns of phishing attacks and urges users to double-check official communication.


World Liberty Financial’s (WLFI) token holders are falling victim to a known phishing exploit tied to Ethereum’s EIP-7702 upgrade. The exploit, which takes advantage of a feature introduced during Ethereum’s Pectra upgrade in May, allows external accounts to temporarily act like smart contract wallets. This can delegate execution rights and enable batch transactions, potentially making the user experience smoother. However, hackers are exploiting this to drain tokens from unsuspecting victims’ wallets.

Yu Xian, founder of the security firm SlowMist, identified the attack as a classic example of the EIP-7702 phishing exploit. In a recent X post, Xian explained that attackers pre-plant a hacker-controlled address into a victim’s wallet, often after the victim’s private key has been compromised. Once the victim deposits WLFI tokens into their wallet, the malicious contract quickly “snatches” the tokens.

Xian confirmed in the post that he had seen multiple WLFI holders report stolen tokens from their wallets, pointing to a consistent pattern of phishing attacks.

WLFI Exploit Details and How It Works

The EIP-7702 exploit works by exploiting private key leakage, typically through phishing attacks. Once an attacker has access to the victim’s private key, they can insert a delegate smart contract into the wallet. This allows the attacker to control the victim’s funds when they attempt to transfer them.

The issue occurs when a user attempts to move World Liberty Financial tokens that were stored in a Lockbox contract. Due to the exploit, any gas fees the victim inputs for transferring tokens are automatically transferred to the hacker-controlled address. The attacker is thus able to snatch the WLFI tokens before the victim can complete the transaction.

Xian advised users to cancel or replace the compromised EIP-7702 contract with their own to prevent further theft. Transferring tokens out of a compromised wallet as quickly as possible is another suggested mitigation method.

Phishing Attacks Spread Across WLFI Communities

The phishing attack is not isolated to a few cases. Multiple users have reported similar issues in WLFI forums, with one user named hakanemiratlas describing the difficulty in moving WLFI tokens to a new wallet after his wallet was compromised. Despite successfully transferring a portion of his tokens, the user’s wallet remained vulnerable, with 80% of his World Liberty Financial still stuck.

In another forum post, user Anton warned that the automated nature of the exploit meant that the tokens were quickly drained by “sweeper bots” as soon as they were deposited. He requested that the WLFI team implement a direct transfer option to prevent such thefts in the future. The WLFI community has been particularly concerned about the initial token drop mechanism, which requires a whitelisted wallet to participate in the presale.

The attack method has left many in the community anxious about the safety of their holdings, especially with the WLFI tokens still being locked and vulnerable to exploitation.

Warnings and Security Measures from World Liberty Financial Team

The World Liberty Financial team has warned users to be vigilant about phishing scams, particularly in the wake of the recent token launch. The team clarified that WLFI will never contact users through direct messages or social media platforms, and any such communication is likely to be fraudulent.

“Any email communication should be verified through official WLFI domains,” the team said, stressing that users should be cautious and avoid responding to suspicious inquiries.

Despite the ongoing security challenges, the WLFI team is actively addressing the issues, and security experts are recommending that token holders secure their private keys to prevent further attacks. The ongoing discourse within the community reflects growing concerns over the security of token assets following this exploit.

The post WLFI Token Holders Targeted by EIP-7702 Exploit Following Token Launch appeared first on CoinCentral.

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

The Channel Factories We’ve Been Waiting For

The Channel Factories We’ve Been Waiting For

The post The Channel Factories We’ve Been Waiting For appeared on BitcoinEthereumNews.com. Visions of future technology are often prescient about the broad strokes while flubbing the details. The tablets in “2001: A Space Odyssey” do indeed look like iPads, but you never see the astronauts paying for subscriptions or wasting hours on Candy Crush.  Channel factories are one vision that arose early in the history of the Lightning Network to address some challenges that Lightning has faced from the beginning. Despite having grown to become Bitcoin’s most successful layer-2 scaling solution, with instant and low-fee payments, Lightning’s scale is limited by its reliance on payment channels. Although Lightning shifts most transactions off-chain, each payment channel still requires an on-chain transaction to open and (usually) another to close. As adoption grows, pressure on the blockchain grows with it. The need for a more scalable approach to managing channels is clear. Channel factories were supposed to meet this need, but where are they? In 2025, subnetworks are emerging that revive the impetus of channel factories with some new details that vastly increase their potential. They are natively interoperable with Lightning and achieve greater scale by allowing a group of participants to open a shared multisig UTXO and create multiple bilateral channels, which reduces the number of on-chain transactions and improves capital efficiency. Achieving greater scale by reducing complexity, Ark and Spark perform the same function as traditional channel factories with new designs and additional capabilities based on shared UTXOs.  Channel Factories 101 Channel factories have been around since the inception of Lightning. A factory is a multiparty contract where multiple users (not just two, as in a Dryja-Poon channel) cooperatively lock funds in a single multisig UTXO. They can open, close and update channels off-chain without updating the blockchain for each operation. Only when participants leave or the factory dissolves is an on-chain transaction…
Share
BitcoinEthereumNews2025/09/18 00:09
American Bitcoin’s $5B Nasdaq Debut Puts Trump-Backed Miner in Crypto Spotlight

American Bitcoin’s $5B Nasdaq Debut Puts Trump-Backed Miner in Crypto Spotlight

The post American Bitcoin’s $5B Nasdaq Debut Puts Trump-Backed Miner in Crypto Spotlight appeared on BitcoinEthereumNews.com. Key Takeaways: American Bitcoin (ABTC) surged nearly 85% on its Nasdaq debut, briefly reaching a $5B valuation. The Trump family, alongside Hut 8 Mining, controls 98% of the newly merged crypto-mining entity. Eric Trump called Bitcoin “modern-day gold,” predicting it could reach $1 million per coin. American Bitcoin, a fast-rising crypto mining firm with strong political and institutional backing, has officially entered Wall Street. After merging with Gryphon Digital Mining, the company made its Nasdaq debut under the ticker ABTC, instantly drawing global attention to both its stock performance and its bold vision for Bitcoin’s future. Read More: Trump-Backed Crypto Firm Eyes Asia for Bold Bitcoin Expansion Nasdaq Debut: An Explosive First Day ABTC’s first day of trading proved as dramatic as expected. Shares surged almost 85% at the open, touching a peak of $14 before settling at lower levels by the close. That initial spike valued the company around $5 billion, positioning it as one of 2025’s most-watched listings. At the last session, ABTC has been trading at $7.28 per share, which is a small positive 2.97% per day. Although the price has decelerated since opening highs, analysts note that the company has been off to a strong start and early investor activity is a hard-to-find feat in a newly-launched crypto mining business. According to market watchers, the listing comes at a time of new momentum in the digital asset markets. With Bitcoin trading above $110,000 this quarter, American Bitcoin’s entry comes at a time when both institutional investors and retail traders are showing heightened interest in exposure to Bitcoin-linked equities. Ownership Structure: Trump Family and Hut 8 at the Helm Its management and ownership set up has increased the visibility of the company. The Trump family and the Canadian mining giant Hut 8 Mining jointly own 98 percent…
Share
BitcoinEthereumNews2025/09/18 01:33