Web Analytics
Crypto Potato
2026-05-26 23:45:37

Fake Uniswap Website Drains Crypto Wallets as Scammers Pocket $400K

A fake website impersonating Uniswap is draining funds from multiple crypto wallets. The prominent on-chain analyst, pseudonymously known as “b-block,” warned that the scammers currently control at least $400,000 in stolen assets. Users were urged to rely only on official links and verify protocols through DefiLlama. Uniswap Tops List of Most-Targeted Platforms The latest update comes a month after security group SEAL reported a major rise in malicious Google Ads targeting crypto users. It found that attackers were impersonating popular DeFi platforms, wallets, and trading applications to steal funds. SEAL said it recently blocked over 356 malicious Google ad URLs tied to crypto scams, which targeted platforms such as Uniswap, Morpho Finance, PancakeSwap, Hyperliquid, CoW Swap, and 1inch users According to the report, attackers used hacked or fraudulently obtained Google advertiser accounts and relied on cloaking, fingerprinting, and nested iframe delivery systems to bypass Google’s automated review checks. Many of the fake ads used trusted Google services such as sites.google.com and docs.google.com to appear legitimate in search results. SEAL identified crypto drainer families, including Inferno Drainer and Vanilla Drainer, as the most commonly used malware in the campaigns. The report said these tools trick users into signing malicious wallet transactions or entering recovery seed phrases on cloned websites, allowing attackers to take control of wallet assets. SEAL also added that the advanced infrastructure used in the attacks, including Cloudflare Workers, Arweave-hosted payloads, traffic redirection systems, and proxy layers, can intercept Ethereum RPC requests and monitor user activity in real time. Uniswap was the most impersonated platform, accounting for 41% of tracked malicious sites. Between March 13 and March 30, confirmed and unattributed losses linked to the campaigns exceeded $1.27 million, although the security group said the actual figure was likely significantly higher. Rampant Phishing Campaigns While the recent Uniswap-related scams mainly involved fake websites and malicious Google Ads, a separate phishing campaign earlier this year targeted Ledger users through fraudulent emails. The attack followed a data breach at Ledger’s third-party e-commerce partner, Global-e, which exposed customer contact and order information. The scammers claimed in emails that Ledger and Trezor had merged and urged users to migrate their wallets via fake websites that requested 24-word recovery phrases. The phishing pages closely copied the companies’ official branding and messaging styles. More recently, Ripple CTO David Schwartz warned of a phishing campaign that sent fake security alerts that appeared to come from Robinhood’s official email system. The emails passed authentication checks because attackers exploited Robinhood’s account creation flow, which made the messages appear legitimate. The phishing note claimed a new login from an “iPhone 17 Pro” and prompted users to review suspicious activity through a “Review Activity Now” button, which then directed them toward credential theft. Robinhood later confirmed the issue, but stated that no systems were breached and no funds were affected. The post Fake Uniswap Website Drains Crypto Wallets as Scammers Pocket $400K appeared first on CryptoPotato .

Crypto 뉴스 레터 받기
면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.