WLFI token theft is a phishing-driven exploit that leverages Ethereum’s EIP-7702 delegate feature to pre-plant a malicious delegate contract in compromised wallets; when tokens arrive, attacker-controlled execution and automated sweeper