Crypto Investor Loses $1M in EIP-7702 Phishing Scam

A high-profile cryptocurrency investor recently fell victim to a sophisticated phishing attack that exploited Ethereum’s EIP-7702 protocol, resulting in a loss of approximately $1 million. The attack involved the use of a malicious platform designed to mimic legitimate decentralized finance (DeFi) interfaces, such as Uniswap, and leveraged the batch transaction feature of EIP-7702 to execute multiple unauthorized transfers with a single user signature [1]. The victim’s wallet, identified partially as 0x1526…F32f, lost a range of cryptocurrencies and non-fungible tokens (NFTs) in a matter of moments, following what appeared to be a routine transaction confirmation [3].

The attack unfolded when the investor clicked on a phishing link…

Source link