Inferno Drainer uses Ethereum EIP-7702 to implement a new attack, causing a single loss of $150,000

This article is machine translated
Show original

On May 26, according to blockchain security platform Scam Sniffer, the phishing organization Inferno Drainer recently used the Ethereum EIP-7702 upgrade feature to implement a new type of attack, causing losses of approximately $150,000 per incident. EIP-7702 is a key function in the Pectra upgrade, allowing externally owned accounts (EOA) to temporarily have smart contract functionality during transactions. Attackers used authorized MetaMask wallets to initiate batch token transfer operations.

Slow Fog founder Yu Xun pointed out that this event marks an upgrade in phishing strategies: attackers no longer directly hijack wallets, but instead induce users to trigger MetaMask's "execute" command, quietly executing malicious batch authorizations in the background to complete asset transfers. (Beincrypto)

Source
Disclaimer: The content above is only the author's opinion which does not represent any position of Followin, and is not intended as, and shall not be understood or construed as, investment advice from Followin.
Like
Add to Favorites
Comments