Address Poisoning Scams Drain $62M From Ethereum Users in Two Months

ETH-1,74%
WLFI1,42%
SLVON-0,53%
  • Address poisoning scams erased $62 million after users copied wallet addresses without full verification during routine transfers.

  • Lower Ethereum fees enabled mass dust attacks making address poisoning cheap, scalable and harder to detect across the network.

  • Signature phishing surged in January causing over $6 million in losses through routine token approval actions.

Ethereum wallet security risks intensified over December and January after two routine transfer mistakes erased $62 million in crypto assets. Blockchain security trackers tied both losses to address poisoning schemes. These scams exploit everyday wallet habits rather than protocol flaws. As transaction fees dropped, simple user actions started carrying much higher financial risk.

Someone lost $12.25M in January by copying the wrong address from their transaction history. In December, another victim lost $50M the same way.

Two victims. $62M gone.

Signature phishing also surged — $6.27M stolen across 4,741 victims (+207% vs Dec).

Top cases:
· $3.02M —… pic.twitter.com/7D5ynInRrb

— Scam Sniffer | Web3 Anti-Scam (@realScamSniffer) February 8, 2026

The incidents highlight a growing threat for Ethereum users. Copying addresses without full verification now leads to irreversible losses. Moreover, attackers rely on speed and repetition instead of complex technical exploits. As a result, operational mistakes now rank among Ethereum’s biggest security risks.

Copy Habits Trigger Massive Losses

In December 2025, a user lost about $50 million after copying a fake address from transaction history. The address closely resembled a previously used destination. Consequently, funds moved directly to an attacker controlled wallet.

In January 2026, another user lost roughly $12.25 million, equal to about 4,556 ETH at the time. This transfer followed the same pattern as the earlier incident. Both cases relied on users reusing addresses from past activity without full checks.

These losses show how routine habits expose wallets to major risks. Users often prioritize speed during transfers. However, attackers now depend on that behavior to succeed.

How Address Poisoning Works at Scale

Address poisoning uses vanity addresses designed to resemble real wallet strings. Attackers monitor transactions and identify frequent senders. They then send tiny dust transfers to those wallets.

These near zero value transactions insert fake addresses into transaction histories. Later, copied addresses redirect funds to scammers. As Ethereum fees fell after the Fusaka upgrade, this method became cheap to deploy.

Millions of dust transactions now hit the network daily. Many serve no purpose beyond preparing future thefts. Consequently, address poisoning expanded rapidly across Ethereum. Earlier last year, the EOS blockchain was under attack by malicious actors using an address-poisoning scheme.

Network Data Distortion and Organized Campaigns

Security researchers report that poisoning activity now distorts Ethereum usage data. Rising transaction counts increasingly reflect spam rather than genuine demand. This shift complicates network analysis.

Coin Metrics reviewed 227 million stablecoin balance updates between November and January. The firm found 38% of updates carried values below one cent. This pattern strongly points to poisoning deposits.

Today, stablecoin dust accounts for 11% of Ethereum transactions on average days. It also represents 26% of active addresses. Investigations link many campaigns to organized groups reusing infrastructure across thousands of wallets.

Signature Phishing Adds to Losses

Alongside poisoning, signature based phishing increased sharply in January. ScamSniffer recorded $6.27 million stolen across 4,741 victims during the month. This marked a 207% increase compared with December. Additionally, WLFI also confirmed that attackers accessed some user wallets through phishing and third-party lapses before its platform launched in November.

Two wallets alone caused about 65% of total losses. Major cases included $3.02 million stolen from SLVon and XAUt tokens. Another $1.08 million came from aEthLBTC through malicious approvals. These scams rely on routine looking transaction prompts. Once approved, attackers gain long term token access.

Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.

Articoli correlati

Resolve 攻击者已买入 455 万美元 ETH

Gate News 消息,3 月 22 日,链上分析师 Ai 姨在 X 平台发文分析 Resolve 攻击者操作:1、用 10 万枚 USDC 铸造出 5000 万枚 USR;2、将 3500 万枚 USR 转换为 wstUSR;3、将 wstUSR 持续换成 USDC 和 USDT;4、用 USDT 买入

GateNews19m fa

CFTC 釐清加密保證金規則:BTC、ETH 資本扣除率 20%,允許投入衍生品市場

美國商品期貨交易委員會(CFTC)近期發布FAQ,釐清加密貨幣在衍生品市場作為保證金的使用細則,明確比特幣與以太坊的資本扣除率為20%,穩定幣為2%。試行計畫於前三個月僅限三種幣種,三個月後則擴充幣種並放鬆申報要求,符合條件的加密資產可作為保證金,標誌著美國金融體系對區塊鏈資產的逐步接納。

動區BlockTempo39m fa

麻吉大哥黄立成再次开设25倍杠杆ETH多单,持仓2200枚价值462万美元

Gate News 消息,3 月 22 日,Hyperbot 数据显示,今晨加密市场下跌导致麻吉大哥黄立成的以太坊多单遭全部清算。1 小时前,黄立成再次开设 25 倍杠杆以太坊多单,当前持仓 2200 枚 ETH,价值约 462 万美元,入场价格为 2091 美元,清算价格为 2061 美元。

GateNews49m fa

主流 CEX、DEX 资金费率全面转负,BTC 跌 1.93%、ETH 跌 2.18%

3月22日,比特币报69,275.33美元,24小时跌幅1.93%;以太坊报2,103.95美元,跌幅2.18%。市场全面看跌,空头主导,资金费率普遍为负值,表明空头需要向多头支付费用。

GateNews1h fa

Erik Voorhees 关联地址 2 小时内增持 2491 枚 ETH,价值 532 万美元

Gate News 消息,3 月 22 日,据链上分析师 Ai 姨监测,ShapeShift 创始人、比特币早期支持者 Erik Voorhees 关联地址过去 2 小时在链上以均价 2134 美元买入 2491.44 枚 ETH,价值 532 万美元。自 3 月 10 日以来,该地址累计购入 120,305.4 枚 ETH,总价值 2.59 亿美元,平均成本 2159.71 美元。

GateNews1h fa

累计做多12万枚ETH巨鲸由盈转亏,充值500万USDC保证金或为避免清算

据链上分析师监测,一巨鲸地址累计持有12万枚ETH和700枚BTC,其价值2.98亿美元,目前ETH浮亏30.9万美元,而BTC浮盈40.3万美元。该地址刚向Hyperliquid充值500万USDC以避免被清算。

GateNews1h fa
Commento
0/400
Nessun commento