• Nouvelles
    • Bitcoin
    • Altcoins
    • Blockchain
    • Regulation
    • Scams
  • DeFi
  • NFT
  • Metaverse
  • Analysis
  • Apprendre
  • Market Cap
  • Shop
What's Hot

Les détenteurs de SUSHI peuvent avoir réduit leur exposition bien avant l’invocation de la SEC – Voici comment

2023-03-24

La SEC américaine continue de s’opposer au marché des actifs numériques et émet une alerte aux investisseurs concernant les « titres d’actifs cryptographiques »

2023-03-24

Un guide des dieux déchaînés

2023-03-24
Facebook Twitter Instagram
  • Contact
  • Terms & Conditions
  • Privacy Policy
  • DMCA
Facebook Twitter Instagram
Crypto Now Ai
  • Nouvelles
    • Bitcoin
    • Altcoins
    • Blockchain
    • Regulation
    • Scams
  • DeFi

    DeFi TVL atteint des sommets en 2023 alors que le jalonnement de Lido Liquid étend son avance

    2023-03-24

    Les projets DeFi envoient simultanément des messages mystérieux « 03.24.23 »

    2023-03-24

    Le protocole DeFi ROOK « bâillonné » par le partage de la feuille de route par les clients, déclare le PDG

    2023-03-23

    Le protocole Quasar DeFi basé sur Cosmos démarre le réseau principal après avoir levé plus de 11,5 millions de dollars

    2023-03-23

    Montée de la finance décentralisée (DeFi) et son impact sur la finance traditionnelle

    2023-03-23
  • NFT

    Un guide des dieux déchaînés

    2023-03-24

    Le volume de négociation de Metaverse NFT atteint un nouveau record historique, selon DappRadar

    2023-03-23

    Comment se comparent-ils vraiment ?

    2023-03-23

    Vont-ils bouleverser les marchés de l’art traditionnel ?

    2023-03-23

    Le Now Pass Mint est officiellement en ligne

    2023-03-23
  • Metaverse

    Metaverse Trading atteint un niveau record

    2023-03-24

    Explorer le métaverse : un guide pour investir dans les actions du métaverse

    2023-03-20

    Un guide pour le jalonnement de terres virtuelles dans le métaverse

    2023-03-20

    Nissan double son innovation Web3

    2023-03-13

    Alors que la mode évolue dans le métaverse, quelles autres industries pourraient être les prochaines

    2023-03-13
  • Analysis

    Bitcoin (BTC) dans un modèle de mégaphone haussier, selon Crypto Analyst – Voici sa cible

    2023-03-24

    Les baleines déplacent brusquement 195 231 414 $ en Shiba Inu Rival et Bitcoin de Top Crypto Exchange au milieu des turbulences du marché

    2023-03-23

    Avalanche C, les chaînes X connaissent une brève panne en raison d’un bogue de réseau

    2023-03-23

    Le commerçant légendaire Peter Brandt déclare que le Bitcoin (BTC) ciblera probablement un nouveau record historique – Voici sa chronologie

    2023-03-23

    La liquidité Bitcoin de Binance pour le TUSD augmente de 250%

    2023-03-23
  • Apprendre

    Feuille de triche des modèles de graphique pour l’analyse technique

    2023-03-21

    Que sont les Dapps (Applications Décentralisées) Crypto ?

    2023-03-17

    Échanges de crypto-monnaie centralisés (CEX) vs décentralisés (DEX)

    2023-03-06

    Comment utiliser Bitcoin ATM

    2023-03-03

    Meilleures façons d’obtenir des NFT gratuits

    2023-03-02
  • Market Cap
  • Shop
Crypto Now Ai
Home»Moonbirds creator Kevin Rose loses $1.1M+ in NFTs after 1 wrong move
0Ed00Be2 56F3 4E12 A0C4 475A23C7C4Bd

Moonbirds creator Kevin Rose loses $1.1M+ in NFTs after 1 wrong move

2023-01-28Pas de commentaire5 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

Kevin Rose, the co-founder of the nonfungible token (NFT) collection Moonbirds, has fallen victim to a phishing scam leading to more than $1.1 million worth of his personal NFTs stolen.

The NFT creator and PROOF co-founder shared the news with his 1.6 million Twitter followers on Jan. 25, asking them to avoid buying any Squiggles NFTs until his team managed to get them flagged as stolen.

I was just hacked, stay tuned for details – please avoid buying any squiggles until we get them flagged (just lost 25) + a few other NFTs (an autoglyph) …

— KΞVIN R◎SE (,) (@kevinrose) January 25, 2023

“Thank you for all the kind, supportive words. Full debrief coming,” he then shared in a separate tweet about two hours later.

It is understood that Rose’s NFTs were drained after he approveda malicious signature that transferred a significant proportion of his NFT assets to the exploiter.

GM – what a day!
Today I was phished. Tomorrow we’ll cover all the details live, as a cautionary tail, on twitter spaces. Here is how it went down, technically: https://t.co/DgBKF8qVBK

— KΞVIN R◎SE (,) (@kevinrose) January 25, 2023

An independent analysis from Arkham found that the exploiter extracted at least one Autoglyph, which has a floor price of 345 ETH; 25 Art Blocks — also known as Chromie Squiggles — worth at least a total of 332.5 ETH; and nine OnChainMonkey items, worth at least 7.2 Ether.

In total, at least 684.7 ETH ($1.1 million) was extracted.

How Kevin Rose got exploited

While several independent on-chain analyses have been shared, Arran Schlosberg, the vice president of PROOF — the company behind Moonbirds — explained to his 9,500 Twitter followers that Rose “was phished into signing a malicious signature” that allowed the exploiter to transfer over a large number of tokens:

1/ This was a classic piece of social engineering, tricking KRO into a false sense of security. The technical aspect of the hack was limited to crafting signatures accepted by OpenSea’s marketplace contract.

— Arran (@divergencearran) January 25, 2023

Crypto analyst “foobar” further elaborated on the “technical aspect of the hack” in a separate post on Jan. 25, explaining that Rose approved a OpenSea marketplace contract to move all of his NFTs whenever Rose signed transactions.

READ  Luxor Mining acquires OrdinalHub amid Bitcoin-based NFTs hype

He added that Rose was always “one malicious signature” away from an exploit:

be super careful when signing anything, even offchain signatures. kevin rose just had ~$2 million worth of NFTs drained from his vault from signing one malicious seaport bundle. thankfully a couple things held back, like the punk zombie (1000 ETH) which can’t be traded on OS pic.twitter.com/GXHR3NQHLf

— foobar (@0xfoobar) January 25, 2023

The crypto analyst said Rose should have instead been “siloing” his NFT assets in a separate wallet:

“Moving assets from your vault to a separate ‘selling’ wallet before listing on NFT marketplaces will prevent this.”

Another on-chain analyst, “Quit,” told his 71,400 Twitter followers that the malicious signature was enabled by the Seaport marketplace contract — the platform which powers OpenSea:

Kevin Rose was just lost $2m+ in assets by signing an off-chain signature that created a listing for all of his OpenSea approved assets in one go.

While seaport is a powerful tool, it can also be dangerous if you’re not aware of how it works.

A bit of context 1/

— quit (@0xQuit) January 25, 2023

Quit explained that the exploiters were able to set up a phishing site that was able to view the NFT assets held in Rose’s wallet.

The exploiter then set up an order to transfer to themself all of Rose’s assets that are approved on OpenSea.

Rose then validated the malicious transaction, noted Quit. 

Related: Bluechip NFT project Moonbirds signs with Hollywood talent agents UTA

Meanwhile, foobar noted that most of the stolen assets were well above the floor price, which means that the amount stolen could be as high as $2 million.

READ  eBay NFT platform KnownOrigin launches creator smart contract

Quit urged that OpenSea users “need to run away” from any other website that prompts users to sign something that looks suspicious.

NFTs on the move

On-chain analyst ZachXBT shared a transaction map to his 350,300 Twitter followers showing that the exploiter sent the assets to FixedFloat — a cryptocurrency exchange on the Bitcoin layer 2 Lightning Network.

The exploiter then swapped the funds into Bitcoin (BTC) and deposited the BTC into a Bitcoin mixer:

Three hours ago Kevin was phished for $1.4m+ worth of NFTs. Earlier today the same scammer stole 75 ETH from another victim.

Mapping this out we can see a clear trend of sending the stolen funds to FixedFloat and swapping for BTC before depositing to a bitcoin mixer. https://t.co/2yrFpfYttT pic.twitter.com/ZlywPYydwx

— ZachXBT (@zachxbt) January 25, 2023

Crypto Twitter member Degentraland told their 67,000 Twitter followers that it was the “saddest thing” they have seen in cryptocurrency space to date, adding that if anyone can come back from such a devastating exploit, “it’s him”:

Saddest thing I’ve seen in crypto to date.@kevinrose wallet drained.

If anyone can come back from this, it’s him. pic.twitter.com/HZysg34qji

— Degentraland (@Degentraland) January 25, 2023

Meanwhile, Bankless founder Ryan Sean Adams was enraged with the ease at which Rose was able to be exploited. In a Jan. 25 tweet, Adams urged front-end engineers to pick up their game and improve user experience (UX) to prevent such scams from taking place.

Source link

1.1M Creator Kevin loses Moonbirds Move NFTs Rose wrong
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Un juge américain accorde la propriété intellectuelle de NFT Creator à Quantum NFT

2023-03-22

Le procès contre Sotheby’s et Kevin McCoy est rejeté

2023-03-21

Kevin III de DeGods parle de la branche Bitcoin, de l’avenir de y00ts

2023-03-17

Coinbase NFT lance Creator Hub pour stimuler l’innovation Web3

2023-03-17
Add A Comment

Leave A Reply Cancel Reply

Meilleur message
DeFi

Crypto transaction success rate hinges on user location: Report

2023-02-20

The crypto group regularly seeks methods to bridge the hole between conventional finance and fiat currencies…

Analysis

Ethereum Altcoin qui a explosé de 1 100 % cette année ignore le recul du Bitcoin et de la cryptographie au milieu d’un battage médiatique croissant sur l’IA

2023-03-05

Un altcoin basé sur Ethereum qui a connu une forte tendance cette année regarde au-delà…

DeFi

SEC enforcement action creates a silver lining for GMX, Lido (LDO) and Maker (MKR) price

2023-02-15

America Securities and Change Fee (SEC) has began ramping up its crackdown on the crypto…

Abonnez-vous aux mises à jour

Recevez les dernières nouvelles et mises à jour de Crypto Nowai sur Crypto, Metaverse et NFT.

À propos de
À propos de

Notre mission est de développer une communauté de personnes qui essaient de prendre des décisions financièrement saines. Le site Web s'efforce d'éduquer les individus à faire des choix judicieux concernant les crypto-monnaies, NFT, Metaverse et plus encore.

Nous sommes sociaux. Connecte-toi avec nous:

Facebook Twitter Instagram Pinterest
Poste populaire

CZ nie que Binance envisage une rupture majeure avec des partenaires commerciaux américains

2023-02-19

L’UE adopte une loi sur les données, y compris la réglementation des contrats intelligents

2023-03-14

Bitcoin (BTC) franchit la barre des 25 000 $, un jour après avoir franchi la barre des 24 000 $

2023-02-16

Abonnez-vous aux mises à jour

Recevez les dernières nouvelles et mises à jour de Crypto Nowai sur Crypto, Metaverse et NFT.

  • Contact
  • Terms & Conditions
  • Privacy Policy
  • DMCA
© 2023 cryptonowai.com. Designed by ProdigitalX.

Type above and press Enter to search. Press Esc to cancel.

  • bitcoinBitcoin(BTC)$28,055.00-1.79%
  • ethereumEthereum(ETH)$1,777.19-3.13%
  • tetherTether(USDT)$1.01-0.21%
  • binancecoinBNB(BNB)$324.92-2.63%
  • usd-coinUSD Coin(USDC)$1.010.13%
  • rippleXRP(XRP)$0.430070-4.05%
  • cardanoCardano(ADA)$0.366684-2.90%
  • dogecoinDogecoin(DOGE)$0.075916-2.54%
  • staked-etherLido Staked Ether(STETH)$1,771.88-2.97%
  • matic-networkPolygon(MATIC)$1.10-3.20%