Good day everyone,
I hope you are all having a good day, welcome to CryptoGod-1's blog on all things crypto. In this post I will be looking at a recent phishing attack which saw a crypto whale lose $32 million to the Inferno Drainer Software.
Inferno Drainer
A crypto whale fell victim to a phishing attack which saw 12,083 wrapped ether tokens (spWETH) stolen in a malicious transaction. The overall value of the tokens stood at just over $32.4 million at the time of the incident, and the theft was flagged by blockchain security firm ScamSniffer. The theft happened on decentralized finance (DeFi) protocol Spark. According to blockchain intelligence company Arkham, the attack was done through the use of the Inferno Drainer.
The Inferno Drainer is a scam-as-a-service tool which is one of the latest drainer software used by scammers to target victims. It creates a fake version of a number of popular DeFi protocols and persuades users into signing transactions which in turn hand control of the wallet over to the scammer. It has been reported by a Dune Analytics dashboard created by ScamSniffer that the Inferno Drainer has so far been responsible for stealing over $215 million from more than 200,000 victims throughout its existence.
Apparently the service operators take a 20% commission on every scam initiated by the software. The Inferno Drainer was shut down by its developers in November 2023 but it resurfaced in May 2024 along with claims of improved features, new staff, and support for up to 28 different blockchains and hundreds of DeFi apps.
So far the identify of the victim of this phishing attack remains unknown, but according to blockchain investigator ZachXBT there were significant transactions linking the compromised wallet to a whale known as CZSamSun. A message was sent from the victims wallet which noted a 20% reward for the return of the stolen funds. No response has been received from the scammers as of yet, and it is unlikely they will respond to the desperate attempt from the victim to recover their funds.
The blockchain analytics firm LookOnChain has since advised users to use extreme caution and avoid unfamiliar links. They also advise verifying all transactions before signing as this can help to prevent falling victim to a similar attack. The use of anti-phishing software and good antivirus programs being installed on ones device is also good practice, as these programs can detect and block these threats. Regularly updating your device, and its software, are also worthwhile options when trying to defend against the scam service. Finally, always employ two-factor authentication when available to add an additional security layer against unauthorized access of your account.
Have a great day.
Peace. CryptoGod-1.
Referral Links and Follow Me: