Content pfp
Content
@
0 reply
0 recast
0 reaction

Alex Bruno pfp
Alex Bruno
@alex
Someone help us understand how a scam airdrop token will drain your wallet https://warpcast.com/cryptocellaris/0x4db2c9f9 > I get airdropped $getRICH and see it in my wallet or a block explorer > I go to swap via Rainbow or using a DEX like Uniswap or Matcha > ??? > Drained 💸 ?
1 reply
0 recast
2 reactions

erica pfp
erica
@heavygweit
to transact with a token, you have to call the approve() function, which lets the token smart contract access your *wallet*, not just that token then when you go to sign the suggested tx, that smart contract likely has hidden malicious functions c1…
1 reply
0 recast
1 reaction

erica pfp
erica
@heavygweit
most onchain security platforms work through analyzing the smart contract’s function signatures which are a 4 byte hash representing the function’s name and parameters that pass through it HOWEVER most do not fully deconstruct the code that’s within a function c2
1 reply
0 recast
1 reaction