downshift - ΞΌ/acc pfp
downshift - ΞΌ/acc
@downshift.eth
how does an attacker spoof an ENS like this?
14 replies
2 recasts
9 reactions

rathermercurial pfp
rathermercurial
@rathermercurial.eth
Huh. I ran into a spearphishing bot doing this and wondered how long it would take before this happened. Seems like the attacker sends a bogus coin to Vitalik's address which they can arbitrarily transfer as the Admin (collateral tokens do this for legitimate reasons, for example).. Then they simply transfer it to the target. They can also design it to mimic a normal, expected transaction, using a ticker like $USDC to fool the target into thinking it was an expected payment.
0 reply
0 recast
2 reactions