downshift - μ/acc
@downshift.eth
how does an attacker spoof an ENS like this?
14 replies
2 recasts
9 reactions
Angel - Not A Bot
@sayangel
My guess at what happened here: - Scam token and contract created - In Transfer function the SC emits an event where the “from” address is always vitalik’s address - polygonscan and wallet are using the event as source of truth I bet if you look at the tx the address that initiated the address is not the same as the “From” in the token transfer summary
2 replies
1 recast
8 reactions
Angel - Not A Bot
@sayangel
This alone shouldn’t be enough to drain your wallet. Either: wallet was already compromised or whoever received this airdrop thought it was legit and then tried to cash out, buy more, etc and executed a malicious tx that led to draining
1 reply
1 recast
2 reactions
patxol 🔷 anser.social
@patxol.eth
Yep, that’s a common scam. Events are a weakness, and explorers should check the token balance of the origin before registering them as tx.
0 reply
1 recast
2 reactions