SafePal data breach exposes 39,798 customers’ personal data
The exposure is the third wallet-industry customer-data incident in months, all routed through commerce or shipping vendors rather than the wallets themselves, putting the spotlight on the…
Every Zipp story tagged #Phishing, newest first.
The exposure is the third wallet-industry customer-data incident in months, all routed through commerce or shipping vendors rather than the wallets themselves, putting the spotlight on the…
Private keys and seed phrases are untouched, but names, physical addresses and contact details are now in the wild, giving attackers a clean phishing dataset that will linger well past the patch.
The scam fits a pattern: crypto security nonprofit SEAL blocked 356 malicious Google ad URLs in April alone, several impersonating Hyperliquid.
Wallets and firmware stay intact, but the leaked phone numbers and home addresses give phishing crews exactly what they need to mail counterfeit devices and run home-targeted extortion.
AI-assisted financial lures raise the security risk for crypto firms, fintech providers and investors, making phishing resilience part of market infrastructure.
The letters mimic official IRS correspondence and direct recipients to a "Digital Asset Compliance Portal" that does not exist, part of a broader wave of social-engineering attempts targeting crypto…
The campaign weaponises USB shortcuts, clipboard monitoring, and Tor to drain wallets, with an Uber Eats delivery breadcrumb hinting at how far the operators are willing to mass-pollute endpoints.
The weekly round-up also tracks a $1M approval-phishing loss, Michael Saylor's shifting narrative, and the crypto entanglements of Farage and Trump.
The X accounts for SpaceX-linked AI and satellite-internet brands were hijacked to promote a memecoin that the operator minted and dumped in minutes for roughly $125K.
The refund pledge buys goodwill, but a third-party vendor breach, repeated phishing incidents, and a federal marketing investigation now converge on the prediction market at the same time.
Quantstamp's investigation into the June 8 Humanity Protocol H token incident is public, and the firm's findings point…
The loss number is modest, but the attack vector — paid Google Search ads spoofing a top DEX's domain — has become the default phishing lane for crypto users and is widening.
An admin key leak let an attacker mint unbacked eBTC on Monad; the team's $816K loss is contained, but a 955-eBTC burn and an active phishing warning mean the cleanup is not over.
Casa co-founder Jameson Lopp has issued a warning about a phishing technique that exploits legitimate Google recovery…
After billions lost to phishing and wallet drains, the Foundation pairs ERC-7730 with a public registry so wallets can show users plain-English prompts before they hit approve.
The headline figure spans cumulative protection since 2023, with $1.98B saved in Q1 2026 alone from 22.9M flagged attempts — but Binance Research's own data flags AI as 2x better at exploitation than…
The scale — 500+ wallets, some untouched for years — suggests something beyond a single-point exploit; the on-chain trail points to a shared compromise vector still under investigation.
Over 500 long-idle wallets — some four to eight years cold — were swept into a tagged phishing address, and the compromise path remains unresolved as April's $635M exploit tally closes.