Users complain about problems with the news feed, login to the account and the Instagram…
By the way, we recently talked about the fact that More than $600 Million in Cryptocurrency Was Stolen from NFT game Axie Infinity, and also that NFTs May Reveal Users’ IP Addresses.
Representatives of Yuga Labs, the company behind the Bored Ape Yacht Club, reported the hack on their official Twitter.
It is reported that through hacked accounts, attackers announced a fake airdrop, accompanying the ad with a malicious link, following which people got to a phishing site that outwardly imitates the official website of Bored Ape Yacht Club, where they eventually transferred control over their wallets to attackers.
Malicious ads
Interestingly, Yuga Labs claims that two-factor authentication was enabled for the hacked accounts and security measures were generally “tight”. The incident is currently being investigated, but it is still completely unclear how the attackers were able to gain access to the accounts.
According to OpenSea, 24 NFTs from the Bored Apes collection and 30 from the Mutant Apes changed ownership after the hack. However, it is noted that some NFT holders themselves could transfer tokens to other persons for security reasons. The value of these 54 NFTs is approximately $13.7 million.
Independent researcher Zachxbt shared a link to the hacker’s Ethereum address, which is currently flagged as phishing on Etherscan. Apparently, 134 NFTs arrived at this address in a few hours.
Kurlibat.xyz is a site that tries to trick you into clik to its browser notifications…
Initiateintenselyrenewedthe-file.top is a domain that tries to trick you into clik to its browser notifications…
Wotigorn.xyz is a site that tries to force you into subscribing to its browser notifications…
Initiateintenselyprogressivethe-file.top is a domain that tries to force you into clik to its browser notifications…
Nuesobatoxylors.co.in is a domain that tries to trick you into subscribing to its browser notifications…
Helistym.xyz is a site that tries to force you into clik to its browser notifications…