Crypto News News

Brazilian Crypto Influencer Augusto Backes Loses $211,000 in Sophisticated Airdrop Phishing Scam

Brazilian Crypto Influencer Lost Over $211,000 To Airdrop-Related Phishing Scam

Imagine losing a fortune in a blink of an eye. That’s exactly what happened to Brazilian crypto influencer Augusto Backes, who saw a staggering $211,000 vanish from his wallet in a sophisticated airdrop-related phishing scam. This incident, which unfolded on March 3rd, serves as a stark reminder of the ever-present dangers lurking in the crypto space, even for seasoned individuals.

How Did This Happen to a Crypto Influencer?

You might think crypto influencers, being deeply immersed in the digital asset world, are immune to such scams. Unfortunately, that’s not the case. According to a video shared on his channel, Backes’s ordeal began with a seemingly innocuous phishing email. He clicked on a malicious link embedded within, a decision that would cost him dearly.

The email cleverly played on the hype surrounding airdrops, specifically one supposedly from Blast, Ethereum’s layer-2 scaling solution. Airdrops, which involve distributing free tokens to users, are a common and exciting part of the crypto world. Scammers exploit this excitement, preying on users’ eagerness to claim potential free crypto.

Backes admitted that while he’s no stranger to phishing attempts, this particular scam caught him off guard. He was in the midst of preparing a video script and, in his own words, got “sidetracked.” This highlights a crucial point: even vigilance can falter under pressure or distraction.

“In the middle of this anxiety, I received an email. Two months ago, I subscribed my wallet to Blast’s airdrop, and I had to prove the NFT quantity to be selected for this airdrop,” Backes explained in his video, recounting the moments leading to the hack.

The email’s deceptive nature is what made it so effective. Backes described it as a “well-crafted scam,” with the perpetrators meticulously imitating the official Blast website. The call to action was enticing: “Claim your tokens.” In a moment of lapse, Backes clicked the button, signed the transaction on his MetaMask wallet, and that was it. “The contract swallowed everything,” he lamented.

See Also: Crypto Sector Lost About $160M To Hack, Exploits, and Exit Scams In February: CertiK

Inferno Drainer Connection: Unpacking the Scam

To understand the technicalities of this attack, blockchain security firm CertiK stepped in. Joe Green, Head of CertiK’s Quick Response Team, shed light on the malicious infrastructure behind the scam. He pointed out that addresses linked to the notorious Inferno Drainer scam were involved.

Inferno Drainer was a well-known phishing kit that wreaked havoc in the crypto space before seemingly shutting down in November 2023. However, like a hydra, its tentacles might still be reaching out through different avenues. Green noted that a figure associated with Inferno Drainer had transitioned to the Angel Drainer team, suggesting a potential evolution or rebranding of the scam operation.

While Inferno Drainer’s fingerprints were present, Green clarified that it wasn’t likely a direct Inferno Drainer attack in its original form. He provided key wallet addresses involved in Backes’s case:

  • Scammer’s Wallet: 0x3CF955Bf92DD56CFE51cf7024EA1F2be49CEBC2F
  • Fee Address: 0xf672775e124E66f8cC3FB584ed739120d32bBaad
  • Transaction Initiator: 0x0000db5c8B030ae20308ac975898E09741e70000 (Associated with Inferno Drainer)

Key Takeaways: How to Protect Yourself from Airdrop Phishing Scams

Augusto Backes’s unfortunate experience offers valuable lessons for everyone in the Web3 space. Here are crucial steps to safeguard your crypto assets from phishing attacks, especially those disguised as airdrops:

  • Verify the Sender’s Email Address: This is often the first and most crucial line of defense. As Joe Green from CertiK emphasized, always scrutinize the sender’s email address. In Backes’s case, the email originated from [email protected], clearly not an official Blast email address.

Email address verification example for phishing scam
  • Double-Check URLs: Before clicking any link, especially in emails related to crypto airdrops or promotions, hover over the link to preview the URL. Ensure it leads to the official website. Scammers often use slightly altered URLs to deceive users.
  • Be Skeptical of Urgent Calls to Action: Phishing emails often create a sense of urgency, pressuring you to act quickly. Phrases like “Claim your tokens now!” or “Limited time offer!” should raise red flags.
  • Never Blindly Trust Emails: Even if an email looks legitimate, always exercise caution. Instead of clicking links in emails, manually type the website address into your browser to ensure you’re on the official site.
  • Use a Hardware Wallet: For significant crypto holdings, consider using a hardware wallet. These devices add an extra layer of security by keeping your private keys offline, making it much harder for scammers to access your funds even if you click a phishing link.
  • Stay Informed and Educated: The crypto landscape is constantly evolving, and so are scam tactics. Stay updated on the latest phishing techniques and security best practices. Follow reputable crypto security experts and resources.

See Also: The UK Introduces New Rules To Restrict Illicit Use Of Crypto Assets

Conclusion: Vigilance is Key in the Crypto World

Augusto Backes’s $211,000 loss is a painful but crucial lesson for the crypto community. It underscores that no one is entirely immune to phishing scams, regardless of their crypto expertise. The sophistication of these scams is constantly increasing, making vigilance more critical than ever. Always double-check, be skeptical, and prioritize security to protect your hard-earned crypto assets. In the fast-paced and exciting world of Web3, a moment of carelessness can have devastating consequences.

Disclaimer: The information provided is not trading advice. Bitcoinworld.co.in holds no liability for any investments made based on the information provided on this page. We strongly recommend independent research and/or consultation with a qualified professional before making any investment decisions.

 

#Binance #WRITE2EARN

Disclaimer: The information provided is not trading advice, Bitcoinworld.co.in holds no liability for any investments made based on the information provided on this page. We strongly recommend independent research and/or consultation with a qualified professional before making any investment decisions.