{"id":18923,"date":"2022-05-03T06:10:03","date_gmt":"2022-05-03T14:10:03","guid":{"rendered":"https:\/\/www.palada.net\/index.php\/2022\/05\/03\/news-12656\/"},"modified":"2022-05-03T06:10:03","modified_gmt":"2022-05-03T14:10:03","slug":"news-12656","status":"publish","type":"post","link":"https:\/\/www.palada.net\/index.php\/2022\/05\/03\/news-12656\/","title":{"rendered":"Airdrop phishing: what is it, and how is my cryptocurrency at risk?"},"content":{"rendered":"<p><strong>Credit to Author: Christopher Boyd| Date: Tue, 03 May 2022 13:16:23 +0000<\/strong><\/p>\n<p>Airdrop phishing is a really popular tactic at the moment. It emerged alongside the explosion of Web3\/NFT\/cryptocurrency popularity, and ensures scammers get a slice of the money pie. You may well have heard the term in passing, and wondered what an Airdrop is. Is your iPhone about to be Airdrop phished?<\/p>\n<p>It doesn\u2019t really help that the term tied up into lots of new forms of tech you might never have experienced directly. It\u2019s one of those odd scams, doing weird things, to accounts you have no idea about.<\/p>\n<p>Fret no more, because we\u2019re going to walk you through an actual Airdrop phish example. No apes were harmed in the making of this documentary.<\/p>\n<h2>What is an Airdrop?<\/h2>\n<p>Confusingly, the term has multiple uses jostling for attention. The older, more familiar term is the one related to Apple devices. An Apple Airdrop is where Bluetooth is used to <a href=\"https:\/\/support.apple.com\/en-gb\/HT204144\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">send files<\/a> to other people. If you\u2019re not an Apple user, it\u2019s likely you\u2019ve only ever seen Airdrop in relation to <a href=\"https:\/\/www.theverge.com\/tldr\/2014\/11\/10\/7171345\/the-best-use-for-apple-airdrop-is-space-sloths\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">trolling<\/a>. If you\u2019re out and about, you may walk into an unintended <a href=\"https:\/\/www.theatlantic.com\/technology\/archive\/2019\/06\/why-teens-try-airdrop-you-memes-concerts\/591064\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">crossfire of memes<\/a>, and in the worst case scenario, it might be <a href=\"https:\/\/www.businessinsider.com\/apple-airdrop-iphone-how-to-turn-off-2018-10?r=US&amp;IR=T\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">objectionable unsolicited images<\/a>.<\/p>\n<p>In terms of security concerns specifically, research has shown how it could potentially aid <a href=\"https:\/\/www.theregister.com\/2021\/04\/22\/airdrop_contact_leaks\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">spear phishing<\/a> in the right circumstances. Crucially, none of these things are related to the Airdrops we\u2019re talking about <em>today<\/em>.<\/p>\n<h2>What type of Airdrop are we talking about?<\/h2>\n<p>The Airdrops of the moment are promotional tactics aimed at cryptocurrency\/Web3 people. Airdrops typically reward early adopters of certain currencies or communities. This type of reward can also be given out as no strings attached freebies to anyone who wants in on the action, and they\u2019re great ways to keep people emotionally invested in their Web3 activities. There\u2019s a lot of real world examples listed <a href=\"https:\/\/beincrypto.com\/learn\/crypto-and-nft-airdrop\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">here<\/a>.<\/p>\n<p>In terms of how you <em>receive<\/em> the Airdrop, there are a few different ways. Those early adopters may find the free Airdrop distributed to their address automatically, assuming they have some level of investment in the service giving it away. A big red flag is when a supposed Airdrop asks for funds (for a freebie?), or even worse, your login\/recovery phrase.<\/p>\n<p>Nobody should <em>ever<\/em> be asking for that.<\/p>\n<p>Airdrops are very popular, and this is where phishing attacks come in.<\/p>\n<h2>Common Airdrop phishing tactics<\/h2>\n<p>Airdrop phish pages try to ensnare as many cryptocurrency users as possible. No matter how obscure your digital currency of choice is, or how unusual your wallet is, there\u2019s a scam just waiting for you.<\/p>\n<p>Our bogus site below is quite slick looking, complete with ticker at the top. \u201cClaim reward bonus\/Airdrop\u201d, they implore.<\/p>\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-large\"><img decoding=\"async\" data-attachment-id=\"56161\" data-permalink=\"https:\/\/blog.malwarebytes.com\/airdrop1-2\/\" data-orig-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop1-edited.jpg\" data-orig-size=\"643,592\" data-comments-opened=\"0\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"airdrop1\" data-image-description=\"\" data-image-caption=\"\" data-medium-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop1-edited-300x276.jpg\" data-large-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop1-edited-600x552.jpg\" loading=\"lazy\" width=\"643\" height=\"592\" src=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop1-edited.jpg\" alt=\"\" class=\"wp-image-56161\" srcset=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop1-edited.jpg 643w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop1-edited-300x276.jpg 300w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop1-edited-600x552.jpg 600w\" sizes=\"auto, (max-width: 643px) 100vw, 643px\" \/><figcaption><em>An Airdrop phish<\/em><\/figcaption><\/figure>\n<\/div>\n<p>Hitting the button takes you to the select a wallet page. There is, quite simply, a ridiculous amount of wallets and services listed. MetaMask, Solflare, Binance, Digitex, Argent, the works. If you use any form of cryptocurrency wallet or service, there\u2019s a good chance it\u2019s on the list somewhere.<\/p>\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-large\"><img decoding=\"async\" data-attachment-id=\"56162\" data-permalink=\"https:\/\/blog.malwarebytes.com\/airdrop2-2\/\" data-orig-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop2-edited.jpg\" data-orig-size=\"663,631\" data-comments-opened=\"0\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"airdrop2\" data-image-description=\"\" data-image-caption=\"\" data-medium-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop2-edited-300x286.jpg\" data-large-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop2-edited-600x571.jpg\" loading=\"lazy\" width=\"663\" height=\"631\" src=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop2-edited.jpg\" alt=\"\" class=\"wp-image-56162\" srcset=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop2-edited.jpg 663w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop2-edited-300x286.jpg 300w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop2-edited-600x571.jpg 600w\" sizes=\"auto, (max-width: 663px) 100vw, 663px\" \/><figcaption><em>Wallets galore<\/em><\/figcaption><\/figure>\n<\/div>\n<p>Clicking any of the wallets results in you being informed that an error has occurred. Connecting manually is what you\u2019re now asked to do. From here, you\u2019re asked to send them your phrase, private key, or keystore.<\/p>\n<p>Hitting connect pauses the site for a second, then dumps you onto a 404 Page not found containing \u201csent\u201d in the URL. At this point, it\u2019s probably a good idea to hope the 404 is genuine and nothing has been sent to the scammers.<\/p>\n<p>Some sites target users of one wallet only. Here\u2019s one targeting MetaMask users, asking for their recovery phrase:<\/p>\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-large\"><img decoding=\"async\" data-attachment-id=\"56163\" data-permalink=\"https:\/\/blog.malwarebytes.com\/airdrop12-2\/\" data-orig-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop12-edited.jpg\" data-orig-size=\"574,603\" data-comments-opened=\"0\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"airdrop12\" data-image-description=\"\" data-image-caption=\"\" data-medium-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop12-edited-286x300.jpg\" data-large-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop12-edited-571x600.jpg\" loading=\"lazy\" width=\"574\" height=\"603\" src=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop12-edited.jpg\" alt=\"\" class=\"wp-image-56163\" srcset=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop12-edited.jpg 574w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop12-edited-286x300.jpg 286w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop12-edited-571x600.jpg 571w\" sizes=\"auto, (max-width: 574px) 100vw, 574px\" \/><figcaption><em>&#8220;Type your secret phrase&#8230;&#8221;<\/em><\/figcaption><\/figure>\n<\/div>\n<p>As MetaMask&#8217;s official support says:<\/p>\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\">\n<div class=\"wp-block-embed__wrapper\">\n<blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">To get support, open MetaMask and navigate to \u201cSupport\u201d or \u201cGet Help\u201d within the dropdown menu. Do not trust anyone who has sent you a direct message. UNDER NO CIRCUMSTANCES should you ever give your Secret Recovery Phrase to anyone or input it into any site!<\/p>\n<p>&mdash; MetaMask Support (@MetaMaskSupport) <a href=\"https:\/\/twitter.com\/MetaMaskSupport\/status\/1519961040452206592?ref_src=twsrc%5Etfw\">April 29, 2022<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script> <\/div>\n<\/figure>\n<h2><strong>The ape themed Airdrop phish<\/strong><\/h2>\n<p>Apes are, of course, the hottest draw in town where Airdrop phishing is concerned. Just recently, close to $3m worth of Ape NFTs were <a href=\"https:\/\/news.artnet.com\/art-world\/nft-scam-hackers-official-bored-ape-instagram-account-2105026\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">stolen via an Instagram compromise<\/a>. Anything ape related is a giant dollar sign in the sky for fraudsters, and the variety of fake pages out there reflects this.<\/p>\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-large\"><img decoding=\"async\" data-attachment-id=\"56148\" data-permalink=\"https:\/\/blog.malwarebytes.com\/crypto\/2022\/05\/airdrop-phishing-what-is-it-and-how-is-my-cryptocurrency-at-risk\/attachment\/airdrop6\/\" data-orig-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop6.jpg\" data-orig-size=\"895,724\" data-comments-opened=\"0\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"airdrop6\" data-image-description=\"\" data-image-caption=\"\" data-medium-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop6-300x243.jpg\" data-large-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop6-600x485.jpg\" loading=\"lazy\" width=\"600\" height=\"485\" src=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop6-600x485.jpg\" alt=\"\" class=\"wp-image-56148\" srcset=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop6-600x485.jpg 600w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop6-300x243.jpg 300w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop6.jpg 895w\" sizes=\"auto, (max-width: 600px) 100vw, 600px\" \/><figcaption><em>All my apes soon to be gone<\/em><\/figcaption><\/figure>\n<\/div>\n<p>This particular site asked visitors to claim up to 10 Bull &amp; Ape NFTs, then asked for a variety of password\/recovery phrases. The supposed T&amp;C page leads to a 404, and the cookies and privacy policy pages go to pages from an unrelated wallet app. Does this <em>really<\/em> sound like something you want to hand over your recovery phrase to?<\/p>\n<h2>The &#8220;Connect your wallet&#8221; Airdrop phish<\/h2>\n<p>This is where a scam site checks to see if you have a wallet installed, and if not, tells you to install one and then connect it to the site.<\/p>\n<p>Here\u2019s an account with 60k followers, claiming to be the Moonbirds project offering up an NFT airdrop:<\/p>\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-large\"><img decoding=\"async\" data-attachment-id=\"56164\" data-permalink=\"https:\/\/blog.malwarebytes.com\/crypto\/2022\/05\/airdrop-phishing-what-is-it-and-how-is-my-cryptocurrency-at-risk\/attachment\/created-with-gimp-40\/\" data-orig-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/fake-twitter-account-airdrop.jpg\" data-orig-size=\"519,906\" data-comments-opened=\"0\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;Created with GIMP&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;Created with GIMP&quot;,&quot;orientation&quot;:&quot;1&quot;}\" data-image-title=\"Created with GIMP\" data-image-description=\"\" data-image-caption=\"&lt;p&gt;Created with GIMP&lt;\/p&gt; \" data-medium-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/fake-twitter-account-airdrop-172x300.jpg\" data-large-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/fake-twitter-account-airdrop-344x600.jpg\" loading=\"lazy\" width=\"344\" height=\"600\" src=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/fake-twitter-account-airdrop-344x600.jpg\" alt=\"\" class=\"wp-image-56164\" srcset=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/fake-twitter-account-airdrop-344x600.jpg 344w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/fake-twitter-account-airdrop-172x300.jpg 172w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/fake-twitter-account-airdrop.jpg 519w\" sizes=\"auto, (max-width: 344px) 100vw, 344px\" \/><figcaption><em>A fake Twitter account offering up bogus airdrops<\/em><\/figcaption><\/figure>\n<\/div>\n<p>When people started calling out the tweet, they locked people\u2019s ability to reply under the guise of \u201csafety\u201d so nobody else could highlight the scam.<\/p>\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-full\"><img decoding=\"async\" data-attachment-id=\"56165\" data-permalink=\"https:\/\/blog.malwarebytes.com\/crypto\/2022\/05\/airdrop-phishing-what-is-it-and-how-is-my-cryptocurrency-at-risk\/attachment\/created-with-gimp-41\/\" data-orig-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop9-1.jpg\" data-orig-size=\"560,432\" data-comments-opened=\"0\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;Created with GIMP&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;Created with GIMP&quot;,&quot;orientation&quot;:&quot;1&quot;}\" data-image-title=\"Created with GIMP\" data-image-description=\"\" data-image-caption=\"&lt;p&gt;Created with GIMP&lt;\/p&gt; \" data-medium-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop9-1-300x231.jpg\" data-large-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop9-1.jpg\" loading=\"lazy\" width=\"560\" height=\"432\" src=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop9-1.jpg\" alt=\"\" class=\"wp-image-56165\" srcset=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop9-1.jpg 560w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop9-1-300x231.jpg 300w\" sizes=\"auto, (max-width: 560px) 100vw, 560px\" \/><figcaption><em>&#8220;We are worried about your safety&#8230;&#8221;<\/em><\/figcaption><\/figure>\n<\/div>\n<p>This is the genuine Moonbirds account. Note the verified status, which the imposter lacks:<\/p>\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\">\n<div class=\"wp-block-embed__wrapper\">\n<blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\"><img decoding=\"async\" src=\"https:\/\/s.w.org\/images\/core\/emoji\/13.1.0\/72x72\/1f6a8.png\" alt=\"\ud83d\udea8\" class=\"wp-smiley\" style=\"height: 1em; max-height: 1em;\" \/> BEWARE of scammers, we don&#39;t Instagram, have a public discord, or have any other URL other than <a href=\"https:\/\/t.co\/py5fF2nTlX\">https:\/\/t.co\/py5fF2nTlX<\/a> <img decoding=\"async\" src=\"https:\/\/s.w.org\/images\/core\/emoji\/13.1.0\/72x72\/1f989.png\" alt=\"\ud83e\udd89\" class=\"wp-smiley\" style=\"height: 1em; max-height: 1em;\" \/><\/p>\n<p>&mdash; Moonbirds (\ud83e\udeb9, <img decoding=\"async\" src=\"https:\/\/s.w.org\/images\/core\/emoji\/13.1.0\/72x72\/1f989.png\" alt=\"\ud83e\udd89\" class=\"wp-smiley\" style=\"height: 1em; max-height: 1em;\" \/>) (@moonbirds) <a href=\"https:\/\/twitter.com\/moonbirds\/status\/1512550209108131844?ref_src=twsrc%5Etfw\">April 8, 2022<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script> <\/div>\n<\/figure>\n<p>Below, you can see my already installed MetaMask extension opening in the top right corner when I click the \u201cConnect Wallet\u201d button on the fake Airdrop page.<\/p>\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-large\"><img decoding=\"async\" data-attachment-id=\"56152\" data-permalink=\"https:\/\/blog.malwarebytes.com\/crypto\/2022\/05\/airdrop-phishing-what-is-it-and-how-is-my-cryptocurrency-at-risk\/attachment\/airdrop11\/\" data-orig-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop11.jpg\" data-orig-size=\"1000,719\" data-comments-opened=\"0\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"airdrop11\" data-image-description=\"\" data-image-caption=\"\" data-medium-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop11-300x216.jpg\" data-large-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop11-600x431.jpg\" loading=\"lazy\" width=\"600\" height=\"431\" src=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop11-600x431.jpg\" alt=\"\" class=\"wp-image-56152\" srcset=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop11-600x431.jpg 600w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop11-300x216.jpg 300w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2022\/04\/airdrop11.jpg 1000w\" sizes=\"auto, (max-width: 600px) 100vw, 600px\" \/><figcaption><em>Connecting an extension to a scam site<\/em><\/figcaption><\/figure>\n<\/div>\n<p>Connecting your wallet to Decentralised Applications (Dapps) is <a href=\"https:\/\/gelending.com\/is-it-risky-to-connect-metamask-to-other-websites\/#Should_You_Connect_Other_Websites_To_MetaMask\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">common<\/a>. What you need to be careful of is <a href=\"https:\/\/metamask.zendesk.com\/hc\/en-us\/articles\/4405506066331\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">connecting to rogue sites<\/a>. If you start granting permissions, or signing transactions, you may find your wallet draining of funds. It\u2019s up to you to ensure that you don\u2019t simply say \u201cyes\u201d to everything a site asks you. From the MetaMask FAQ:<\/p>\n<blockquote class=\"wp-block-quote\">\n<p><em>Be careful about which Dapps you connect to, and what permissions you give them.&nbsp;<\/em><\/p>\n<p><em>Certain types of transaction require granting a Dapp permission to access your funds&#8211;infinite amounts of your funds.<\/em><\/p>\n<p><em>In fact, there have been cases of Dapps being created specifically with the intent to defraud users and steal all of their funds once they&#8217;ve granted this kind of access.<\/em><\/p>\n<\/blockquote>\n<h2>Where Airdrops are concerned: safety first, every single time<\/h2>\n<p>Nobody needs the stress of losing all their digital currency because of phishing, no matter which form it arrives in. Whether it\u2019s websites asking for recovery phrases or Dapp style sites connecting wallets, be very careful what you do with your wallet. You almost certainly won\u2019t get a second chance if things go wrong.<\/p>\n<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\/crypto\/2022\/05\/airdrop-phishing-what-is-it-and-how-is-my-cryptocurrency-at-risk\/\">Airdrop phishing: what is it, and how is my cryptocurrency at risk?<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\">Malwarebytes Labs<\/a>.<\/p>\n<p><a href=\"https:\/\/blog.malwarebytes.com\/crypto\/2022\/05\/airdrop-phishing-what-is-it-and-how-is-my-cryptocurrency-at-risk\/\" target=\"bwo\" >https:\/\/blog.malwarebytes.com\/feed\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><strong>Credit to Author: Christopher Boyd| Date: Tue, 03 May 2022 13:16:23 +0000<\/strong><\/p>\n<p>We take a look at the popular tactics used in Airdrop phishing to steal access to cryptocurrency users&#8217; digital finances.<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\/crypto\/2022\/05\/airdrop-phishing-what-is-it-and-how-is-my-cryptocurrency-at-risk\/\">Airdrop phishing: what is it, and how is my cryptocurrency at risk?<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\">Malwarebytes Labs<\/a>.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10488,10378],"tags":[25932,25933,25934,10537,25935,25744,13664,25936,25937,25938,25939,14646],"class_list":["post-18923","post","type-post","status-publish","format-standard","hentry","category-malwarebytes","category-security","tag-airdrop","tag-airdrops","tag-binance","tag-crypto","tag-dapp","tag-defi","tag-ethereum","tag-metamask","tag-oasis","tag-ronin","tag-trust-wallet","tag-wallet"],"_links":{"self":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/18923","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=18923"}],"version-history":[{"count":0,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/18923\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=18923"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=18923"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=18923"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}