[ 3 / biz / cgl / ck / diy / fa / ic / jp / lit / sci / vr / vt ] [ index / top / reports ] [ become a patron ] [ status ]
2023-11: Warosu is now out of extended maintenance.

/biz/ - Business & Finance


View post   

File: 7 KB, 300x300, images - 2022-05-02T192021.053.jpg [View same] [iqdb] [saucenao] [google]
57526776 No.57526776 [Reply] [Original]

The recent pattern of crypto wallet drainer attacks is stressing people out, especially those engaging in various smart contracts. I've seen many people still falling victim to this, resulting in their wallets being drained dry. Back to zero.

>> No.57526779

>>57526776
elaborate

>> No.57526806

>>57526779
Don't you understand?

>> No.57526815

>>57526806
No, thats why he asked you to elaborate.
Don't you understand?

>> No.57526818

>>57526815
It's already simple. How to make it simpler?

>> No.57526824

Use multiple wallets you dummy dum.

Cold storage for holding, hot wallet for smart contract signing and dapp degening in general. Never ever connect your main wallet to any dapp

>> No.57526842

>>57526824
This is what I can suggest to everyone too.

>> No.57526854

>>57526779
People buy shitcoins that have malicious contracts which drain wallets, as most people have no idea what they're doing they either let shitcoin have full wallet privledge or accept a malicious airdrop which takes allows the malicious user to drain the persons wallet

>> No.57526866

Not even the trezor that was shoved up Do Kowns ass is as safe as my metamask wallet that I’ve used for the last 2 years.

>> No.57526869

>>57526854
>accept malicious airdrop
there's no way of preventing airdrops, is there?

>> No.57527179

>>57526776
So airdrop hunters should stop

>> No.57527219

>>57526776
Wtf is going on

>> No.57527250

>>57526776
I'm using my TrustWallet since 2019 and I never experienced such issues.

>> No.57527293

>>57526776
This is ridiculous

>> No.57527309

>>57526854
wtf is a shitcoin with malicious contracts? I'm legit new and have never seen this. How would you know?

>> No.57527320

>>57526869
receiving it can't hurt you. what will hurt you is interacting with it without knowing what it does. more commonly, what gets most people are malicious websites. dapp "front ends" are basically just tools to format transactions. a website can pass you literally any transaction and ask you to sign it. you have to carefully verify it before you sign. it's easy for people to get too comfortable and sign things without thinking, then they get drained

>> No.57527325

>>57526869
they often link to a sketchy drainer website in their description. connect your wallet and your fd.

>> No.57527334

>>57526776
Do you understand?

>> No.57527347

>>57526854
That's the problem usually.

>> No.57527349

>>57527309
anyone can edit a basic erc20 token template and add malicious logic to it. things that prevent you from selling, or that steal tokens when you try to transfer, or that make you approve transfer of a completely different token for the attacker to steal. don't interact with contracts if you don't know what they do

>> No.57527351

>>57526869
most legitimate airdrops make you manually claim the tokens, so you can get phished through a fake link to a malicious website or you get sent an airdrop of a token that has the url address for that website. The fake website may look like the real one and instead of allowing you to claim the real token, it makes you approve things like sending eth or using your existing approvals or authorizing new approvals for crypto/nfts.
So you should research all links before clicking on them, don't go to urls that are listed on crypto sent to you, use multiple wallets that are mostly hardware wallets, and regularly check and remove approvals on all wallets.

>> No.57527355

>>57526866
Good for you. Don't use it for anything. Your main account will be your main account.

>> No.57527376

>>57526776
Someone lost $14,000 for that shit

>> No.57527494

>>57526776
Better not engage in airdrops

>> No.57527541

>>57526776
No other way ?

>> No.57527591

>>57526776
>phising

>> No.57527599
File: 144 KB, 708x664, 1705618763376363.jpg [View same] [iqdb] [saucenao] [google]
57527599

>>57526776
That has always happened and it can happen to you with your credit card too, they usually hook you on sites like twitter and beoble and drain every single thing you have

It's a clown world

>> No.57527620

>>57526776
That is totally a stressful thing

>> No.57527621

>>57526776
fuckin, im not gonna click any links from strangers lmao.
>>57527599
they can use our credit card as well? GG .

>> No.57527635

>>57527599
Dont even understand why people can believe with this kind of scam. Small brain, no joke.

Better save it in cold wallet desu.

>> No.57527636

>>57526854
You can get drained just by buying the wrong shitcoin on uniswap?

>> No.57527652

>>57526776
Only idiots will make it

>> No.57527657

>>57527599
>phising link
>dumb ways to die
>fuck that shit

>> No.57527679

>the future of finance
>copy/paste shitcoin contracts can be trivially used to drain the average normalfag retard dry
Very cool bros

>> No.57527700

>>57526776
If I have 2 wallets that use the same seed phrase and one gets compromised from signing a transaction does the other get compromised as well?

>> No.57527769

>>57527700
Why bother with a seed phrase when you can opt for an AA wallet type that eliminates the need for it? It's time for a change anon.

>> No.57527818

>>57526818
Don't you understand how to make it simpler?

>> No.57527829

>>57527309
Just be careful
>>57527769
Hmm, that works

>> No.57527835

ha ha ha ha shitcoiners get fucked

>> No.57527894
File: 86 KB, 512x512, 554d41e2-1dd7-4bf1-a430-c0c96341d155.png [View same] [iqdb] [saucenao] [google]
57527894

>>57527829
What I've noticed is that these wallets are enhancing user security and privacy. Brillion and Holdstation, for instance, are my top picks for AA wallets.

>> No.57527997

>>57527679
Scam bros

>> No.57528089

>>57527894
Never heard of that wallet. I would rather hold on my metamask

>> No.57528196

>>57528089
Up to you! It's all about how you use your wallet daily. Both options work for me depending on my needs. No need to eliminate one and stick to just one.

>> No.57528320

>>57528196
Still every wallet is prone to hacking fyi

>> No.57528376

>>57528320
Everything involves risks, really. Just gotta be careful and avoid clicking on phishing links to steer clear of getting your wallet drained.

>> No.57528428

>>57527894
I'll try to explore if I won't forgot

>> No.57528457

>>57527835
Sometimes they're up for $100 airdrop in exchange of signing smart contract scam

>> No.57528511

>>57528428
If security and privacy are your top priorities, then this is for you. Look for its V1 with added banking integration, which is a better feature addition, imo.

>> No.57528545

>>57528511
It's common. Centralised thing for bank addition

>> No.57528548

>>57528457
That's so poor of them.

>> No.57528660

>>57528545
For them, it's not a centralized approach; they're aiming to minimize reliance on central authorities or intermediaries. This is achievable by leveraging blockchain tech for a greater advantage anon.

>> No.57528688

>>57528660
Blockchain is the future but problems are still here.

>> No.57528714

>>57528548
Well, money is money. Airdrop is also good but can drain your wallet

>> No.57528752

just get bitcoin through fidelity or something why take chances

>> No.57528783

>>57528688
Yeah, there's no perfect solution yet. It can give more freedom and transparency, it might also have problems with handling lots of users and making things easy to use. That's why fixing those issues is their main focus for mass adoption.

>> No.57528807

>>57528714
>I have gotten over $400k from airdrop and my 20 wallets are SAFU.

>> No.57528845

>>57528783
Regulatory too
>>57528807
How come?

>> No.57528898

>>57528845
That's why they're leveraging NexeraID tech for compliance solutions, which is a big addition for them.

>> No.57528914

>>57528807
>RICH ass

>> No.57528961

>>57528511
So many vaporwallets

>> No.57529018

>>57528961
Are you talking about those vaporware projects? That's why it's important to DYOR before backing any project and risking your investments in their altcoins. Don't just trust random influencers.

>> No.57529045

>>57527320
>For the sake of airdrop. It's not making sense haha

>> No.57529081

>>57529045
You can't blame the kids

>> No.57529124

>>57528783
Many people still use centralised services for good reason

>> No.57529136

>>57526776
so many fucks concerned here.

>> No.57529175

>>57529124
They're mainly using it because it's popular and easy to access. It's wise to choose a service where you have full control over your assets and identity.

>> No.57529269

>>57529136
Fuck the world

>> No.57529345

>>57529124
If it works for you fine. I prefer those implementing account abstraction a promising concept that addresses the challenge of lost seed phrases by enabling easy logins through our social media accounts.

>> No.57529412

>>57527769
explain how account abstraction eliminates the need for managing your private keys. my understanding is that AA is a smart contract that has allowed spending wallets. those wallets still have private keys.

what am i missing.

>> No.57529431

>>57529175
Anon, popularity doesn't always equate to security or control. Choosing a platform that prioritizes user control over assets and identity to safeguards your financial and personal information is the only thing.

>> No.57529444

>>57529412
Guess you can access it through socials and biometrics, which makes managing your funds faster.

>> No.57529445

>>57529412
Research anon. Nobody is here to spoonfeed you. Just know that the approach enhances account authorization by decoupling it from traditional private key ownership.

>> No.57529454

>>57529345
How come

>> No.57529467

>>57529444
These methods could pose security risks, as they might not provide the same level of protection as traditional authentication methods. It's essential to strike a balance between convenience and security to ensure the safety of your funds and sensitive information
.>>57529454
dyor anon

>> No.57529493

>>57526869
Kek, seriously? I'd heard about that, but thought it was a joke. I've been in Hedera for a while and not bothered with others, so I thought their token associate feature, where you have to allow a token before it can be airdropped, was normal. How have other chains not adopted such a thing, since this problem seems common?

>> No.57529557

>>57526869
Any potential project find it useful to distribute airdrop to it's users to earn money

>> No.57529651

>>57529444
>it through socials


I feel this depends on centralize hierarchy. Don't you think so?

>> No.57529661

>>57529467
>These methods could pose security risks


security risk in what way?


I don't think it does when you look at it critically, but my major concern is the fact that it uses social login, which I feel is centralize.

>> No.57529673
File: 471 KB, 897x744, 2b2b.png [View same] [iqdb] [saucenao] [google]
57529673

>>57526776
>the future of money
smart contracts failed

>> No.57529675

>>57529651
>>57529467
>>57529431
Fucking inorganic jeet posts. I wonder what it's building to

>> No.57529705
File: 7 KB, 225x225, jgkjg.jpg [View same] [iqdb] [saucenao] [google]
57529705

>>57529675
worthless MF find it difficult to read just a couple of lines of thread. I hate when jeet jump to conclusions without taking a proper look at things.

>> No.57529707

>>57529673
This is why a "money" chain and an "assets" chain will always be separate.

>> No.57529731

>>57529675
If you care to know, they are discussing account abstraction, and I don't really fancy the use of social login instead of SeedPhrase in this area of innovation. I think it defeats the entire purpose of decentralization. Although we don't have a full-stack decentralization system, There are bunch of centralized shit that claim to be decentralized.

>> No.57529735

>>57529651
It does but it serves as a login only, but when it comes to transactions, everything is decentralized. Social interaction is what will onboard Web2 users and drive user growth.

>> No.57529776

>>57526776
Wallets with account abstraction feature could lead the future of crypto wallets.

>> No.57529779

>>57529735
>>57529776
How?

>> No.57529784

>>57529735
You can't merge centralized and decentralized features together and expect to have a decentralized system, you freak. Think about it or go home and cry.

>> No.57529795

>>57529707
What is the biggest difference between money and asset?

>> No.57529801

>>57529731
>SeedPhrase importance should never be overemphasized.

>> No.57529813

>>57529675
Shut the fuck up and let anons breathe.

>> No.57529820

>>57529735
What makes you think those retards won't be sneaking on us via the use of email, Fb, or X? Except there is a way to bypass that via integration, which I'm not really seeing.

>> No.57529832

>>57529784
I think compliance could be the big catch here, to some extent.

>> No.57529834

>>57529784
Yeah, I get it. But think about this: Being able to use social media accounts without dealing with a private key is super convenient for mass adoption. Do you think it'll help more people get on board? Hell yeah.

>> No.57529859

>>57529834
Is it even secure?

>> No.57530045

>>57529859
There's always a way. Users can set up 2FA using apps like Google Authenticator for added security. You're not a child anymore.

>> No.57530061

>>57529832
What the fuck are you murmuring.

>> No.57530096

>>57529801
That's half your life.

>> No.57530134

>>57529820
Just keep your accounts safe, no matter what. I've been using my email and Facebook for years, and I've never been hacked.

>> No.57530168
File: 9 KB, 254x199, gjh.jpg [View same] [iqdb] [saucenao] [google]
57530168

>>57530061
You wanna know, then get your head around the conversation and stop acting like an a$$hole.

>> No.57530176

>>57526776
Remember 20 years ago when people would get clapped by putting their bank numbers into scam websites?
Imagine doing the modern version of this and not thinking you're the problem

>> No.57530177

>>57530134
I'm not even referring to that, but since you brought it up, it should also be a concern, except there are recovery features.

>> No.57530187

>>57530176
That's really odd

>> No.57530198

>>57529795
Money needs privacy and fungibility and fast transactions, which means no smart contracts. Assets need full visibility, for ownership verification, and the ability to create arbitrary smart contracts. Keeping them separate means nobody but speculators or PoS validators should need a big bag of the asset chain's native coin, so getting drained means you lose a few bucks and not your life savings. Right now the best money and assets are XMR and ETH, respectively.

>> No.57530204

>>57527636
No, not if you only buy the token on uniswap. Signing a smartcontract for claiming an airdrop can be dangerous, though, if you don‘t know what the smartcontract exactly does.

>> No.57530253

>>57526776
Yup, I almost got drained myself and I work in cybersec and I'm a skeptical motherfucker. Only reason I didn't was cause I double checked the contract cuz of gut feeling. It's a scary time to be on chain, 2021 wasn't like this.

>> No.57530262

>>57530253
Tip: don't trust your crypto "friends" even if you knew them for 4 years and vced and other stuff with them. that's how i almost lost everything.

>> No.57530267

>>57530177
Security is a big deal. I'm not sure which recovery you're talking about, but users can restore their wallets using social accounts, for example. We'll see how things progress. It's not perfect, but we're getting there.

>> No.57530389

>>57530253
how do you check a contract address before confirming? On most transactions I don't see any address show up on metamask, but the hardware wallet will show the actual contract address for approval.

>> No.57530398

>>57530176
This is ridiculous.

>>57530187
really odd.

>> No.57530412

>>57530267
You seem not to understand what I'm trying to convey here.

>> No.57530444

How do these wallet drainers get away with it? why aren't you faggots chasing after their asses?
Wallet draining is the new phishing, it doesn't require some master hacker to do a flash loan attack or take control of your PC. He can simply direct you to a website where you click allow and his bot will drain your wallet instantly.

>> No.57530450

>>57530412
Who the fuck you're talking about. Are you an insane bot?

>> No.57530683

>>57530262
did u connect ur wallet to some site?

>> No.57530707

lol didn't know this was a thing in the smart contract fag world

>> No.57530996
File: 78 KB, 1079x1073, 1684974443300924.jpg [View same] [iqdb] [saucenao] [google]
57530996

>>57526776
Is quantum computer now in play

>> No.57531634

>>57530450
Stop acting like someone with a low IQ. Can't you read, or do you find it difficult to understand what I've written?

>> No.57531658
File: 6 KB, 243x207, hffh.jpg [View same] [iqdb] [saucenao] [google]
57531658

>>57530262
I've lost a lot because of this. Don't trust anyone, including family members, when it comes to money.

>> No.57531672

>>57530996
Hell no. are you part of the team behind this?

>> No.57531763

>>57529832
Kek

>> No.57531938
File: 117 KB, 1024x1024, 1696272112878934.jpg [View same] [iqdb] [saucenao] [google]
57531938

>>57528898
>NexeraID
>compliance
your platform can verifiably be used for money laundering

>> No.57531961

not going to name the token, but there is a shitty game utility token that came out that has a crypto wallet drainer address associated with the smart contract. be careful

>> No.57532190

>>57531961
Be careful too

>> No.57532316

>>57530996
I don't think so. IBM only recently introduced the Condor, which isn't strong enough yet to hack crypto elliptic curves, but thankfully there are a few blockchains like QAN and ALGO that are already quantum resistant.

>> No.57532903

>>57531763
yeah, take a look at the features and the integration so far.

>> No.57532912

>>57531961
share cause your identity remain anonymous here, retard.

>> No.57534093

>>57532316
Thought Algo is dead

>> No.57535341

>>57527250
I thought my wallet got drained but it turns out was only me sending funds to chaturbate drunk at 3am

>> No.57535372

>>57530450
This entire thread is just faggots posting "it's Le Over I lost everything" without actually showing evidence

>> No.57536258

>>57535372
It's true bro. It's happening.