#ETH走势分析 Conclusion first: Immediately check your browser settings and turn off automatic downloads. Don’t casually click on links with the device that holds your main wallet, especially suspicious ones from TG.
Just saw a case where someone lost nearly $27 million in crypto assets within five hours. I tracked the victim’s public wallet address and confirmed that about $20 million worth of assets were transferred out in batches in a short period. The victim is now openly calling out in his own channel, offering $5 million as a reward to get his assets back, but he himself feels there’s little hope.
The whole process is actually a typical social engineering attack. The victim described it in his own words:
At first, someone tried to extort him, but he didn't pay much attention and instead became interested in the other party's intelligence gathering abilities. Since he’d had account security issues before, he paid the other party to do a background check. The attacker first sent the results via a few links; he asked for them in text form instead. Later, the attacker sent a phishing site disguised as Etherscan, which, when clicked, would automatically download and run malicious software—the key point is that this method bypassed TG’s download protection mechanism.
The most fatal mistake was that he used a phone containing the second signature key of his multisig wallet to “verify” those links. The attacker also obtained his Telegram metadata. The multisig mechanism was rendered useless in the face of a single point of failure.
$BTC $ETH $XRP holders should all be alert: the weakest link in wallet security is often not technical, but human vigilance.
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
10 Likes
Reward
10
9
Repost
Share
Comment
0/400
VIKA05
· 2h ago
Bull run 🐂
View OriginalReply0
Jassi188
· 3h ago
bol raha hun is coming just wait on Bitcoin making all on high
Reply0
Jassi188
· 3h ago
Bull Run 🐂
Reply0
Pallada
· 4h ago
Hold tight 💪
View OriginalReply0
ChainWatcher
· 16h ago
Damn, 27 million just gone like that? This guy must be really easygoing, even paid 5 million to get it back... human nature, huh.
Don't even mention it, I don't even dare to click on TG links now, it's honestly too nerve-wracking.
If multisig can be breached, what are us small retail investors supposed to do...
The extortionist pretending to be a consultant, what kind of crazy move is that? This technique is really something else.
Damn, better check my browser ASAP, I feel like auto-download has always been on.
Social engineering really doesn't require technical skills, it's just exploiting people's greed and carelessness.
Damn, this is way too scary, cold wallets are still the safest.
One greedy thought and you're back to square one overnight, how could you dare to pay a stranger for a background check?
I just want to know how this guy feels right now—lost 27 million and is being watched by the whole internet.
View OriginalReply0
BoredApeResistance
· 16h ago
Damn, over 20 million just gone. This guy is a textbook example of social engineering.
---
Even multisig can't save you. At the end of the day, it's still a human problem. Don't be greedy and click on those weird links.
---
I just want to know what this guy's mindset is like now. How does it feel to go from nothing to broke in five hours?
---
Those Telegram channels are really toxic, full of scammers waiting for prey.
---
The key thing is he even paid someone to do a background check, and ended up selling himself out. Ironic.
---
Browser auto-downloads really shouldn't be ignored. I just turned it off, luckily nothing happened.
---
Using phone verification for multisig wallets is basically suicide. Please, everyone, isolate your devices.
---
Heard someone even tried to extort him after this. That's just digging your own grave.
---
20 million... I'd go crazy. That 5 million ransom is probably down the drain too.
---
Looking at this case, I feel like technical defenses are useless. Human greed and curiosity are the biggest vulnerabilities.
View OriginalReply0
GetRichLeek
· 16h ago
Damn, 27 million is gone? I thought I lost big... This guy is a real warrior, actually daring to chat with a scammer.
View OriginalReply0
DataChief
· 16h ago
Damn, 27 million is just gone like that. How careless can this guy be? He actually treated a scammer as a security advisor.
---
You really shouldn’t click any of those sketchy links on TG. Several people around me have already been scammed.
---
Even a multisig wallet can't save you if you don't use your brain as a multisig. That's the harshest truth.
---
That's why the strongest defense is to never click those damn links—way more effective than any hardware wallet.
---
27 million evaporated in five hours. What kind of nerves do you need to come back and even try to negotiate for your assets? Impressive.
---
TG again, phishing Etherscan again—how do people still fall for these tricks? It’s unbelievable.
---
The detail about the browser auto-downloading is insane. So many whales have been trapped like this and still have no idea what happened.
---
This case reminds me of similar scams I've seen before. The tactics are exactly the same—only a fool would fall for it.
---
Humans, man. It's easy to defend against technical vulnerabilities, but there’s nothing you can do against your own greed and curiosity.
View OriginalReply0
GateUser-beba108d
· 16h ago
$27 million gone, all because of one link... This guy is literally teaching with his life.
Even a multi-signature wallet is useless—if the human layer of defense fails, everything is lost.
I never click on any of those shady things in TG, but I'm still worried.
That's why I never use my wallet on the same device as my daily activities.
Seriously, security awareness is more important than anything else. No amount of technical protection can withstand a single slip-up.
#ETH走势分析 Conclusion first: Immediately check your browser settings and turn off automatic downloads. Don’t casually click on links with the device that holds your main wallet, especially suspicious ones from TG.
Just saw a case where someone lost nearly $27 million in crypto assets within five hours. I tracked the victim’s public wallet address and confirmed that about $20 million worth of assets were transferred out in batches in a short period. The victim is now openly calling out in his own channel, offering $5 million as a reward to get his assets back, but he himself feels there’s little hope.
The whole process is actually a typical social engineering attack. The victim described it in his own words:
At first, someone tried to extort him, but he didn't pay much attention and instead became interested in the other party's intelligence gathering abilities. Since he’d had account security issues before, he paid the other party to do a background check. The attacker first sent the results via a few links; he asked for them in text form instead. Later, the attacker sent a phishing site disguised as Etherscan, which, when clicked, would automatically download and run malicious software—the key point is that this method bypassed TG’s download protection mechanism.
The most fatal mistake was that he used a phone containing the second signature key of his multisig wallet to “verify” those links. The attacker also obtained his Telegram metadata. The multisig mechanism was rendered useless in the face of a single point of failure.
$BTC $ETH $XRP holders should all be alert: the weakest link in wallet security is often not technical, but human vigilance.