The post Analysts warn of $1.5M phishing exploit tied to Ethereum’s new EIP-7702 appeared on BitcoinEthereumNews.com. Analysts have sounded the alarm about a vulnerability linked to the relatively new Ethereum Improvement Proposal (EIP-7702) feature following a phishing attack that cost one investor over a million.  Anti-fraud service Scam Sniffer has noted an increase in phishing scams where attackers target addresses upgraded under the new EIP-7702 standard. The EIP-7702 feature, which was introduced as part of the Pectra upgrade from May, is designed to enhance wallet functionality by allowing Externally Owned Accounts (EOAs) to temporarily behave like smart contracts. This feature encourages optimization by allowing multiple operations to be executed within a single transaction, thereby improving efficiency for legitimate users. However, the feature has reportedly opened them up to new exploitation windows. There have been at least three victims this month The latest unfortunate victim reportedly lost a total of $1.54 million after signing EIP-7702 phishing batch transactions that contained multiple token transfers and NFT approval operations. Part of those funds has reportedly been bridged to Mainnet via Relay Protocol. Exploiters bridged the stolen funds to Mainnet via Relay Protocol. Sourcce: @realScamSniffer (X/Twitter) The case comes two days after Scam Sniffer announced that another investor had lost $1M in tokens and NFTs after signing phishing batch transactions disguised as Uniswap swaps. That exploit came weeks after the anti-fraud service reported that an EIP-7702 upgraded address lost $66k to the same group using the same exploit. These schemes involve a fraudulent DeFi interface that is typically designed to mimic platforms like Uniswap. The victims were prompted to approve transactions that at first glance appeared routine, but in reality, were authorized hidden transfers. Upon approval, attackers would drain the wallet almost instantly, siphoning crypto and NFTs. According to Scam Sniffer, many users are still in the dark about the risks linked to EIP-7702 because it is a recent development.… The post Analysts warn of $1.5M phishing exploit tied to Ethereum’s new EIP-7702 appeared on BitcoinEthereumNews.com. Analysts have sounded the alarm about a vulnerability linked to the relatively new Ethereum Improvement Proposal (EIP-7702) feature following a phishing attack that cost one investor over a million.  Anti-fraud service Scam Sniffer has noted an increase in phishing scams where attackers target addresses upgraded under the new EIP-7702 standard. The EIP-7702 feature, which was introduced as part of the Pectra upgrade from May, is designed to enhance wallet functionality by allowing Externally Owned Accounts (EOAs) to temporarily behave like smart contracts. This feature encourages optimization by allowing multiple operations to be executed within a single transaction, thereby improving efficiency for legitimate users. However, the feature has reportedly opened them up to new exploitation windows. There have been at least three victims this month The latest unfortunate victim reportedly lost a total of $1.54 million after signing EIP-7702 phishing batch transactions that contained multiple token transfers and NFT approval operations. Part of those funds has reportedly been bridged to Mainnet via Relay Protocol. Exploiters bridged the stolen funds to Mainnet via Relay Protocol. Sourcce: @realScamSniffer (X/Twitter) The case comes two days after Scam Sniffer announced that another investor had lost $1M in tokens and NFTs after signing phishing batch transactions disguised as Uniswap swaps. That exploit came weeks after the anti-fraud service reported that an EIP-7702 upgraded address lost $66k to the same group using the same exploit. These schemes involve a fraudulent DeFi interface that is typically designed to mimic platforms like Uniswap. The victims were prompted to approve transactions that at first glance appeared routine, but in reality, were authorized hidden transfers. Upon approval, attackers would drain the wallet almost instantly, siphoning crypto and NFTs. According to Scam Sniffer, many users are still in the dark about the risks linked to EIP-7702 because it is a recent development.…

Analysts warn of $1.5M phishing exploit tied to Ethereum’s new EIP-7702

Analysts have sounded the alarm about a vulnerability linked to the relatively new Ethereum Improvement Proposal (EIP-7702) feature following a phishing attack that cost one investor over a million. 

Anti-fraud service Scam Sniffer has noted an increase in phishing scams where attackers target addresses upgraded under the new EIP-7702 standard.

The EIP-7702 feature, which was introduced as part of the Pectra upgrade from May, is designed to enhance wallet functionality by allowing Externally Owned Accounts (EOAs) to temporarily behave like smart contracts.

This feature encourages optimization by allowing multiple operations to be executed within a single transaction, thereby improving efficiency for legitimate users. However, the feature has reportedly opened them up to new exploitation windows.

There have been at least three victims this month

The latest unfortunate victim reportedly lost a total of $1.54 million after signing EIP-7702 phishing batch transactions that contained multiple token transfers and NFT approval operations. Part of those funds has reportedly been bridged to Mainnet via Relay Protocol.

Exploiters bridged the stolen funds to Mainnet via Relay Protocol. Sourcce: @realScamSniffer (X/Twitter)

The case comes two days after Scam Sniffer announced that another investor had lost $1M in tokens and NFTs after signing phishing batch transactions disguised as Uniswap swaps.

That exploit came weeks after the anti-fraud service reported that an EIP-7702 upgraded address lost $66k to the same group using the same exploit.

These schemes involve a fraudulent DeFi interface that is typically designed to mimic platforms like Uniswap. The victims were prompted to approve transactions that at first glance appeared routine, but in reality, were authorized hidden transfers.

Upon approval, attackers would drain the wallet almost instantly, siphoning crypto and NFTs.

According to Scam Sniffer, many users are still in the dark about the risks linked to EIP-7702 because it is a recent development. Since the malicious transactions are usually structured to appear normal, unsuspecting users are vulnerable.

Security experts have reported EIP-7702 exploits since June

Scam Sniffer has confirmed that phishing attacks targeting EIP-7702 upgraded addresses have gone up, indicating a growing trend. However, it is not a new trend, as security experts have been reporting incidents for months now.

In June, Wintermute researchers revealed exploiters have targeted several unsuspecting crypto wallets with “automated sweeper” attacks, this time, using “delegate contracts”– a new feature launched as part of the EIP 7702.

In a series of tweets shared via its official X handle, Wintermute claimed its research team had discovered that over 80% of all EIP-7702 delegations were authorized to multiple contracts using the same exact code. They called them sweepers and reported that they are used to automatically drain incoming ETH from compromised addresses.

The malicious attempts by hackers to drain ETH from wallets have continued despite the Ethereum Foundation’s one trillion dollar security program, which it announced on May 14.

To be safe, Scam Sniffer has urged users to be cautious and vigilant when approving batch transactions and to verify interfaces carefully before signing anything.

Fake DeFi platforms designed to mimic legitimate ones have been tagged as one of the most common attack vectors in the crypto sector, and the introduction of batch transactions, though proven to improve user experience for legitimate applications, has added complexity while increasing the chance of an exploit.

The best way to get ahead of the issue is to use only trusted applications and triple-check permissions granted during every transaction, batched or not.

The smartest crypto minds already read our newsletter. Want in? Join them.

Source: https://www.cryptopolitan.com/eip-7702-user-loses-1-54m-phishing-attack/

Market Opportunity
DeFi Logo
DeFi Price(DEFI)
$0.000323
$0.000323$0.000323
+2.53%
USD
DeFi (DEFI) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

House Judiciary Rejects Vote To Subpoena Banks CEOs For Epstein Case

House Judiciary Rejects Vote To Subpoena Banks CEOs For Epstein Case

The post House Judiciary Rejects Vote To Subpoena Banks CEOs For Epstein Case appeared on BitcoinEthereumNews.com. Topline House Judiciary Committee Republicans blocked a Democrat effort Wednesday to subpoena a group of major banks as part of a renewed investigation into late sex offender Jeffrey Epstein’s financial ties. Congressman Jim Jordan, R-OH, is the chairman of the committee. (Photo by Nathan Posner/Anadolu via Getty Images) Anadolu via Getty Images Key Facts A near party-line vote squashed the effort to vote on a subpoena, with Rep. Thomas Massie, R-Ky., who is leading a separate effort to force the Justice Department to release more Epstein case materials, voting alongside Democrats. The vote, if successful, would have resulted in the issuing of subpoenas to JPMorgan Chase CEO Jamie Dimon, Bank of America CEO Brian Moynihan, Deutsche Bank CEO Christian Sewing and Bank of New York Mellon CEO Robin Vince. The subpoenas would have specifically looked into multiple reports that claimed the four banks flagged $1.5 billion in suspicious transactions linked to Epstein. The failed effort from Democrats followed an FBI oversight hearing in which agency director Kash Patel misleadingly claimed the FBI cannot release many of the files it has on Epstein. Get Forbes Breaking News Text Alerts: We’re launching text message alerts so you’ll always know the biggest stories shaping the day’s headlines. Text “Alerts” to (201) 335-0739 or sign up here. Crucial Quote Dimon, who attended a lunch with Senate Republicans before the vote, according to Politico, told reporters, “We regret any association with that man at all. And, of course, if it’s a legal requirement, we would conform to it. We have no issue with that.” Chief Critic “Republicans had the chance to subpoena the CEOs of JPMorgan, Bank of America, Deutsche Bank, and Bank of New York Mellon to expose Epstein’s money trail,” the House Judiciary Democrats said in a tweet. “Instead, they tried to bury…
Share
BitcoinEthereumNews2025/09/18 08:02
Pastor Involved in High-Stakes Crypto Fraud

Pastor Involved in High-Stakes Crypto Fraud

A gripping tale of deception has captured the media’s spotlight, especially in foreign outlets, centering on a cryptocurrency fraud case from Denver, Colorado. Eli Regalado, a pastor, alongside his wife Kaitlyn, was convicted, but what makes this case particularly intriguing is their unconventional defense.Continue Reading:Pastor Involved in High-Stakes Crypto Fraud
Share
Coinstats2025/09/18 00:38
Thousands of users protest loss of companion as OpenAI retires GPT-4o

Thousands of users protest loss of companion as OpenAI retires GPT-4o

Thousands of users are protesting the decision to retire GPT-4o, which, according to them, feels akin to losing a friend, romantic partner, or spiritual guide.
Share
Cryptopolitan2026/02/07 01:35