I now generally assume: don't touch mnemonic phrases, don't take photos of cloud storage, if you don't understand signatures/authorizations just click reject first, better to miss out on a wave than to give a phishing site warmth. To put it simply, you're not "logging in," you're handing over the key.



Recently, the group has been sharing about stablecoin regulation, reserve audits, and rumors of "de-pegging." The more anxious everyone gets, the more they love to click on links for verification, which is the easiest way to get caught. If you really want to check, just type the official website domain yourself, don't trust the "latest entry" forwarded around.

And then there's those with unlimited authorizations—don't find it troublesome, revoke the authorization after you're done; if the amount or contract address in the pop-up doesn't match, just close it. I criticize MEV once I see it, but phishing is even more outrageous, it all depends on your slip-up. That's all for now; anyway, I prefer to be called overly cautious.
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin