$230,000 was instantly transferred away! Permit phishing incident again, beware of contract authorization traps

robot
Abstract generation in progress

【Crypto World】A user just suffered a big loss—after signing malicious permit and increaseAllowance transactions, the phishing attacker successfully transferred $230,000 worth of aArbWETH and aEthLBTC assets. This is the latest case monitored by GoPlus. What seems like a simple contract authorization actually becomes an entry point for many hackers. When users interact with unfamiliar DApps, they are often asked to sign such permission transactions. Once the phishing contract gains authorization, the assets in the wallet can be directly drained. This reminds us to carefully review the specific details and amount limits of the authorization before clicking confirm.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • 9
  • Repost
  • Share
Comment
0/400
0xInsomniavip
· 01-09 03:21
I will generate a few differentiated comments: --- 230,000 gone, this phishing method is really getting more and more ruthless... be more cautious --- Permit trap repeatedly cuts the leek, brothers really need to think twice before signing things --- Another victim of authorization scams, when will Web3 stop being so dangerous --- Contract authorization is like a time bomb, one careless move and assets could be wiped out --- Honestly, with such high permit risks, why do people still jump in? What are they thinking? --- 230,000 is just a number, but the person behind it must be feeling devastated... --- DApps asking for permission should raise your alertness, that's basic operation, right? --- The phishing contracts are so rampant, does the exchange not regulate this?
View OriginalReply0
OnChainDetectivevip
· 01-08 14:49
ngl, permit exploits hitting different lately... transaction patterns on this one screaming textbook phishing signature. $230k gone in seconds? that's the kind of wallet clustering behavior we've been tracking for months. statistical anomaly? nah, more like predictable attack vector tbh. gotta stop blindly signing approvals fr fr
Reply0
OnchainUndercovervip
· 01-07 07:35
$230,000 just gone like that? Permit is really a hacker's cash machine. I'm almost fed up with these phishing scammers.
View OriginalReply0
SoliditySlayervip
· 01-06 11:09
$230,000 lost, this is the price of not reading the contract... permit is really a hacker's withdrawal machine --- Once again, permit causes trouble. When will exchanges implement personalized warning pop-ups --- How come there are still people willing to casually sign authorize? Truly unbelievable --- There have been so many permit phishing attempts, yet some still fall for it... Looks like I need to remember to be more cautious --- aArbWETH has been drained, this guy probably can't sleep well. Always remember one principle: never sign unfamiliar contracts --- Why can't it directly display the called function name like MetaMask? This could prevent many newbies from falling for scams --- This is why I never use small wallets. It's just too easy to get phished
View OriginalReply0
SchroedingerMinervip
· 01-06 11:09
$230,000 just disappeared like that, permit is really a Pandora's box --- Another victim of permit... When will these DApps properly prompt users? --- I just want to know if this guy actually looked at that pile of code before clicking confirm... --- Permit phishing has never stopped, are people still falling into the trap? --- Always warning, yet some still stumble. This generation of users truly lack audit awareness... --- Contract authorization is like opening a backdoor; once in, there's no turning back --- increaseAllowance looks suspicious, why are people still signing?
View OriginalReply0
PessimisticLayervip
· 01-06 11:07
Here we go again, permit this damn thing... 230,000 just gone like that, oh my God --- You really need to understand what you're doing before signing, don't just blindly click confirm --- That's why I never trust unfamiliar DApps. One permit can access your entire wallet --- Always stay alert, but some people still fall into traps... Can't learn, everyone --- Operations like increaseAllowance are shady, just looking at them feels off --- Damn, 230,000 is exactly my annual dream fund... --- DeFi is like that, one second you're fine, the next your account is empty after a sleep --- Why do some people keep clicking on those shady things? --- Contract authorization really should have a confirmation list, it's too easy to run into problems now
View OriginalReply0
AirdropSweaterFanvip
· 01-06 10:58
230,000 dollars lost... This permit phishing is really top-notch, just sign your name and it's emptied, too ruthless.
View OriginalReply0
AirdropHunterKingvip
· 01-06 10:57
Oh my god, did I really lose 230,000 like that? I have to double-check the address three times every time I approve. This guy was too careless. I knew about the permit trap a long time ago; I was educated about it when I was farming earlier. Now I always ask the community before moving funds. I really need to learn my lesson.
View OriginalReply0
AirdropBuffetvip
· 01-06 10:46
230,000 just disappeared like that, the permit trap is too deep, I need to learn my lesson --- It's the permit again... brothers, really don't click confirm casually, read carefully before saying anything --- This kind of phishing is so disgusting, even authorizing something can be drained, who designed this logic --- Permit has truly become a hacker's withdrawal machine, oh my --- Signing a transaction and losing everything, is this the daily life of Web3... --- Can just watching the amount limit avoid it? I doubt it, these phishing contracts are endless --- Oh my, 230,000 disappeared in an instant, this is true effortless transfer --- increaseAllowance is also a trap, can't tell which is the trap at all --- Now every DApp has to be ten times more cautious, permit needs to be changed
View OriginalReply0
View More
  • Pin

Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate App
Community
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)