MetaMask issues scam alert as NameCheap hacker sends unauthorized emails

2 years ago

Web hosting institution NameCheap detected the misuse of 1 of its third-party services for sending immoderate unauthorized emails — which straight targeted MetaMask users.

34 Total views

1 Total shares

MetaMask issues scam alert arsenic  NameCheap hacker sends unauthorized emails

Own this portion of past

Collect this nonfiction arsenic an NFT

Popular crypto wallet supplier MetaMask warned investors against ongoing phishing attempts by scammers attempting to interaction users done NameCheap’s third-party upstream strategy for emails.

On the evening of Feb. 12, web hosting institution NameCheap detected the misuse of 1 of its third-party services for sending immoderate unauthorized emails — which straight targeted MetaMask users. Namecheap described the incidental arsenic an "email gateway issue."

⚠️MetaMask does not cod KYC info and volition ne'er email you astir your account!
Do not participate your Secret Recovery Phrase connected a website EVER.
If you got an email contiguous from MetaMask oregon Namecheap oregon anyone other similar this, disregard it & bash not click its links!https://t.co/EP0HGZFOfo pic.twitter.com/4CDtne24OK

— MetaMask (@MetaMask) February 13, 2023

In the proactive alert, MetaMask reminded its cardinal followers that it does not cod know-your-customer (KYC) accusation and volition ne'er scope retired implicit an email to sermon relationship details.

The phishing emails sent by the hacker incorporate a nexus that opens a fake MetaMask website requesting Secret Recovery Phrase “to support your wallet secure.”

The wallet supplier advised investors to refrain from sharing effect phrases arsenic it hands implicit implicit power of the user’s funds to the hacker.

We would similar to guarantee you that Namecheap’s ain systems were not breached and your products, accounts and idiosyncratic accusation stay secure.
We volition update presumption station erstwhile the contented is solved https://t.co/2xJ362KF0f

— Namecheap.com (@Namecheap) February 13, 2023

NameCheap further confirmed that its services were not breached and that nary lawsuit information was leaked successful this incident. Within 2 hours of the archetypal intimation, NameCheap confirmed that its message transportation was restored and that each communications henceforth would beryllium from the authoritative source.

However, the main contented related to the mailing of unsolicited emails is inactive nether investigation. Investors are advised to recheck website links, email addresses and points of interaction erstwhile dealing with communications from MetaMask and NameCheap.

Related: OneKey says it has fixed flaw that got its hardware wallet hacked successful 1 second

In January, a hacker utilized Google Ad services to bargain nonfungible tokens (NFTs) and cryptocurrencies from investors.

Last nighttime my full integer livelihood was violated.

Every relationship connected to maine some personally and professionally was hacked and utilized to wounded others.

Less importantly, I mislaid a beingness changing magnitude of my nett worth

— NFT God (@NFT_GOD) January 15, 2023

NFT influencer NFT God mislaid “a life-changing amount” aft accidentally downloading malicious bundle embedded successful a Google advertisement.

The incidental happened erstwhile the influencer utilized the Google hunt motor to download OBS, an open-source video streaming software. However, helium clicked the nexus with a sponsored advertisement alternatively of the authoritative link, which yet led to the nonaccomplishment of funds.

View source