Author

Topic: Beware of the New Phishing Strategy (Read 140 times)

newbie
Activity: 56
Merit: 0
July 08, 2018, 05:12:58 PM
#1
MetaMask allows users to interact with Ethereum-compatible sites by putting users in control of their own account secrets, in the form of the 12 secret words the user is shown when first setting up.
This is very powerful, but also potentially dangerous, because each user is responsible for the secrecy of their own seed words. If a hacker can trick you into sharing those words, they can steal everything in your accounts.
Recently, a number of websites have shown the Metamask screen to users out of nowhere. The screen impersonates the MetaMask user interface in the top right of the window, asking the user to enter their wallet seed words. The screen looks same thing as the Metamask screen.
This form then sends the seed words up to a private server, and presumably the funds are drained from all of that user’s accounts.

If you have seen the screen, and entered your seed words into it, it may already be too late, your accounts may already be drained. Please contact MetaMask Support immediately.

Sites we know have been affected so far include:

    BTC Manager
    Games Workshop
Jump to: