CryptoPotato
CryptoPotato
  • Crypto News
  • Margin Trading
  • Guides
    • Bitcoin & Crypto Guides 101
    • Bitcoin For Beginners
    • Editorials
  • DeFi & NFT
  • Buy
  • Language
    • Spanish
    • Turkish
    • German
    • Bulgarian
  • Crypto News
  • Bitcoin For Beginners
  • Cryptocurrency Guides 101
  • Editorials
  • Bitcoin & Crypto Margin Trading
  • DeFi & NFT News
  • Bitcoin Price Analysis
  • Ethereum (ETH) Price Analysis
  • Ripple (XRP) Price Analysis
  • Market Updates
  • Interviews
  • Buy Bitcoin with Card
  • CryptoPotato Spanish
  • CryptoPotato Turkey
  • CryptoPotato Germany
  • CryptoPotato Bulgaria
  • Market Updates
  • BTC Analysis
  • ETH Analysis
  • XRP Analysis
  • Interviews
CryptoPotato
CryptoPotato
  • Crypto News
  • Margin Trading
  • Guides
    • Bitcoin & Crypto Guides 101
    • Bitcoin For Beginners
    • Editorials
  • DeFi & NFT
  • Buy
  • Language
    • Spanish
    • Turkish
    • German
    • Bulgarian
  • Crypto News
  • Bitcoin For Beginners
  • Cryptocurrency Guides 101
  • Editorials
  • Bitcoin & Crypto Margin Trading
  • DeFi & NFT News
  • Bitcoin Price Analysis
  • Ethereum (ETH) Price Analysis
  • Ripple (XRP) Price Analysis
  • Market Updates
  • Interviews
  • Buy Bitcoin with Card
  • CryptoPotato Spanish
  • CryptoPotato Turkey
  • CryptoPotato Germany
  • CryptoPotato Bulgaria
Home » Crypto News » 21 Victims and Counting: ‘Address Poisoning’ Attackers Target Safe Wallet Users

21 Victims and Counting: ‘Address Poisoning’ Attackers Target Safe Wallet Users

Author: Chayanika Deka

Last Updated Dec 4, 2023 @ 11:10

Safe Wallet users hit by an ‘address poisoning’ scam, losing $2 million within a week.

Getting your audio player ready...

In a not-so-safe turn of events, the supposedly secure Safe Wallet is feeling the heat.

Users of Safe Wallet are facing a major threat as a crypto hacker skilled in “address poisoning attacks” successfully pilfered over $2 million from 10 users between November 26 and December 3.

Safe Wallet Users Targetted in Address Poisoning Scam

The total victim count has now reached 21, with the same attacker allegedly stealing $5 million from these users in the last four months, according to Scam Sniffer’s report based on Dune Analytics data. A user with $10 million in crypto in a Safe Wallet lost $400,000 in the attack.

about ~10 Safe wallets have lost $2.05 million to “address poisoning” attacks in the past week.

the same attacker has stolen $5 million from ~21 victims in the past four months so far. pic.twitter.com/fu4kxaI3py

— Scam Sniffer | Web3 Anti-Scam (@realScamSniffer) December 3, 2023

The latest address poisoning attack is speculated to have been orchestrated by the same perpetrator that targeted Florence Finance, a real-world asset lending protocol. The incident was first flagged by blockchain security firm PeckShield, which revealed that $1.45 million in USDC was drained from the protocol while adding that the transaction was directed to a phishing address rather than the intended one.

The deception involved crafting addresses with strikingly similar beginning and ending characters, leading the victim to unknowingly send funds to the fraudulent address without scrutinizing the complete address.

What is Address Poisoning?

Unliке common scams that employ tactics like unlimited token approvals or phishing for Secret Recovery Phrases, ‘address poisoning’ exploits user carelessness and haste. While it may seem less harmful than other scam methods, it still poses a significant risk to users’ funds, as explained by MataMask.

Blockchain addresses, typically complex alphanumeric strings, range from 25 to 40 characters, making memorization challenging. To enhance user experience, some crypto platforms display only the initial and final characters, omitting the middle ones.

This practice, known as address shortening, poses a security risk. Attackers can exploit the limited possibilities (36 per character) and create addresses with the same short form as a user’s, increasing the chances of a match. Since many blockchains are not case-sensitive, the attacker’s job is further simplified.

Address poisoning attacks leverage this vulnerability. Attackers send a low-value transaction from a similar-looking address to the victim. Users, accustomed to copying addresses from transaction histories, may inadvertently paste the attacker’s address when making subsequent transactions. The funds end up being sent to the attacker instead of the intended recipient.

SPECIAL OFFER (Sponsored)
Binance Free $600 (CryptoPotato Exclusive): Use this link to register a new account and receive $600 exclusive welcome offer on Binance (full details).

LIMITED OFFER for CryptoPotato readers at Bybit: Use this link to register and open a $500 FREE position on any coin!

Tags: Hacks
Enjoy reading? Share with your friends
Facebook Twitter LinkedIn Telegram

About The Author

Chayanika Deka
More posts by this author

Chayanika has been working as a financial journalist for six years. A graduate in Political Science and Journalism, her interest lies in regulatory implications with a focus on technological evolution in the crypto realm. Contact:Linkedin

Join Our Community

FacebookX YouTubeTelegram


Editorials
How to Trade on Hyperliquid: The Ultimate Guide (Step-by-Step Walkthrough)

How to Trade on Hyperliquid: The Ultimate Guide (Step-by-Step Walkthrough)

11 Best Meme Coins to Watch in June 2025

11 Best Meme Coins to Watch in June 2025

7 Best Meme Coin Presales to Watch in June 2025

7 Best Meme Coin Presales to Watch in June 2025

Toobit Review 2025: Is Toobit a Safe Crypto Exchange?

Toobit Review 2025: Is Toobit a Safe Crypto Exchange?

Hyperliquid Bridge: How to Bridge USDC to Hyperliquid

Hyperliquid Bridge: How to Bridge USDC to Hyperliquid

11 Best Crypto Presales to Consider in June 2025

11 Best Crypto Presales to Consider in June 2025

Need for Speed – Only Ultra-Fast Blockchains Will Win the Adoption Race (Opinion)

Need for Speed – Only Ultra-Fast Blockchains Will Win the Adoption Race (Opinion)

Join Our Newsletter
Become a CryptoPotato VIP
One Weekly Email Can Change Your Crypto Life.
Sign-up FREE to receive our extended weekly market update and coin analysis report
We NEVER send spam. You can unsubscribe at any time.
Invalid email address
Thanks for subscribing!
Footer Logo
About
Advertise on CryptoPotato
About Us | Contact Us | Careers
Editorial Policy
Terms of service | Privacy Policy | GDPR
More Sections
IEO List | Evaluations
Airdrops
Scholarship
Disclaimer
Disclaimer: Information found on CryptoPotato is those of writers quoted. It does not represent the opinions of CryptoPotato on whether to buy, sell, or hold any investments. You are advised to conduct your own research before making any investment decisions. Use provided information at your own risk. Full disclaimer
© Copyright CryptoPotato 2016 - 2025
Scroll to top
One Daily Email Can Change Your Crypto Life.

Sign-up FREE to receive our extended daily market update and coin analysis report

We never send SPAM. You can unsubscribe at any moment
Invalid email address
Thanks for subscribing!