{"id":42660,"date":"2022-12-23T16:05:09","date_gmt":"2022-12-23T20:05:09","guid":{"rendered":"https:\/\/coinscreed.com\/staging\/?p=42660"},"modified":"2022-12-23T16:05:13","modified_gmt":"2022-12-23T20:05:13","slug":"opensea-users-face-nft-private-auction-scam","status":"publish","type":"post","link":"https:\/\/coinscreed.com\/staging\/opensea-users-face-nft-private-auction-scam\/","title":{"rendered":"OpenSea users face NFT private auction scam"},"content":{"rendered":"\n<h5 class=\"wp-block-heading\" id=\"h-phishing-sites-are-making-the-private-auction-feature-look-like-a-way-to-log-in-luring-victims-to-give-up-their-nft-unknowingly\">Phishing sites are making the <a href=\"https:\/\/coinscreed.com\/staging\/telegram-will-launch-usernames-auction-on-ton-network.html\" target=\"_blank\" rel=\"noreferrer noopener\">private auction feature<\/a> look like a way to log in, luring victims to give up their NFT unknowingly.<\/h5>\n\n\n\n<figure class=\"wp-block-image size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"576\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221223_205349_0000-1024x576.jpg\" alt=\"OpenSea users face NFT private auction scam\" class=\"wp-image-42662\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221223_205349_0000-1024x576.jpg 1024w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221223_205349_0000-300x169.jpg 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221223_205349_0000-768x432.jpg 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221223_205349_0000-150x84.jpg 150w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221223_205349_0000-750x422.jpg 750w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221223_205349_0000-1140x641.jpg 1140w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221223_205349_0000.jpg 1200w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">OpenSea users face NFT private auction scam<\/figcaption><\/figure>\n\n\n\n<p>As <a href=\"https:\/\/coinscreed.com\/staging\/us-electoral-agency-approves-nfts-campaign-fundraising.html\" target=\"_blank\" rel=\"noreferrer noopener\">nonfungible tokens<\/a> (NFT) gained popularity, bad actors who frequently attempt to take advantage of individuals within the ecosystem have increased in activity.<\/p>\n\n\n\n<p>Currently, NFT holders are at risk due to a new hack involving a feature on the NFT marketplace OpenSea through phishing websites. Anti-theft initiative Harpie alerted NFT users to a fresh attack involving gasless purchases made through the OpenSea platform.<\/p>\n\n\n\n<p>Harpie claims that by taking use of the functionality, hackers were able to steal millions in digital assets. Users must approve a signature request with an unintelligible message in order to make gasless <a href=\"https:\/\/coinscreed.com\/staging\/magic-eden-follows-opensea-with-nft-royalty-enforcement-tool.html\" target=\"_blank\" rel=\"noreferrer noopener\">sales on the OpenSea platform<\/a>. Users can also make private auctions with unreadable signatures using this capability.<\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\"><div class=\"wp-block-embed__wrapper\">\n<div class=\"embed-twitter\"><blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\"><p lang=\"en\" dir=\"ltr\">Hackers have been able to steal NFTs like magic with a little-known OpenSea feature. It&#39;s the newest hack, and multiple millions in Apes have been lost to it already.<br><br>(\ud83e\uddf51\/4) <a href=\"https:\/\/t.co\/fTK20WQrgh\" target=\"_blank\">pic.twitter.com\/fTK20WQrgh<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><g id=\"wpil-svg-outbound-7-icon-path\" fill=\"none\" clip-path=\"url(#clip0_31_188)\">\r\n                            <path d=\"M9.16724 14.8891L20.1672 3.88908\" stroke-linecap=\"round\"\/>\r\n                            <path d=\"M13.4497 3.53554L20.5208 3.53554L20.5208 10.6066\" stroke-linecap=\"round\" stroke-linejoin=\"round\"\/>\r\n                            <path d=\"M17.5 13.5L17.5 16.26C17.5 17.4179 17.5 17.9968 17.2675 18.4359C17.0799 18.7902 16.7902 19.0799 16.4359 19.2675C15.9968 19.5 15.4179 19.5 14.26 19.5L7.74 19.5C6.58213 19.5 6.0032 19.5 5.56414 19.2675C5.20983 19.0799 4.92007 18.7902 4.73247 18.4359C4.5 17.9968 4.5 17.4179 4.5 16.26L4.5 9.74C4.5 8.58213 4.5 8.0032 4.73247 7.56414C4.92007 7.20983 5.20982 6.92007 5.56414 6.73247C6.0032 6.5 6.58213 6.5 7.74 6.5L11 6.5\" stroke-linecap=\"round\"\/>\r\n                        <\/g>\r\n                        <defs>\r\n                            <clipPath id=\"clip0_31_188\">\r\n                                <rect fill=\"white\" height=\"24\" width=\"24\"\/>\r\n                            <\/clipPath>\r\n                        <\/defs><\/svg><\/span><\/a><\/p>&mdash; Harpie (@harpieio) <a href=\"https:\/\/twitter.com\/harpieio\/status\/1606034727491624961?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">December 22, 2022<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a><\/blockquote><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/div>\n<\/div><\/figure>\n\n\n\n<p>Due to this, phishing websites have been requesting that their <a href=\"https:\/\/www.google.com\/search?q=OpenSea+users+face+NFT+private+auction+scam&oq=OpenSea+users+face+NFT+private+auction+scam&aqs=chrome..69i57j69i61j35i39i362l6.260j0j7&sourceid=chrome&ie=UTF-8\" target=\"_blank\" rel=\"noreferrer noopener\">victims sign one of these incomprehensible letters<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a> using this functionality. Harpie claims that the signatures are frequently presented as a step necessary to log in and access the website.<\/p>\n\n\n\n<p>The login messages, however, are simply signature requests for the victim to execute a private sale of their NFTs to the con artist for 0 ETH ($1,218 ETH). The NFTs will be delivered to the hacker's wallet address if it is signed.<\/p>\n\n\n\n<p>In addition to this fraud, the blockchain security firm CertiK recently warned the cryptocurrency community about a practice they call &#8220;ice phishing.&#8221; By using this exploit, con artists get Web3 users to sign permissions that give the attackers the right to use their tokens.<\/p>\n\n\n\n<p>The scam, according to CertiK, is specific to the <a href=\"https:\/\/coinscreed.com\/staging\/developers-expect-to-work-on-web3-games-in-future-survey.html\" target=\"_blank\" rel=\"noreferrer noopener\">Web3 industry<\/a> and poses a serious threat. On December 17, an analyst pointed out how a con artist allegedly stole 14 Bored Ape NFTs using the gas-less Seaport signature feature.<\/p>\n\n\n\n<p>The hacker conducted extensive social engineering before leading the victim to a phony NFT site and having the holder sign a contract. The victim's wallet was then stolen after that.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Phishing sites are making the private auction feature look like a way to log in, luring victims to give up their NFT unknowingly. As nonfungible tokens (NFT) gained popularity, bad actors who frequently attempt to take advantage of individuals within the ecosystem have increased in activity. Currently, NFT holders are at risk due to a [&hellip;]<\/p>\n","protected":false},"author":43,"featured_media":42662,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[11476,62],"tags":[147,1636,9894],"class_list":["post-42660","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-hacks-and-scams","category-nft-news","tag-nft","tag-opensea","tag-phishing-scam"],"jetpack_featured_media_url":"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221223_205349_0000.jpg","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/42660","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/users\/43"}],"replies":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/comments?post=42660"}],"version-history":[{"count":0,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/42660\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media\/42662"}],"wp:attachment":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media?parent=42660"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/categories?post=42660"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/tags?post=42660"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}