
September 15, 2025
Attacker deployed a fake but Etherscan-verified contract 2 weeks prior and exploited Safe Multi Send mechanism in a sophisticated phishing attack. Drained $3,047,000 USDC from victim's 2-of-4 multi-signature wallet. Attack executed through address spoofing (matching first/last characters) and hidden malicious approvals via Request Finance app interface. Pattern: Address spoofing (first/last character matching) Fake Etherscan-verified contracts Safe Multi Send mechanism abuse Non-standard approval transactions Request Finance app interface exploitation
Trust Wallet
to be extracted from blockchain data
Related Indicators
| Security Type | Data Type | Data Sub Type | Pattern | 
|---|---|---|---|
| Blacklist | Crypto Address | Ethereum | Refer to description | 
12 reads