Site iconSite icon ForkLog

Phishing attack on NFT project nets hacker over $1 million

Phishing attack on NFT project nets hacker over $1 million

Messari analyst Chase Devens was among the victims of a phishing attack on the NFT drop of the Aurory Project on the Solana blockchain. The attacker drained wallets of victims of cryptocurrency and NFTs worth more than $1 million.

Presumably, he cloned the Aurory Project site (app.aurory.io), on which the drop was due to launch at 18:00 (MSK) on August 31, and placed it on the aurory.app domain.

Then the hacker began promoting the fake link in Aurory’s Discord chat. When the link was clicked, victims’ wallets were emptied.

One of those who fell for the scam was Devens himself.

“A friend copied the message from Discord into our Slack channel. I thought he checked the link and was the first in the group to click it. All 15,000 SOL and NFTs were stolen,” he explained.

“Aurory Project just drained my wallet via a scam. My life is ruined. But I’m to blame — I opened app.aurory, thinking it was your app,” wrote one user.

At some point, the attacker’s address contained more than 10,600 SOL worth over $1.1 million. He also acquired several hundred NFTs, including tokens from the Bold Badgers, Aurorians, SolRock, SolBears and Degenerate Apes.

“Last night I pulled off a deal with Degenerate Ape Academy for a profit of 70 SOL and felt on top of the world, knowing I still had the NFT monkey Michael Jordan in my pocket. It’s gone forever,” added Devens.

As of writing, the hacker’s account had 184 tokens left. He sold a substantial portion of the assets via the NFT platform Solanart.

The Aurory Project team acknowledged issues with the token mint start — allegedly due to server overload, not all users learned of the launch. They said the NFTs were sold out in three seconds.

Earlier, a collector paid 100 ETH (~$335 000) for an NFT, allegedly by the anonymous artist Banksy. A few hours later, a duplicate token was sent to him.

Subscribe to ForkLog news on Facebook.

Exit mobile version