Crypto Phishing Attacks Surge In August As Losses Hit $12 Million

bitcoinist发布于2025-09-07更新于2025-09-07

文章摘要

Prominent web3 security outfit Scam Sniffer reports that crypto investors suffered an increased number of phishing scams in August. Notably,...

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure

Prominent web3 security outfit Scam Sniffer reports that crypto investors suffered an increased number of phishing scams in August. Notably, total assets lost to these scams during the last month represent an estimated 72% increase from July, representing a concerning development for the general crypto industry.

Crypto Whales Take Biggest Hit From Phishing Attacks

In an X post on September 6, Scam Sniffer provides an August 2025 security report covering phishing attacks on crypto wallets. The blockchain security firm notes that 15,230 victims lost a combined $12.17 million from all forms of phishing-related attacks. This data indicates a 72% increase in stolen funds and a 67% rise in victims compared to July’s $7.09 million in losses and 9,143 victims.

For context, phishing often involves fake websites, malicious smart contracts, or deceptive wallet prompts that trick users into giving hackers access to their digital assets. Once approved or shared, the funds are usually stolen instantly and cannot be reversed.

While phishing attacks often target retail investors, August’s data from Scam Sniffer highlights the disproportionate impact on crypto “whales.” ScamSniffer revealed that the top three single incidents drained $3.08 million, $1.54 million, and $1.00 million, respectively, totaling $5.62 million. Collectively, these cases made up 46% of overall monthly losses, demonstrating how hackers increasingly focus on high-value wallets.

Phishing
Source: @realScamSniffer on X

The August report also draws attention to a new wave of batch-signature scams enabled by Ethereum’s EIP-7702 upgrade. EIP-7702 temporarily allows externally owned addresses (EOAs) to function like smart contract wallets.

This means users can access smart contract–level features without migrating to a new address. With EIP-7702, actions such as batching multiple transactions, setting automated spending caps, or integrating passkeys become seamless for everyday Ethereum interactions.

However, malicious actors have now exploited this mechanism to trick users into authorizing malicious bulk transactions, often bundled with legitimate requests. In parallel, attackers continue to exploit direct transfer scams, luring victims into sending funds straight into phishing contracts.

These vectors are harder to detect than traditional phishing attempts, as they appear embedded within standard DeFi and NFT interactions.

Crypto Market Overview

At press time, the total crypto market cap is presently valued at $3.77 trillion following a 0.16% gain in the past day. According to data from Chainalysis, over $2.17 billion was stolen from cryptocurrency wallets in the 2025 H1, which was higher than the total losses from 2024. This heightened figure, as well as the increased phishing losses in August, all reinforce the broader need for blockchain security, striking a balance between utility and protection against malicious actors.

phishing
Total crypto market cap valued at $3.77 trillion on the daily chart | Source: TOTAL chart on Tradingview.com
Featured image from Forbes, chart from Tradingview
Editorial Process for bitcoinist is centered on delivering thoroughly researched, accurate, and unbiased content. We uphold strict sourcing standards, and each page undergoes diligent review by our team of top technology experts and seasoned editors. This process ensures the integrity, relevance, and value of our content for our readers.

Semilore Faleti works as a crypto-journalist at Bitconist, providing the latest updates on blockchain developments, crypto regulations, and the DeFi ecosystem. He is a strong crypto enthusiast passionate about covering the growing footprint of blockchain technology in the financial world.

你可能也喜欢

美国大模型走向封闭,以安全之名

2026年6月,美国政府以安全为由,对前沿AI模型的发布实施管制。Anthropic的最强网络安全模型Mythos 5被要求下架后,仅获准有限恢复至约100家美国机构,其公众版Fable 5恢复时间未定。同时,OpenAI发布的新模型GPT-5.6系列也只对经政府审批的合作伙伴开放API。此事标志着美国政府首次成功介入商业AI模型的发布审批。 然而,涉事公司的安全评估显示,模型并未越过其自设的风险红线。OpenAI评估其模型不具备自主实施端到端网络攻击的能力;Anthropic则反驳政府的担忧基于一个狭窄、非通用的漏洞。行业批评政府的决策缺乏清晰的技术标准和透明的流程。有观点认为,管制行动的背后是模型能力的“可演示性”引发了政治担忧、竞争对手的举报以及新AI行政令寻求执法案例的需求。 文章回顾了上世纪90年代的“密码战争”,当时美国政府试图管制强加密技术的出口,最终因技术扩散无法遏制、损害美国企业竞争力而失败。历史镜鉴提示,对前沿AI的类似管制可能阻碍技术创新与产业投资,并将市场优势让位于以开源开放策略发展的竞争者。 评论指出,一个没有明确标准和时间表的审批流程,可能动摇前沿AI产业的商业逻辑,并将强大工具的访问权集中于少数特权机构,反而可能增加风险。全球开发者社区开始怀念模型自由发布、快速创新的时代,并将更多期待转向持续开放的中国大模型。

链捕手1小时前

美国大模型走向封闭,以安全之名

链捕手1小时前

交易

现货
活动图片