Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnSquareMore
AI-driven phishing scams and hidden crypto exploits shake Web3 security

AI-driven phishing scams and hidden crypto exploits shake Web3 security

CoinjournalCoinjournal2025/11/12 13:42
By:Coinjournal
AI-driven phishing scams and hidden crypto exploits shake Web3 security image 0
  • SBI Crypto was breached, losing $21 million in assets via a suspected laundering operation.
  • A phishing scam targeting GMGN tricked 107 users into approving fake transactions.
  • Honeypot token scams rose 600% month-on-month, with over 2,100 tokens detected.

Web3 has entered a new phase of cyber threats, with attackers now leveraging artificial intelligence, automation tools, and complex social engineering to exploit users across decentralised networks.

According to GoPlus Security , over $45.84 million was lost in October alone from a surge of scams, phishing attacks, token exploits, and wallet hacks.

The data reveals how scammers are evolving their methods, creating high-impact exploits that have affected thousands of users and platforms across Ethereum, Binance Smart Chain, and Base.

Hackers use AI and automation to boost phishing campaigns

GoPlus observed a sharp increase in phishing attacks that led to more than $3.5 million in losses.

A growing number of these scams are powered by “Phishing-as-a-Service” platforms, where threat actors use AI tools to rapidly generate fake websites and deploy large-scale campaigns with lower operational costs.

One of the largest phishing cases involved the trading platform GMGN.

In this incident, 107 users were misled by a fake third-party website into authorising harmful transactions. Losses totalled more than $700,000.

The phishing scam replicated legitimate wallet interactions, tricking victims into signing approval requests that gave attackers control over their funds.

In another case, a trader approved a malicious “increaseAllowance” command, resulting in a $325,000 loss in Coinbase Wrapped Bitcoin.

Separately, another user was hit with a $440,000 loss after signing a fraudulent “permit” transaction.

Both exploits highlight the rise in fake contract approvals, often enabled by deceptive interfaces mimicking trusted apps.

Sophisticated exploits linked to state-style laundering tactics

The single largest exploit came from SBI Crypto, which suffered a breach that drained $21 million worth of digital assets. The losses included Bitcoin, Ethereum, Litecoin, Dogecoin, and Bitcoin Cash.

Although SBI Crypto did not officially confirm the source of the breach, a joint investigation by ZachXBT and Cyvers suggested patterns similar to those used by North Korean hacker groups.

The attackers allegedly funnelled funds through Tornado Cash, a known crypto mixer previously sanctioned for its role in laundering state-sponsored thefts.

This laundering method closely mirrors activity linked to the Lazarus Group, though the report stressed that the connection remains unverified.

Web3 platforms under attack from honeypot tokens

Alongside phishing and exploits, the report found a dramatic spike in honeypot tokens.

These are malicious smart contracts that allow users to buy tokens but prevent them from selling or withdrawing funds.

Honeypot tokens surged 600% last month, reaching 2,189 identified tokens—though still far fewer than the 40,000 recorded in June 2025.

AI-driven phishing scams and hidden crypto exploits shake Web3 security image 1 Source: GoPlus Security

The Binance Smart Chain accounted for the bulk of these tokens at 1,780, followed by 216 on Ethereum and 131 on Base.

These tokens are embedded with hidden restrictions that block transactions, stranding investor funds in illiquid assets.

Their increase underscores a shift toward embedded contract-level fraud, which can bypass basic security tools.

Tokens and socials compromised in wider exploits

The wider ecosystem also saw losses from social media and platform-based breaches.

Astra Nova’s official social account was hijacked, triggering a large-scale sell-off of its native token RVV and causing losses of approximately $10.3 million.

In a separate exploit, decentralised finance platform Garden Finance was hit with a vulnerability that cost users around $10.8 million, according to ZachXBT.

These incidents reflect a widening surface of attack across both user-facing interfaces and backend contract code.

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

Bitcoin News Update: Traditional Finance Tightens Grip: MSCI Faces $8.8B Crypto Withdrawal Risk

- MSCI plans to exclude firms holding over 50% crypto assets from major indexes starting January 2026, risking $8.8B in potential sell-offs if adopted widely. - MicroStrategy (MSTR), holding 90% of assets in Bitcoin , faces forced institutional sell-offs as the most exposed company under the proposed rule. - Institutional investors show divided reactions: FourThought increased MSCI stakes while Prudential cut holdings by 59.6% amid governance debates. - JP Morgan's $2.8B MSTR outflow estimate triggered soc

Bitget-RWA2025/11/29 17:52
Bitcoin News Update: Traditional Finance Tightens Grip: MSCI Faces $8.8B Crypto Withdrawal Risk

Regulators Adjust Cryptocurrency Regulations as International Standards Address Gaps

- UK expands CARF to include domestic crypto transactions by 2026, aligning with OECD standards to close compliance loopholes and prevent "off-CRS" classification. - GeeFi's 80% presale completion with 700+ investors highlights its multi-chain wallet utility, contrasting speculative projects like Avalanche's volatile price forecasts. - Global regulators tighten crypto oversight (South Korea's cold wallet seizures, Spain's 47% gain tax), favoring utility-focused projects like GeeFi that prioritize complianc

Bitget-RWA2025/11/29 17:52
Regulators Adjust Cryptocurrency Regulations as International Standards Address Gaps

Dogecoin News Today: With ETFs Driving Meme Coin Growth, Institutional Support is Transforming the Future of Altcoins

- Avalanche (AVAX) gains institutional traction as Securitize secures EU approval to deploy its digital-asset platform on the blockchain, enabling cross-border trading via Avalanche's scalable infrastructure. - Dogecoin (DOGE) surges 2.2% post-Grayscale ETF launch, generating $1.5B trading volume and signaling growing institutional interest in meme coins despite structural limitations. - Litecoin (LTC) approaches key $97.33 resistance, with analysts predicting a potential 33% rally if it breaks out of a co

Bitget-RWA2025/11/29 17:52
Dogecoin News Today: With ETFs Driving Meme Coin Growth, Institutional Support is Transforming the Future of Altcoins

Solana News Update: CoinShares Withdraws from U.S. Altcoin ETFs, Shifts Focus to Thematic Approaches as Major Players Take Lead

- CoinShares exits U.S. altcoin ETF market for Solana , XRP , and Litecoin , shifting focus to thematic crypto strategies amid institutional dominance. - CEO cites 90% inflow capture by giants like BlackRock , leaving smaller firms disadvantaged in saturated U.S. crypto ETF landscape. - Strategic pivot aligns with $1.2B SPAC merger plans and aims to leverage $10B AUM for cross-asset, active strategies targeting institutional investors. - Market analysts note the move could reshape ETF competition, emphasiz

Bitget-RWA2025/11/29 17:52
Solana News Update: CoinShares Withdraws from U.S. Altcoin ETFs, Shifts Focus to Thematic Approaches as Major Players Take Lead