Asterix is unlocking new possibilities of digital ownership, powered by DN404. DN404 is a contract that interlinks a fungible ERC-20 token contract and a non-fungible ERC-721 token contract. Interlinking them means actions taken on one contract are reflected on the other.
According to Cointelegraph, cybersecurity company Rapid7 has disclosed a cryptocurrency phishing campaign named "Operation Asterix" targeting approximately 885,000 phone numbers, aimed at luring users into visiting fraudulent Ledger, Trezor, and Exodus wallet apps or websites to steal mnemonic phrases and crypto assets.
Odaily News Rapid7, a cybersecurity firm, has disclosed a crypto phishing campaign named Operation Asterix that targets approximately 885,000 phone numbers across multiple countries, redirecting victims to fraudulent wallet service websites. A total of 5,576 phone numbers have been matched with Binance user accounts and placed on the attack queue.The attackers steal seed phrases through fake apps impersonating Ledger, Trezor, and Exodus, while also contacting victims via fraudulent customer support emails and phone calls. Rapid7 also found that among over 316,000 phone numbers in Germany, 43,066 were matched with crypto trading accounts, representing a hit rate of approximately 13.6%.The related attacks also include a bulk phone number verification tool targeting Kraken accounts, and the investigation revealed that AI tools are being widely used in phishing operations. According to data from blockchain security firm Hacken, phishing attacks and social engineering scams caused $306 million in losses in the first quarter of this year, accounting for the majority of the $482 million total losses in the crypto industry. (Cointelegraph)
SlowMist founder Yu Xian tweeted that, after preliminary analysis, the Asterix attack employed a method similar to yesterday’s Flooring Protocol incident. The underlying protocols involved are DN404 and BT404, respectively. The issue relates to integer overflow and reuse caused by high-value NFT ID bit-shift operations, suggesting the attacker may be searching for similar vulnerabilities.
According to Cointelegraph, cybersecurity company Rapid7 has disclosed a cryptocurrency phishing campaign named "Operation Asterix" targeting approximately 885,000 phone numbers, aimed at luring users into visiting fraudulent Ledger, Trezor, and Exodus wallet apps or websites to steal mnemonic phrases and crypto assets.
Odaily News Rapid7, a cybersecurity firm, has disclosed a crypto phishing campaign named Operation Asterix that targets approximately 885,000 phone numbers across multiple countries, redirecting victims to fraudulent wallet service websites. A total of 5,576 phone numbers have been matched with Binance user accounts and placed on the attack queue.The attackers steal seed phrases through fake apps impersonating Ledger, Trezor, and Exodus, while also contacting victims via fraudulent customer support emails and phone calls. Rapid7 also found that among over 316,000 phone numbers in Germany, 43,066 were matched with crypto trading accounts, representing a hit rate of approximately 13.6%.The related attacks also include a bulk phone number verification tool targeting Kraken accounts, and the investigation revealed that AI tools are being widely used in phishing operations. According to data from blockchain security firm Hacken, phishing attacks and social engineering scams caused $306 million in losses in the first quarter of this year, accounting for the majority of the $482 million total losses in the crypto industry. (Cointelegraph)
SlowMist founder Yu Xian tweeted that, after preliminary analysis, the Asterix attack employed a method similar to yesterday’s Flooring Protocol incident. The underlying protocols involved are DN404 and BT404, respectively. The issue relates to integer overflow and reuse caused by high-value NFT ID bit-shift operations, suggesting the attacker may be searching for similar vulnerabilities.