Solana user loses 3 million dollars due to compromised hidden wallet access

robot
Abstract generation in progress

A recent security incident has raised concerns in the Solana community when a user lost over 3 million USD due to sophisticated phishing. The incident exposed risks in Solana’s account structure, where an attacker can change the Owner permission without initiating a fund transfer transaction, making it difficult for victims to detect. Many users mistakenly believe that ownership works the same way as on Ethereum, so they don’t realize that a single signature can alter the entire wallet’s permissions.

According to SlowMist and MistTrack, the attacker manipulated multiple layers of permissions, then cycled assets through cross-chain, CEX, and DeFi platforms, demonstrating increasingly sophisticated money laundering techniques. The victim also had 2 million USD locked in DeFi, which was successfully recovered thanks to timely reporting.

Experts recommend users carefully check URLs, transaction details, avoid suspicious links, use separate wallets for risky activities, limit granting unlimited permissions, and scrutinize every signature request.

SOL-1.51%
ETH-2.11%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
0/400
No comments
Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate App
Community
English
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)