Bored Ape Yacht Club’s Instagram compromised in $2.4 million NFT phishing scam
Bored Ape Yacht Club creator Yuga Labs is investigating a phishing attack after a hacker stole nearly $2.5 million worth of NFTs through the official Bored Ape Instagram account. The company disclosed the hack on Monday morning in a tweet warning followers not to click on links or mint new tokens.
This morning, the official BAYC Instagram account was hacked. The hacker posted a fraudulent link to a copycat of the BAYC website with a fake Airdrop, where users were prompted to sign a ‘safeTransferFrom’ transaction. This transferred their assets to the scammer’s wallet.
— Bored Ape Yacht Club (@BoredApeYC) April 25, 2022
Per a screenshot shared by The Block, the hacker behind the attack stole 133 NFTs after using BAYC’s Instagram account to promote a fake “airdrop.” Essentially, the scam promised people free tokens if they connected their MetaMask wallets to the site linked through the post. It’s unclear how the hacker accessed BAYC’s Instagram account, and Yuga Labs has yet to announce whether it will compensate those affected by the scam.
“At the time of the hack, two-factor authentication was enabled and security surrounding the IG account followed best practices,” the company said. “We’ve regained …read more