Ethereum mailing list breach exposes 35,000 to crypto draining attack

Share:

A threat actor compromised Ethereum’s mailing list provider and sent to over 35,000 addresses a phishing email with a link to a malicious site running a crypto drainer.

Ethereum disclosed the incident in a blog post this week and said that it had no material impact on users.

Attack details

The attack occurred on the night of June 23 when an email was sent from the address ‘[email protected]’ to 35,794 addresses.

Ethereum says that the threat actor used a combination of their own email address list and an additional 3,759 exported from the platform’s blog mailing list. However, only 81 of the exported addresses were previously unknown to the attacker.

The message lured recipients to the malicious website with an announcement of a collaboration with Lido DAO and invited them to take advantage of a 6.8% annual percentage yield (APY) on staked Ethereum.

Clicking on the embedded ‘Begin staking’ button to get the promised investment returns took people to a fake but professionally crafted website made to appear as part of the promotion.

If users connected their wallets on that site and signed the requested transaction, a crypto drainer would empty their wallets, sending all amounts to the attacker.

Ethereum’s response

Ethereum says that its internal security team launched an investigation as soon as possible to identify the attacker, understand the attack’s purpose, determine the timeline, and identify the affected parties.

The attacker was quickly blocked from sending more emails and Ethereum took to Twitter to notify the community about the malicious emails, warning everyone not to click the link.

Ethereum also submitted the malicious link to various blocklists, which led to it being blocked by most Web3 wallet providers and Cloudflare.

On-chain transaction analysis showed that none of the email recipients fell for the trap during the campaign.

Ethereum concludes by saying it has taken additional measures and is migrating some email services to other providers to prevent such an incident from happening again.

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
4:13 am, Jul 11, 2025
weather icon 18°C
L: 16° | H: 19°
scattered clouds
Humidity: 80 %
Pressure: 1021 mb
Wind: 5 mph E
Wind Gust: 0 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 45%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 4:56 am
Sunset: 9:15 pm
DailyHourly
Daily ForecastHourly Forecast
Today 10:00 pm
weather icon
16° | 19°°C 0 mm 0% 8 mph 76 % 1021 mb 0 mm/h
Tomorrow 10:00 pm
weather icon
19° | 30°°C 0 mm 0% 10 mph 66 % 1019 mb 0 mm/h
Sun Jul 13 10:00 pm
weather icon
18° | 30°°C 0 mm 0% 7 mph 71 % 1015 mb 0 mm/h
Mon Jul 14 10:00 pm
weather icon
18° | 28°°C 1 mm 100% 15 mph 84 % 1016 mb 0 mm/h
Tue Jul 15 10:00 pm
weather icon
14° | 20°°C 1 mm 100% 14 mph 81 % 1017 mb 0 mm/h
Today 7:00 am
weather icon
18° | 19°°C 0 mm 0% 2 mph 76 % 1021 mb 0 mm/h
Today 10:00 am
weather icon
24° | 27°°C 0 mm 0% 2 mph 57 % 1021 mb 0 mm/h
Today 1:00 pm
weather icon
30° | 30°°C 0 mm 0% 3 mph 32 % 1020 mb 0 mm/h
Today 4:00 pm
weather icon
32° | 32°°C 0 mm 0% 4 mph 26 % 1018 mb 0 mm/h
Today 7:00 pm
weather icon
30° | 30°°C 0 mm 0% 6 mph 29 % 1017 mb 0 mm/h
Today 10:00 pm
weather icon
23° | 23°°C 0 mm 0% 8 mph 49 % 1019 mb 0 mm/h
Tomorrow 1:00 am
weather icon
21° | 21°°C 0 mm 0% 5 mph 57 % 1019 mb 0 mm/h
Tomorrow 4:00 am
weather icon
19° | 19°°C 0 mm 0% 5 mph 66 % 1018 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€99,629.89
4.84%
Ethereum(ETH)
€2,534.99
6.46%
Tether(USDT)
€0.85
-0.01%
XRP(XRP)
€2.20
6.42%
Solana(SOL)
€140.87
4.24%
USDC(USDC)
€0.85
-0.02%
Dogecoin(DOGE)
€0.169865
9.79%
Shiba Inu(SHIB)
€0.000012
8.47%
Pepe(PEPE)
€0.000011
14.99%
Peanut the Squirrel(PNUT)
€0.248621
22.90%
Scroll to Top