Meme Coin Traders Fall Victim to Fake Cloudflare Phishing Attacks
A new wave of phishing attacks is targeting meme coin traders, using fake Cloudflare verification screens to trick them into executing malicious scripts.
The attackers place phishing websites in token metadata fields that traders may open while researching newly launched meme coins. Once a trader interacts with the page, they are asked to execute a script on their computer, which can download and run malicious code locally.
A crypto trader reported losing approximately $600,000 after falling victim to one of these attacks.
The method differs from other wallet-draining attacks that rely on users connecting a wallet and approving a malicious blockchain transaction. In this case, the phishing page attempts to get the victim to execute code directly on their computer.