comment

Address Poisoning Costs User 140 ETH — Verify Addresses First

I’m reporting that a user fell victim to an address poisoning attack and mistakenly sent 140 ETH to a malicious address, losing roughly $636,000.

I believe this highlights how easy it is to lose large sums from subtle address substitution or clipboard tampering and that standard UX can fail users under pressure.

I recommend immediate operational changes: always verify addresses on a hardware device, send a small test transaction first, use ENS or trusted address books, and avoid copying addresses from untrusted links or clipboard-sensitive environments.

Source available for registered users Sign Up Free

Analysis

The loss was likely caused by address poisoning (clipboard or UI manipulation) that swapped a legitimate address for a malicious one; such attacks exploit human trust and weak address verification flo...

Recommendation

Stop sending large sums without on-device address confirmation and a prior test transaction; adopt hardware wallets, ENS/reverse resolution or a verified address book, enable transaction alerts, and e...

Disclaimer

The Analysis and recommendations provided are for informational purposes only. Any investment decisions should be made at your own risk. Past performance is not indicative of future results. Always conduct your own research and consider consulting with a financial advisor before making any investment decisions.

You might also be interested in: