A phishing attack using Permit2 has led to the loss of $1.39 million by a PEPE token holder.
Today, an incident was recorded in which the owner of PEPE tokens lost $1.39 million as a result of a phishing attack. The scammers exploited a vulnerability in the Permit2 function on Uniswap, which allows multiple tokens to be approved with a single signature. After obtaining the victim’s signature, the attackers quickly transferred the funds, including PEPE, MSTR, and APU tokens, to a new address.
This case highlights the growing risks of phishing attacks in the crypto space and the need for careful scrutiny of any signature requests to protect one’s assets.