Subscribe for notification
Web3

Compound Finance Warns of Website Hack

Compound Finance faced a major security breach, compromising its official website. A phishing site now occupies the hijacked domain, posing user risks.

According to Security Advisor Michael Lewellen, the domain theft is unaffected by Compound’s smart contract funds.

According to Compound Labs’ official X account, the business sent out an urgent warning on July 11 at 10:15 a.m., saying,

“The Compound Labs website (compound[.]finance) has been compromised. Please do not visit the website or click any links until further notice”.

The security advisor for Compound, Michael Lewellen, verified the compromise on X and emphasized that customers can utilize something other than the Compound Finance website. Lewellen explained that even though the website has been hacked, all smart contract money is safe, and the Compound protocol is unaffected.

It looks like a clever phishing attack. A fake website intended to steal user data and maybe digital assets has replaced the official Compound Finance website. Known as “domain hijacking,” this assault entails gaining control of a domain name without the owner’s permission, typically through a DNS password compromise.

Through Telegram, blockchain investigator ZachXBT has alerted the cryptocurrency community to the dangers of utilizing the Compound Finance website since it leads to a fraudulent website called compound-finance[.]app.

Compound Finance DNS attack (ZachXBT)

This event came after Compound Finance’s X account was compromised and used to spread a phishing website during the last security breach that occurred last year. It has been revealed that LINK tokens worth about $4.4 million were lost due to that attack.

Until official confirmation is received that the issue has been fixed, the cryptocurrency community is encouraged to proceed cautiously and refrain from dealing with the Compound Finance website. Regarding updates on the situation, users should rely only on official messages from Compound Labs and be on the lookout for any potential phishing attempts.

Web3 security tools and browser plugins can also alert users to potentially harmful links. A few examples are AegisWeb3, Pocket Universe, Wallet Guard, Malwarebytes Browser Guard, and MetaMask transaction insight Snaps.

Ruth Okarter

Ruth is a seasoned news reporter and editor who brings her sharp eye and passion for storytelling to Protechbro.com. With a background in English and literary studies, Ruth crafts compelling narratives that unpack the complexities of the ever-evolving tech landscape.

Disqus Comments Loading...

Recent Posts

Nishad Singh Asks for Lighter Sentence in FTX Case

Nishad Singh, the former executive of FTX, is said to have cooperated with the investigation and requested a reduced sentence…

7 hours ago

FCC Mandates Hearing Aid-Compatible Phones

The FCC has implemented new regulations requiring all mobile phones to be compatible with hearing aids, ensuring accessibility for users…

8 hours ago

Worldcoin Rebrands as World, Unveils Iris-Scanning Orb

Worldcoin, the Sam Altman-founded “proof of personhood” currency that scans eyeballs became “World” on Thursday. In San Francisco, the company…

8 hours ago

Waymo Offers $3 Credit for San Francisco Transit Rides

Riders of Waymo robotaxis in the Bay Area may accumulate a $3 credit for each trip to and from specific…

8 hours ago

ChatGPT Launches on Windows

OpenAI has launched ChatGPT for Windows, enabling users to access advanced conversational AI directly on their desktop for enhanced productivity…

8 hours ago

Meta Lays off Workers Across Several Teams

Meta confirmed in a statement to TechCrunch that layoffs were implemented on Wednesday to reallocate resources within the organization A…

9 hours ago