Close Menu
CatchTheBullCatchTheBull
  • Home
  • Crypto News
  • Bitcoin
  • Altcoin
  • Blockchain
  • Airdrops News
  • NFT News
What's Hot

Top 5 Reasons Crypto Founders Underestimate How Long PR Takes to Compound

May 10, 2026

Is The Altseason Upon Us Again?

May 10, 2026

Strategy CEO Highlights Scenarios Where Company Would Sell Bitcoin — Report

May 10, 2026
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
CatchTheBullCatchTheBull
  • Home
  • Crypto News
  • Bitcoin
  • Altcoin
  • Blockchain
  • Airdrops News
  • NFT News
CatchTheBullCatchTheBull
Crypto News

MetaMask Users Face New 2FA Phishing Scam, SlowMist Says

By WebDeskJanuary 5, 20263 Mins Read
MetaMask Users Face New 2FA Phishing Scam, SlowMist Says
Share
Facebook Twitter LinkedIn Pinterest Email

All news is rigorously fact-checked and reviewed by leading blockchain experts and seasoned industry insiders.
  • Attackers spoof MetaMask alerts and fake 2FA pages to steal seed phrases.
  • The Mertamask domain uses typosquatting and urgency tactics to trick users.

A fresh wave of phishing attempts is circling back toward MetaMask users, this time with a more polished and coordinated setup. SlowMist’s Chief Information Security Officer (CISO) has raised the alarm over a new scam framed as a “2FA verification,” built to look far more legitimate than earlier attacks.

This method mimics the official security flow and directs victims to fake websites, one of which is “Mertamask.” This is where many users become unprepared, as the interface and narrative appear to originate from MetaMask’s own system.

🚨MetaMask 出现新型 ‘2FA 安全验证’ 骗局 @MetaMask @tayvano_
注意防范 pic.twitter.com/RJM78If9zb

— 23pds (山哥) (@im23pds) January 5, 2026

The scheme usually starts with a bogus security notice sent by email, warning of suspicious activity in a user’s wallet. The message wastes no time, urging the recipient to “verify” right away. However, instead of going to the official page, users are redirected to a deliberately similar Mertamask domain.

Small changes in the lettering are easy to miss, particularly when an urgent warning pushes someone into panic mode. Once they click through, victims land on a fake 2FA page outfitted with a countdown meant to heighten the pressure.

MetaMask fake Website
Image from X

MetaMask Users Tricked Into Handing Over Recovery Phrases

On the fake page, users are asked to follow seemingly logical steps. However, in the final stage, the site asks for a recovery phrase or seed phrase. This is where the scam’s core lies. MetaMask never asks for a seed phrase for verification, updates, or any other security reasons. Once the phrase is entered, control of the wallet is immediately transferred.

Not only that, the asset draining process is usually quick and silent, with victims only realizing it after their balances have been drastically reduced.

Interestingly, this approach marks a shift in the fraudsters’ focus. While previously many attacks relied on random messages or superficial visuals, now the visuals and flow are much more convincing.

Furthermore, psychological pressure has become a primary weapon. Threat narratives, time limits, and a professional appearance combine to make MetaMask users act reflexively, rather than rationally.

Malicious Contract Signatures Enable Silent Asset Theft

This fake 2FA scheme emerged amid a surge in other phishing attacks also targeting the EVM ecosystem. Recently, hundreds of EVM wallets, primarily MetaMask users, fell victim to fraudulent emails claiming a “mandatory update.”

In these cases, victims were not asked for their seed phrase but instead were lured into signing a malicious contract. Over $107,000 was stolen in small amounts from each wallet, a strategy that makes the theft difficult to detect individually. This pattern exploits the speed of transaction signatures, as opposed to direct seed phrase theft.

On the other hand, on December 9, we reported that MetaMask had expanded cross-chain exchanges through its Rango multi-chain routing infrastructure. What started with the EVM and Solana has now expanded to Bitcoin, giving users even broader cross-chain reach.

A few days earlier, on December 5, we also highlighted the direct integration of Polymarket into MetaMask Mobile, allowing users to participate in prediction markets without leaving the app and earn MetaMask Rewards.

Also, in late November, we covered the on-chain equity perpetual trading feature in MetaMask Mobile, which opens access to long and short positions on a variety of global assets with leverage options.


Credit: Source link

Previous ArticleXRP Reclaims $2 After 11% Rally: What’s Next?
Next Article NFTs Are So Back – Sales Jump +30% First Week Of Jan 2026

Related Posts

Top 5 Reasons Crypto Founders Underestimate How Long PR Takes to Compound

May 10, 2026

LUNC Price Reclaims $0.0001 After Sell-Off—Can a Short Squeeze Push It to $0.00012?

May 10, 2026

Banking Lobby Tries to Kill CLARITY Act Four Days Before Senate Vote

May 10, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

Top 5 Reasons Crypto Founders Underestimate How Long PR Takes to Compound

May 10, 2026

Is The Altseason Upon Us Again?

May 10, 2026

Strategy CEO Highlights Scenarios Where Company Would Sell Bitcoin — Report

May 10, 2026

Subscribe to Updates

Get the latest Crypto, Blockchain and Airdrop News from us to Catch The Bull.

Advertisement Banner

Welcome to CatchTheBull, your trusted source for the latest Crypto News and Airdrops. We bring you real-time updates, expert insights, and opportunities to stay ahead in the crypto world. Discover trending projects, market analyses, and airdrop details all in one place.

Join us on this journey to navigate the ever-evolving blockchain universe!

Facebook X (Twitter) Instagram YouTube
Top Insights

Bitcoin SOPR Reaches 1.157 As LTHs Strengthen Market Dominance – Details

Santiment Warns of BTC Rally Fatigue as Bullish Sentiment Peaks

Bitcoin’s Cycle Evolution Is Here: Lower Volatility, Smarter Accumulation

Get Informed

Subscribe to Updates

Get the latest Crypto, Blockchain and Airdrop News from us to Catch The Bull.

© 2026 CatchTheBull. All Rights Are Reserved.
  • Contact Us
  • Privacy Policy
  • Terms of Use
  • DMCA

Type above and press Enter to search. Press Esc to cancel.

  • bitcoinBitcoin(BTC)$80,765.00-0.05%
  • ethereumEthereum(ETH)$2,331.080.09%
  • tetherTether(USDT)$1.000.00%
  • rippleXRP(XRP)$1.452.13%
  • binancecoinBNB(BNB)$652.280.12%
  • usd-coinUSDC(USDC)$1.000.01%
  • solanaSolana(SOL)$94.961.71%
  • tronTRON(TRX)$0.3510710.14%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.00-2.64%
  • dogecoinDogecoin(DOGE)$0.108244-0.98%
  • whitebitWhiteBIT Coin(WBT)$59.53-0.19%
  • USDSUSDS(USDS)$1.000.00%
  • cardanoCardano(ADA)$0.2784742.34%
  • HyperliquidHyperliquid(HYPE)$42.29-1.70%
  • zcashZcash(ZEC)$566.79-4.70%
  • leo-tokenLEO Token(LEO)$10.09-2.48%
  • bitcoin-cashBitcoin Cash(BCH)$459.322.00%
  • chainlinkChainlink(LINK)$10.531.11%
  • moneroMonero(XMR)$403.62-2.40%
  • the-open-networkToncoin(TON)$2.34-3.93%
  • CantonCanton(CC)$0.153873-1.35%
  • stellarStellar(XLM)$0.1671892.80%
  • suiSui(SUI)$1.3324.33%
  • litecoinLitecoin(LTC)$58.470.63%
  • daiDai(DAI)$1.000.00%
  • USD1USD1(USD1)$1.00-0.06%
  • avalanche-2Avalanche(AVAX)$10.101.30%
  • MemeCoreMemeCore(M)$3.24-6.32%
  • hedera-hashgraphHedera(HBAR)$0.0961623.34%
  • Ethena USDeEthena USDe(USDE)$1.000.00%
  • shiba-inuShiba Inu(SHIB)$0.0000071.58%
  • RainRain(RAIN)$0.0075581.55%
  • paypal-usdPayPal USD(PYUSD)$1.00-0.01%
  • crypto-com-chainCronos(CRO)$0.0729462.83%
  • BittensorBittensor(TAO)$317.912.71%
  • Circle USYCCircle USYC(USYC)$1.120.00%
  • tether-goldTether Gold(XAUT)$4,699.24-0.21%
  • Global DollarGlobal Dollar(USDG)$1.00-0.01%
  • uniswapUniswap(UNI)$3.924.95%
  • BlackRock USD Institutional Digital Liquidity FundBlackRock USD Institutional Digital Liquidity Fund(BUIDL)$1.000.00%
  • mantleMantle(MNT)$0.702.31%
  • polkadotPolkadot(DOT)$1.360.83%
  • pax-goldPAX Gold(PAXG)$4,703.31-0.20%
  • World Liberty FinancialWorld Liberty Financial(WLFI)$0.068121-3.10%
  • nearNEAR Protocol(NEAR)$1.55-0.84%
  • OndoOndo(ONDO)$0.409027-3.49%
  • internet-computerInternet Computer(ICP)$3.32-7.04%
  • okbOKB(OKB)$87.31-0.91%
  • Pi NetworkPi Network(PI)$0.1742200.11%
  • pepePepe(PEPE)$0.0000041.32%