
Navigation: officercia.eth
In today’s article, I’d want to draw your attention to some of my most time-consuming articles (there are 120+ already!), which I feel to be my best! Enjoy!Art by: Regul LionOpSec & SecurityOpSec Going SmartOpSec Going SmarterOpSec Going Smarter: Secure SmartphonesUnfolding Ancient Wisdom: How Ancient Stories Teach Modern Humans about Security and OpSecAn Open Letter to the Manufacturers and Designers of Crypto WalletsWould Stay Extra Vigilant Over the Holidays…Interview With a KyberSwap Hack...

The Worst OpSec Fails of 2025: Lessons from Darknet Busts and Whale Kidnappings
I'll break it down simple, like we're chatting over coffee, and throw in some real stories from the news.

Staying Private in Crypto & Web3: Simple, Practical Tips That Actually Work
In the beginning, cryptocurrency was meant to be about privacy and freedom, but these days everything is tracked, connected, and sold.
>4.5K subscribers



Navigation: officercia.eth
In today’s article, I’d want to draw your attention to some of my most time-consuming articles (there are 120+ already!), which I feel to be my best! Enjoy!Art by: Regul LionOpSec & SecurityOpSec Going SmartOpSec Going SmarterOpSec Going Smarter: Secure SmartphonesUnfolding Ancient Wisdom: How Ancient Stories Teach Modern Humans about Security and OpSecAn Open Letter to the Manufacturers and Designers of Crypto WalletsWould Stay Extra Vigilant Over the Holidays…Interview With a KyberSwap Hack...

The Worst OpSec Fails of 2025: Lessons from Darknet Busts and Whale Kidnappings
I'll break it down simple, like we're chatting over coffee, and throw in some real stories from the news.

Staying Private in Crypto & Web3: Simple, Practical Tips That Actually Work
In the beginning, cryptocurrency was meant to be about privacy and freedom, but these days everything is tracked, connected, and sold.
Share Dialog
Share Dialog
Today I want to remind you about an old scam implementation which is called a scavenging. Just remember as a golden rule — the 12-word or private key scam is a pretty common one on TG and if anyone giving you their private key/seed — he is scamming you!
❗️ Please report scam here:
Any funds you transfer in to facilitate the swap will be immediately drained via contract before you can make a tx with it! Do not try to withdraw funds on those wallets!
Usually such attacks happen on side-chains (majority on BSC) and blockchains with poor MEV, so using whitehat.flashbots.net or private pool won’t help. If they target specific project they use its governance tokens, if no then just use blacklisted USDT ETH Mainnet addresses or just honeypot tokens.
In past, when these scammers existed mostly on ETH main-net (without using frozen USDT) and when MEV was not as popular as it is now, researchers made several successful attempts of beating them, let’s take a look:
blog.mycrypto.com/how-to-beat-an-ethereum-based-sweeper-and-recover-your-assets
consensys.net/blog/metamask/spoofing-sweepers-and-clipboard-hacks-how-to-stay-safe-from-scams/
In short, it targets human greed. There was also this type of attack mixed with more brutal social engineering which targets human anger. The scammer will withdraw assets you sent for funding a gas for transaction and his honeypot will stay untouched.
You will loose 10-30$, not too much, but one of the wallets (2nd wallet) receiving those scammed ethers is doing quite well. Another wallet — here, one of the oldest scammers. Still active.
Stay safe! Now you know what to show to the next “coinbase or metamask support” message you randomly get from a scammer-impersonator asking for your seed phase 🙂
Support is very important to me, with it I can spend less time at work and do what I love — educating DeFi & Crypto users
If you want to support my work, you can send me a donation to the address:
0xB25C5E8fA1E53eEb9bE3421C59F6A66B786ED77A or officercia.eth — ETH, BSC, Polygon, Optimism, Zk, Fantom, etc
4AhpUrDtfVSWZMJcRMJkZoPwDSdVG6puYBE3ajQABQo6T533cVvx5vJRc5fX7sktJe67mXu1CcDmr7orn1CrGrqsT3ptfds — Monero XMR
Today I want to remind you about an old scam implementation which is called a scavenging. Just remember as a golden rule — the 12-word or private key scam is a pretty common one on TG and if anyone giving you their private key/seed — he is scamming you!
❗️ Please report scam here:
Any funds you transfer in to facilitate the swap will be immediately drained via contract before you can make a tx with it! Do not try to withdraw funds on those wallets!
Usually such attacks happen on side-chains (majority on BSC) and blockchains with poor MEV, so using whitehat.flashbots.net or private pool won’t help. If they target specific project they use its governance tokens, if no then just use blacklisted USDT ETH Mainnet addresses or just honeypot tokens.
In past, when these scammers existed mostly on ETH main-net (without using frozen USDT) and when MEV was not as popular as it is now, researchers made several successful attempts of beating them, let’s take a look:
blog.mycrypto.com/how-to-beat-an-ethereum-based-sweeper-and-recover-your-assets
consensys.net/blog/metamask/spoofing-sweepers-and-clipboard-hacks-how-to-stay-safe-from-scams/
In short, it targets human greed. There was also this type of attack mixed with more brutal social engineering which targets human anger. The scammer will withdraw assets you sent for funding a gas for transaction and his honeypot will stay untouched.
You will loose 10-30$, not too much, but one of the wallets (2nd wallet) receiving those scammed ethers is doing quite well. Another wallet — here, one of the oldest scammers. Still active.
Stay safe! Now you know what to show to the next “coinbase or metamask support” message you randomly get from a scammer-impersonator asking for your seed phase 🙂
Support is very important to me, with it I can spend less time at work and do what I love — educating DeFi & Crypto users
If you want to support my work, you can send me a donation to the address:
0xB25C5E8fA1E53eEb9bE3421C59F6A66B786ED77A or officercia.eth — ETH, BSC, Polygon, Optimism, Zk, Fantom, etc
4AhpUrDtfVSWZMJcRMJkZoPwDSdVG6puYBE3ajQABQo6T533cVvx5vJRc5fX7sktJe67mXu1CcDmr7orn1CrGrqsT3ptfds — Monero XMR
No comments yet