ChainBleedv0.1 · open intel
← back to feed·BSCPHISHING2025-10-01 · 8mo ago
Incident · SLOWMIST

BNB Chain

Phishing Attack
Estimated loss
$8.0K
VERDICT —OUT OF SCOPE
Root cause is phishing — victims signed malicious transactions or approvals off-protocol. Contract logic was not the failure surface; user-side wallet hygiene was. Pre-deployment audit cannot catch this class.
▰ METHOD
PHISHING
PHISHING
Root cause

Root-cause analysis not yet published. The incident description below contains all currently available signal — review the attack transaction directly for definitive forensics.

Forensic narrative

On October 1, BNB Chain officially announced that its English Twitter account had been compromised and was under emergency recovery, warning users not to click on any links.Subsequent investigation revealed that the incident involved a total of 10 phishing links, resulting in losses of approximately $8,000, with a single user losing as much as $6,500.The attacker deployed a phishing contract address, injected $17,800, and exchanged it for $22,000 worth of tokens. Following the incident, the team implemented additional security measures to prevent similar occurrences and further strengthened account protection.As of October 31, all user compensations related to this phishing incident have been completed, and transaction details are available on Etherscan. The root cause of the incident has been confirmed as phishing links, which have since been removed and brought under control. Attack method (per SlowMist): Phishing Attack. Reported loss: $ 8,000.

Primary source
https://x.com/BNBCHAIN/status/1984143649584902620
Sourced from
slowmist
Technical record
chain
bsc
protocol
BNB Chain
bug_class
phishing
date_occurred
2025-10-01
loss_usd
$8,000
source_id
sm:bnb-chain::2025-10-01
Related — same bug class· phishing
2026-04-29
1mo ago
Sweat Foundation
Contract Vulnerability
phishing
$3.50M
OUT OF SCOPE
2026-04-28
1mo ago
ETH
Multicall yvETH Approval Abuse (victim 0x9828)
Approval-drainer via multicall aggregator (phishing pattern)
phishing
$980.1K
OUT OF SCOPE
2026-04-27
1mo ago
ETH
Unverified Contract 0x2990A16D
Stale approval drain on unverified contract
phishing
$229.0K
OUT OF SCOPE
2026-04-03
2mo ago
Adobe
Supply Chain Attack
phishing
OUT OF SCOPE
2026-04-02
2mo ago
Trust Wallet
Infrastructure Hijacking
phishing
OUT OF SCOPE
2025-12-04
6mo ago
USPD
"CPIMP" (Clandestine Proxy In the Middle of Proxy) attack
phishing
$1.00M
OUT OF SCOPE
ChainBleed — live web3 threat intelligence