Cryptopolitan
2025-07-09 17:15:22

Mt. Gox hacker wallet receives spoof transactions

Old BTC held in wallets linked to Mt. Gox have been targeted with scam messages. Hackers are abusing the op_return function to embed messages in transactions, creating a new form of phishing. As BTC trades near record levels, old wallets are looking ever more attractive. Attackers are attempting a new type of phishing by abusing the op_return function on Bitcoin. Using op_return allows the embedding of information in each BTC transaction. This function was also used to create Bitcoin-based NFTs. Scammers are generating messages that spoof official-looking sites, claiming ownership of the wallet. The message can do nothing to move the coins, but it can urge some users to take action. Some messages embedded in transactions point to sites or forms. Others attempt to claim ownership of the wallet, as in previous cases that tried to exploit older whales. The attempts at scamming owners mostly targeted whale wallets from the 2011 era. Mt. Gox hacker wallet receives spoof transactions One of the most targeted wallets belongs to the Mt. Gox Hacker, containing 79.95K BTC valued at over $8B. The wallet was last dusted on July 5, 2025, though it received additional tracing transactions or messages in the past. None of the coins in the wallet has been moved. One of the transactions from July 3, 2025, contained an op_return message pointing to an ‘owner notice’. The notice, when decoded, called the wallet holder to visit a site claiming to be linked to Salomon Brothers, a known Wall Street firm that was acquired by Citigroup in 2003 and no longer exists as a legal entity. Since July 3, the spoof site has been taken down. But before that, the message suggested that a third party attempted to claim possession of the wallet in legal terms. The claim via op_return, sent to the wallet, resembled the attempts of Calvin Ayre to prove ownership of old wallets. Scammers gather data or attempt pseudo-legal claims Some of the links sent in the op_return message attempt to gather personal data or connect a wallet to a real identity. So far, legal claims against inactive wallets have been unsuccessful, as BTC ownership hinges on holding private keys. Neither miners nor developers can claw back the BTC from idle wallets, despite claims of ownership. However, knowing the identity of old whales, if extracted through phishing, could lead to other types of attacks, such as kidnapping or attempting to steal private keys. Interest in old wallets increased after a whale with coins from 2011 moved 80,000 BTC to new addresses in a single day. Some of the initial whale wallets immediately received dust transactions containing spoofed op_return messages with pseudo-legal language. A recently emptied whale wallet received an op_return message claiming ownership over the wallet, embedded in a dust transaction. | Source: Blockchain.com One of the messages read ‘ LEGAL NOTICE: We have taken possession of this wallet and its contents ’. However, the actual wallet was emptied, and the coins were controlled by a new owner, with no further need for a legal claim. The cluster of dormant whale wallets also revealed that op_return attacks came in coordinated waves, potentially linked to a handful of bad actors making attempts to gather data or deploy other phishing tools. Attacks via op_return messages may stop after a Bitcoin upgrade, as there are proposals to limit the data threshold to just 80 bytes, not allowing even short messages. Cryptopolitan Academy: Coming Soon - A New Way to Earn Passive Income with DeFi in 2025. Learn More

Crypto 뉴스 레터 받기
면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.