An Ethereum user lost 4,556 ETH, worth $12.4M, after copying a poisoned address that mimicked a Galaxy Digital deposit wallet. An Ethereum user has lost 4,556 ETHAn Ethereum user lost 4,556 ETH, worth $12.4M, after copying a poisoned address that mimicked a Galaxy Digital deposit wallet. An Ethereum user has lost 4,556 ETH

$12.4M Gone: Ethereum Whale Tricked by Fake Galaxy Address

An Ethereum user lost 4,556 ETH, worth $12.4M, after copying a poisoned address that mimicked a Galaxy Digital deposit wallet.

An Ethereum user has lost 4,556 ETH, valued at about $12.4 million, after sending funds to a fake address.

The transfer occurred after the user copied an address from transaction history, believing it belonged to Galaxy Digital.

Blockchain data shows the loss resulted from an address poisoning tactic rather than a protocol failure.

How the Address Poisoning Took Place

According to Lookonchain, the affected wallet, identified as 0xd674, had a history of sending funds to Galaxy Digital and regularly used the same deposit address, making its transaction pattern easy to observe on-chain.

An attacker created a lookalike Ethereum address with the same first and last four characters.

This method is known as address poisoning. The attacker then sent small dust transactions to the victim’s wallet.

These dust transfers appeared in the victim’s transaction history. When the user later copied an address from that history, the wrong address was selected.

The copied address belonged to the attacker, not Galaxy Digital.

The Transfer That Led to the Loss

About 11 hours before the loss was identified, the victim attempted another Ethereum deposit.

The user copied the address directly from past transactions. The action was intended to save time.

Instead, the copied address was the attacker’s poisoned address. Once confirmed on the network, the transaction became final. A total of 4,556 ETH was sent in a single transfer.

Blockchain records show the funds moved directly to the attacker’s wallet. There was no contract interaction or system error. The transaction followed standard Ethereum rules.

Why Address Poisoning Is Hard to Detect

Ethereum addresses are long and difficult to read. Many users check only the first and last characters. Attackers exploit this habit when creating fake addresses.

Transaction history often appears trustworthy. However, it can include unsolicited transfers from unknown sources.

These entries can mislead users who copy addresses without full verification.

Security tools can reduce risk, but user behavior remains critical. Hardware wallets, address books, and manual checks can help. Still, mistakes can happen during routine actions.

Ongoing Risks for Crypto Users

Address poisoning has increased as on-chain activity grows. Public transaction data allows attackers to study wallet behavior. Repeated transfers to the same address can increase exposure.

Exchanges and custodians often publish deposit addresses. Users may reuse these addresses for convenience. This practice can create predictable patterns visible to attackers.

The incident shows how small actions can carry large financial consequences. Ethereum transactions are irreversible once confirmed. The network processes instructions exactly as submitted.

Related Reading: ETH Holds $2,680 After Liquidation Flush-Key Levels Traders Are Watching

Broader Context of User Security

The Ethereum network functioned as designed during the transfer. There was no breach of Galaxy Digital systems. The loss occurred at the user level.

Security experts continue to warn against copying addresses from transaction history. Verifying the full address before sending remains essential. Bookmarking trusted addresses can also help.

As on-chain activity expands, similar cases continue to appear. The incident involving wallet 0xd674 adds to growing awareness of address poisoning risks.

The post $12.4M Gone: Ethereum Whale Tricked by Fake Galaxy Address appeared first on Live Bitcoin News.

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

How to earn from cloud mining: IeByte’s upgraded auto-cloud mining platform unlocks genuine passive earnings

How to earn from cloud mining: IeByte’s upgraded auto-cloud mining platform unlocks genuine passive earnings

The post How to earn from cloud mining: IeByte’s upgraded auto-cloud mining platform unlocks genuine passive earnings appeared on BitcoinEthereumNews.com. contributor Posted: September 17, 2025 As digital assets continue to reshape global finance, cloud mining has become one of the most effective ways for investors to generate stable passive income. Addressing the growing demand for simplicity, security, and profitability, IeByte has officially upgraded its fully automated cloud mining platform, empowering both beginners and experienced investors to earn Bitcoin, Dogecoin, and other mainstream cryptocurrencies without the need for hardware or technical expertise. Why cloud mining in 2025? Traditional crypto mining requires expensive hardware, high electricity costs, and constant maintenance. In 2025, with blockchain networks becoming more competitive, these barriers have grown even higher. Cloud mining solves this by allowing users to lease professional mining power remotely, eliminating the upfront costs and complexity. IeByte stands at the forefront of this transformation, offering investors a transparent and seamless path to daily earnings. IeByte’s upgraded auto-cloud mining platform With its latest upgrade, IeByte introduces: Full Automation: Mining contracts can be activated in just one click, with all processes handled by IeByte’s servers. Enhanced Security: Bank-grade encryption, cold wallets, and real-time monitoring protect every transaction. Scalable Options: From starter packages to high-level investment contracts, investors can choose the plan that matches their goals. Global Reach: Already trusted by users in over 100 countries. Mining contracts for 2025 IeByte offers a wide range of contracts tailored for every investor level. From entry-level plans with daily returns to premium high-yield packages, the platform ensures maximum accessibility. Contract Type Duration Price Daily Reward Total Earnings (Principal + Profit) Starter Contract 1 Day $200 $6 $200 + $6 + $10 bonus Bronze Basic Contract 2 Days $500 $13.5 $500 + $27 Bronze Basic Contract 3 Days $1,200 $36 $1,200 + $108 Silver Advanced Contract 1 Day $5,000 $175 $5,000 + $175 Silver Advanced Contract 2 Days $8,000 $320 $8,000 + $640 Silver…
Share
BitcoinEthereumNews2025/09/17 23:48
Step Finance Confirms $30M SOL Treasury Outflow After Hack

Step Finance Confirms $30M SOL Treasury Outflow After Hack

The post Step Finance Confirms $30M SOL Treasury Outflow After Hack appeared on BitcoinEthereumNews.com. A security incident at Step Finance has renewed concerns
Share
BitcoinEthereumNews2026/02/01 00:18
Trump Jr.-connected Thumzup Media buys 7.5 million Dogecoin as it expands crypto treasury

Trump Jr.-connected Thumzup Media buys 7.5 million Dogecoin as it expands crypto treasury

Earlier this month, Thumzup said it plans to set up 3,500 Dogecoin mining rigs by year's end through its acquisition of Dogehash.
Share
Coinstats2025/09/18 06:22