Cointime

Download App
iOS & Android

How To Protect Yourself From NFT Scams

Validated Venture

The crypto ecosystem has rapidly expanded in recent years, with NFTs (“non-fungible tokens”) emerging from a niche technology to a booming market for digital collectables, empowering and democratizing the creator economy. From Bored Apes to NBA Top Shot, NTFs demonstrate not only a compelling mainstream use-case for blockchain technology, but also represent a new era for creators in the digital space, sweeping across art, music, and sports.

But with the rise of NFTs — and the potentially lucrative opportunities for digital collectables — comes the risk of fraud, scams, and theft.

The best way to protect yourself from these kinds of scams is to learn to spot them — and then stay far, far away. Which is why we created this guide. 

So what are some of the common threats? In this report, we’ll go over:

  • Phishing scams
  • Plagiarized listings 
  • Exit scams, or “rug pulls”
  • “Dust attacks”

Phishing scams

Phishing is one of the most common scams. This occurs when attackers send malicious links on various applications and platforms, including Discord, Telegram, Whatsapp, Facebook, and Instagram. The link often brings the victim to a fake NFT minting page, which contains a smart contract that can allow the scammer to drain the victim’s wallet, if signed. This type of scam has many variations, including instances where an official Discord of an NFT project becomes compromised, allowing exploiters to use the official channel to broadcast their malicious "honey pot" link.

Discord scams arise when hackers gain admin-level access to a server (as described above), or by DM-ing members of the Discord community. In other cases, fraudsters will purchase authentic looking domain names, including ENS addresses, and run Google search paid advertising campaigns against it to drive traffic to a fake URL containing a malicious smart contract. In all cases, the goal of a phishing attack is to convince the unsuspecting victim that a fake malicious link is a real one.

How to avoid: Never click on suspicious links, attachments, or pop-ups. Always verify URL domain names, email addresses and social media handles to ensure authenticity. Be vigilant about fake ads and fraudulent email addresses purporting to be customer support. Do not share your seed phrase, credentials or private keys with anyone. Use strong passwords and enable two-factor verification.

Plagiarized listings

Fraudsters have been known to create plagiarized, or fake, websites resembling popular NFT marketplaces or minting sites, purporting to be the official home of a legitimate project, hoping to confuse users into buying them. In some instances, these fake NFT pages misrepresent the relationship the fraudulent page’s creator has with the legitimate NFT page. OpenSea recently said that more than 80% of items created using their shared storefront contract were plagiarized works, fake collections, or spam.

How to avoid: Always confirm verified accounts, identities and website URLs of NFT marketplaces. Look for verification checkmarks on sellers’ social media and Discord accounts. If you’re still in doubt, reach out to the artist or seller on social media to confirm the authenticity of a potential transaction. Don’t rush into purchasing an NFT until you’ve confirmed it is genuine.

Exits scams (also known as “rug pulls”)

Rug pulls are notorious in the NFT space. Commonly referred to by the shorter “rug,” these are scams in which a project’s founder (or founders) market a venture’s purported purpose without any intention of seeing the goals to fruition. Ultimately, the fraudsters raise funds, commonly through NFT mints, and take off with the money (aka “rug pull”), without any attempt to develop the project.

Big Daddy Ape Club is a recent example. The developers raised more than 9,000 SOL before abandoning the project. The pseudonymous nature of blockchain developers, in conjunction with irreversible transactions, create strong incentives for scammers to try to get away with theft. Exit scams can also be subtle — instead of immediately abandoning the project, the developers will “move the goalpost” around the expectations of what will be done with the money raised. 

There are generally three phases to these scams:

  • In the first phase, the developers will raise money through an NFT mint, promising to accomplish a variety of objectives without any intention to do so. 
  • In the second phase, the developers often change timelines and core project initiatives, doing anything that would push out milestones and extend the project’s timeline further and further out. 
  • In phase three, once initial interest in the project subsides, funds raised in phase one are moved into personal wallets, often using mixers to tumble and obfuscate stolen funds.

How to avoid: Research the background of the teams behind NFT projects on social media platforms like Linkedin and Twitter. Even anonymous artists and developers can be well known and trusted by the crypto community, but it is still important to closely review social-media follower counts and engagement. Examine a project’s road-map and consider whether it is realistic. If possible, leverage the wisdom of the crowd by seeing what veterans of the NFT community think of the project, and whether it has received any verifiable noteworthy endorsements from individuals or organizations.

Dust attacks

A dust attack occurs when a victim mints a legitimate NFT, but then finds a random, new NFT in their wallet. If the victim interacts with this unknown NFT, including listing it for sale, they may be signing a smart contract that results in their wallets being drained. Unfortunately, this scam does not only happen to popular NFT project minters. Bad actors also send malicious NFTs to random wallets in the hope of catching new users unaware.

How to avoid:  

Monitor your wallet as much as possible. If you do find an unknown NFT in your wallet, do not interact with it in any way.

Read more: https://www.coinbase.com/learn/wallet/how-to-protect-yourself-from-nft-scams

Get the latest news here: Cointime channel — https://t.me/cointime_en

NFT
Comments

All Comments

Recommended for you

  • Trump Threatens to Destroy Iranian Power Plants if Strait of Hormuz Not Opened

    March 20 - Trump stated that if Iran does not fully open the Strait of Hormuz within 48 hours, the United States will strike and destroy multiple Iranian power plants, starting with the largest one. (Jins10)

  • ETH Drops Below $2100

    Market data shows that ETH has fallen below $2100, currently trading at $2095.44. It has experienced a 24-hour decline of 2.47%. The market is experiencing significant volatility, so please manage your risk accordingly.

  • BTC Drops Below $69,000

    Market data shows that BTC has fallen below $69,000, currently trading at $68,955. The cryptocurrency has seen a 2.31% decrease in the past 24 hours. The market is experiencing significant volatility, and investors are advised to implement risk control measures.

  • BTC Drops Below $70,000

    Market data shows that BTC has fallen below $70,000, currently trading at $69,988.17. It has experienced a 0.74% decrease in the past 24 hours. The market is experiencing significant volatility, so please manage your risk accordingly.

  • Golden Morning News | Key Overnight Developments on March 22

    9:00 PM - 7:00 AM Keywords: Iran, US Dollar, Strait of Hormuz 1. BofA: Maintains a medium-term bearish view on the US Dollar. 2. Israeli Defense Minister states that strikes against Iran will intensify in the coming week. 3. Iranian Armed Forces announce significant actions being taken in the Strait of Hormuz. 4. US media reports that Trump's team is developing strategies for potential peace talks with Iran. 5. Analysts: US SEC's cryptocurrency guidance marks the "end of an era" for Gensler. 6. British media: Over 20 countries declare readiness to contribute to ensuring safe passage through the Strait of Hormuz. 7. Cryptocurrency companies lay off hundreds of employees within weeks, attributing it to a weak market and powerful AI.

  • US Media: Trump Team Strategizing for Potential Iran Peace Talks

    According to the website AXIOS, a US official and an informed source revealed that after three weeks of war, the Trump administration has begun preliminary discussions on the next phase and the possible form of peace negotiations with Iran. US President Trump stated on Friday that he is considering a "phased end" to the war, but US officials indicated that the fighting is expected to continue for another two to three weeks. Meanwhile, Trump's advisors hope to begin preparing for diplomatic mediation. Sources revealed that Trump's envoys Kushner and Wittcoff are participating in discussions regarding potential diplomatic avenues. Any agreement to end the war must include the reopening of the Strait of Hormuz, addressing Iran's enriched uranium stockpile, and reaching a long-term agreement on Iran's nuclear program, ballistic missiles, and support for regional proxies. Other sources also revealed that although Egypt, Qatar, and the UK have all conveyed messages between the US and Iran, there have been no direct contacts between the US and Iran in recent days. Egypt and Qatar have informed the US and Israel that Iran is interested in negotiations, but the conditions are very tough, with Iran's demands including a ceasefire, guarantees against future wars, and reparations.

  • BTC Surges Past $71,000

    Market data shows that BTC has broken through $71,000, currently trading at $71,007.92. It has seen a 1.93% increase in the last 24 hours. The market is experiencing significant volatility, so please manage your risk accordingly.

  • Golden Evening News | Key Developments on March 21st

    12:00-21:00 Keywords: Coinbase, Iran, OpenAI, James Wynn 1. Citigroup: Bitcoin could reach $165,000 this year. 2. Iranian Foreign Minister states the pursuit of a complete end to the war, not a temporary ceasefire. 3. OpenAI plans to nearly double its workforce to 8,000 employees by the end of the year. 4. James Wynn returns to HyperLiquid, shorting Bitcoin with 40x leverage. 5. Tim Cook responds to OpenClaw driving Mac Mini sales: Neural Engine added ten years ago. 6. Coinbase's asset management arm launches tokenized shares of a Bitcoin fund, accelerating its asset tokenization strategy.

  • Polymarket to Announce Major News Next Monday, Potentially Related to Token Launch or Funding

    March 21st news: A member of the official Polymarket team, Mustafa, posted on X stating that major news will be announced next Monday. Due to the inclusion of a coin emoji in the tweet, the community speculates that the significant news may be related to funding or a token launch. Previously, it was reported that prediction market platforms Kalshi and Polymarket were in discussions with potential investors for a new round of financing, with both targeting valuations of approximately $20 billion. Kalshi has recently completed a new round of financing exceeding $1 billion, reaching a valuation of $22 billion, doubling its valuation from the previous round in December last year, which was $11 billion. Sources familiar with the matter revealed that this round of financing was led by Coatue Management, and Kalshi's current annualized revenue is $1.5 billion.

  • Midday Briefing | Key Updates for March 21

    7:00 AM - 12:00 PM Keywords: Zedxion, Gold, Galaxy Digital, US SEC 1. UK Proposes Revoking License for Crypto Exchange Zedxion for Allegedly Facilitating Funding for Iran. 2. Gold Records Largest Weekly Drop in 43 Years. 3. Sources: Trump Administration Developing Plan to Seize Iranian Nuclear Material Reserves. 4. CryptoQuant Analyst: Galaxy Digital Suspected of Selling Approximately 700 BTC. 5. Galaxy Head of Research: New SEC Rules Reshape Digital Asset Regulation, Providing Clear Secondary Market Channels. 6. Claude Code Launches Cloud-Based Scheduled Tasks: Automates PR reviews, dependency upgrades, no local execution needed. 7. World Team Suspected of Conducting OTC Trade with an Entity, Sending 117 Million WLD.