Emerging Address Poisoning Attack on Bitcoin Blockchain, Casa Executive Warns
Jameson Lopp, co-founder and chief security officer of Bitcoin storage firm Casa, has warned against rising Bitcoin address “poisoning” attacks.In a Sunday blog post, Lopp cautioned Bitcoin holders, stressing the recent...
Archive context
Older archive item. Useful for background and entity history, but not a fresh market-moving signal.
Jameson Lopp, co-founder and chief security officer of Bitcoin storage firm Casa, has warned against rising Bitcoin address “poisoning” attacks.
In a Sunday blog post, Lopp cautioned Bitcoin holders, stressing the recent surge in attacks, where attackers mimic wallet addresses. An 18‑month blockchain study recorded nearly 48,000 suspicious transactions he wrote, adding that some victims have lost significant funds.
Lopp also emphasized that such attacks are “only economically feasible during low-fee environments.” This means that the low fees in Bitcoin’s blockchain fuel such scams.
Attackers Use Victim’s Transaction History for “Poisoning”According to Lopp’s findings, Bitcoin poisoning attack is similar to social engineering, where the attacker generates a Bitcoin address akin to the victim’s recently used addresses.
The attackers use brute force or trial and error in an attempt to guess or crack private keys. The perpetrator then deposits a small amount of crypto into that address.
“Then they ‘poison’ the target’s transaction history by sending the funds from this similar-looking address to the victim’s address.”
Victims may unknowingly copy a previously used address from their transaction history without realizing it’s the attacker’s spoofed address.
In January, pseudonymous Bitcoin developer Mononaut flagged “address poisoning dust attack,” cautioning users not to copy addresses from your transaction history.
address poisoning dust attack
be careful out there! don't copy addresses from your transaction history https://t.co/upRE493CCG pic.twitter.com/W5CdWlvvyW
According to Lopp, the first such transactions did not appear until July 7, 2023, which recorded 36 such transactions on block 797570.
“Then, all was quiet until block 819455, December 12, 2023, after which we can find regular bursts of these transactions up until block 881172, January 28, 2025, then there was a 2-month break before they started up again.”
Attack Has No Specific PatternFurther, Lopp highlighted that it is hard to see a specific pattern in the poisoning attack. “I suspect the attackers were only looking at addresses with recent activity in the past year or so.”
However, surprisingly, more than 12,000 targeted addresses had never spent funds. Additionally, most targeted addresses had fewer than 10 deposits.
It was clear that the attackers generally ignored addresses with balances under 1 BTC, he added.
Lopp cautioned Bitcoin holders to avoid relying on memory or recent transactions.
“Don’t trust addresses just because they appear in your transaction history – even from deposits,” he wrote. “Don’t reuse addresses, period! This remains a Bitcoin best practice for a multitude of reasons.”
The post Emerging Address Poisoning Attack on Bitcoin Blockchain, Casa Executive Warns appeared first on Cryptonews.
Why this matters
This bitcoin story adds another data point to the current market tape and is useful when read alongside nearby source coverage.
Original source
Read on CryptonewsRelated market context
DeFi hack attack: Three exploits snatch $11M in a single day
Crypto and DeFi projects continue to be hacked at a dizzying pace, and few days in recent weeks have been incident-free. That said...
Bitget freezes XRP withdrawals as 27M stolen tokens move
Bitget’s XRP withdrawal route was still disabled on Sept. 26, even as the exchange set Oct. 2 at 08:00 UTC for the last phase of i...
Crypto Hacks: Three Projects Hacked in One Day as Losses Hit Over $11M
Three crypto projects were attacked on September 24, suffering combined losses of more than $11M. Attackers drained around $1.8M f...
SEC’s Hester Peirce wants to end crypto’s KYC honeypots before stablecoin rules create more of them
US Securities and Exchange Commission (SEC) Commissioner Hester Peirce wants financial firms to stop stockpiling customer data aft...
SEC crypto FAQ addresses token buybacks, network upgrades and promises of profit
Promoting a network’s current uses generally would not create an expectation of profit, SEC staff said.
Bitget’s hack just got $36 million bigger, and now there’s a bounty on the stolen crypto
Bitget has raised the estimated value of assets taken in its Sept. 24 breach to $387.5 million as exchanges and security firms mob...