Bonk.fun domain hijacked in wallet-draining attack

Hackers hijacked Bonk.fun’s domain, deploying a wallet-draining phishing prompt. Only users who signed a fake message were affected. Losses are still being assessed, but swift warnings limited the impact.

Hackers compromised the domain of Bonk.fun, a Solana-based meme coin launchpad, by breaching a team account. They deployed a wallet-draining phishing prompt on the website, targeting users who signed a fake terms-of-service message after the breach. This allowed attackers to drain connected crypto wallets. Following the incident, urgent warnings were issued on social media, advising users not to interact with the compromised site. Previous users and those trading via third-party terminals were reportedly unaffected. At least one user reported a loss of $273,000, though the total financial impact is still unknown. Swift detection and widespread community alerts helped limit the damage. The incident underscores ongoing security risks in the crypto sector, particularly related to phishing and domain hijacking. The Bonk.fun team is investigating and has yet to disclose the full extent of user losses.

Related Tokens

Related News