- SlowMist warns of a 2FA phishing scam on MetaMask.
- Fake 2FA alerts aim to steal seed phrases.
- Ethereum and EVM assets are at risk of theft.
SlowMist’s Chief Information Security Officer @im23pds issued a warning about a “2FA verification” phishing scam targeting MetaMask users, exploiting fake interfaces to extract seed phrases.
The scam underscores ongoing vulnerability in decentralized wallets, threatening Ethereum-based assets’ security, with major phishing losses down but risks persist for MetaMask holders and blockchain network users.
2FA Phishing Scam Targets MetaMask Users
The Chief Information Security Officer at SlowMist, @im23pds, reported a new phishing scam targeting MetaMask users. Attackers employ fake “2FA security verification” alerts to steal mnemonic phrases from users.
Involved parties include SlowMist and its security lead @im23pds. The scam impersonates MetaMask’s security alerts with fake countdown timers, soliciting users to enter seed phrases. Fake 2FA interfaces are key in this phishing attempt. @im23pds, Chief Information Security Officer, SlowMist, remarked that these scams include “countdown timers that create a sense of urgency” to trick users into compliance. TradingView.
The phishing scheme primarily impacts MetaMask wallets holding Ethereum-based assets. It puts Ethereum and related EVM assets at risk of theft, focusing on self-custodial wallet recovery phrases.
This incident highlights vulnerabilities in wallet security. There are no reported market shocks or institutional actions, but users must remain vigilant against phishing mechanisms threatening their crypto holdings.
Historical data indicates a reduction in phishing losses since 2025, though the threat persists. MetaMask continues aligning with security partners to enhance phishing defenses, yet Ethereum-based assets remain exposed.
Phishing attacks have decreased significantly, but stolen mnemonic phrases can lead to substantial financial loss. Blockchain security measures and user education remain critical in protecting digital assets against increasingly sophisticated scams. For comprehensive knowledge enhancement, enhance your crypto knowledge with educational resources.






