SlowMist, a renowned blockchain security company, has recently exposed a sophisticated crypto scam targeting users through physical transactions involving USDT.

This fraud leverages a deceptive modification of Ethereum node Remote Procedure Calls (RPC).

New Crypto Scam Uncovered

The crypto scam operates by first gaining the trust of unsuspecting users. The fraudster persuades the target to download the legitimate imToken wallet, then sends 1 USDT and a small amount of ETH as bait.

The trap is set when the scammer convinces the user to switch their ETH RPC URL to a node controlled by the scammer. This manipulated node displays a falsified USDT balance, misleading the user into believing they have received substantial funds.

Unaware of the deceit, the user, upon attempting to transfer out miner’s fees to cash out the USDT, discovers the scam only after the funds fail to materialize, and the scammer has vanished.

“The cunning aspect of such scams lies in exploiting psychological weaknesses of users. Users often focus only on whether funds have been credited to their wallets, overlooking potential risks. Scammers take advantage of this trust and negligence, using believable tactics such as transferring small amounts of money to deceive users,” analysts at SlowMist said.

The underlying technology abused in this scam, RPC, is essential for interacting with blockchain networks. It allows users to check balances, create transactions, or engage with smart contracts. Typically, wallets connect to secure nodes by default.

However, connecting to an untrustworthy node can result in malicious alterations to displayed balance and transaction details.

Further investigation revealed that the scammer’s address transferred 1 USDT to three different addresses. All of these previously involved in similar fraudulent activities. This address is also linked to trading platforms and flagged as associated with pig butchering scammers.

SlowMist advises cryptocurrency users to maintain a high level of skepticism and enhance protective measures to guard against such cunning financial schemes.


