NFT Theft: Fake Insiders Posing As IT ‘Experts’ Rack Up $1 Million–ZackXBT

Source Bitcoinist

NFT projects lost roughly $1 million in crypto over the past week when hackers posed as IT staff and struck at the heart of minting systems. The breach hit fan-token marketplace Favrr and Web3 initiatives Replicandy and ChainSaw, among others.

According to onchain investigator and cybersecurity analyst ZackXBT, the attackers pushed out mass batches of NFTs, drove floor prices to zero, then cashed in their haul before teams could react.

NFT: Hackers Slip Into Web3 Teams

Based on reports, the group quietly joined development squads under false identities. They gained insider access to minting contracts. Then they minted thousands of tokens and NFTs in moments.

The sudden flood crushed floor prices and let the thieves grab hot cash in minutes. It all unfolded in under a week, and about $1 million vanished from these projects’ treasuries.

Mass Minting Drops Prices

Favrr suffered one of the biggest hits. The thieves dumped tokens so fast the market couldn’t catch up. Replicandy and ChainSaw saw similar moves. At Replicandy, floor values hit zero almost instantly.

ChainSaw’s stolen crypto still sits inactive in wallets, waiting for launderers to stir it back into exchanges. ZackXBT pointed out that nested services then further obscured the money trail.

Funds Trace And Freeze Challenges

Onchain transfers moved funds through multiple exchanges and wallets. Analysts say tracing mixed outputs can take weeks. Exchanges must review huge logs.

That slows or even blocks law enforcement from locking down accounts. In the Coinbase data leak back in May 2025, about 69,461 customers had personal info exposed.

Contractors were bribed to hand over user data, leading to an extortion bid against the exchange.

Lessons From Broader Cyber Attacks

The NFT/Web3 insider episode echoes Ruby Sleet’s tactics. In November 2024, that group targeted aerospace and defense firms, then shifted to IT companies via fake hiring drives.

They used social engineering to plant malware and harvest credentials. Today’s blockchain and NFT hacks show that open and irreversible ledgers magnify mistakes. When insiders gain privileges, there’s often no undo button.

Security experts warn teams to rethink trust models. Zero‑trust approaches limit each engineer’s reach. Multi‑party approval gates could block sudden minting spikes.

Real‑time activity monitors can flag odd behavior right away. And code reviews paired with identity checks for every new hire help close gaps before they’re abused.

Featured image from Vecteezy, chart from TradingView

Disclaimer: For information purposes only. Past performance is not indicative of future results.
placeholder
Bitcoin Must Clear This Critical Cost Basis Level For Continued Upside, Analyst SaysIn a recent CryptoQuant Quicktake post, contributor Crazzyblockk highlighted key Bitcoin (BTC) cost basis zones that the leading cryptocurrency must clear – or avoid breaking below – to
Author  NewsBTC
4 Month 23 Day Wed
In a recent CryptoQuant Quicktake post, contributor Crazzyblockk highlighted key Bitcoin (BTC) cost basis zones that the leading cryptocurrency must clear – or avoid breaking below – to
placeholder
Solana (SOL) Holding Strong Above $150 — Breakout Zone In PlaySolana started a fresh increase from the $132 support zone. SOL price is now consolidating and might climb further above the $155 resistance zone. SOL price started a fresh increase above the $135
Author  NewsBTC
4 Month 25 Day Fri
Solana started a fresh increase from the $132 support zone. SOL price is now consolidating and might climb further above the $155 resistance zone. SOL price started a fresh increase above the $135
placeholder
BNB Price Gathers Strength — Upside Potential LoomsBNB price is gaining pace above the $632 support zone. The price is now showing positive signs and might aim for more gains in the near term. BNB price is attempting to recover from the $600 support
Author  NewsBTC
6 Month 24 Day Tue
BNB price is gaining pace above the $632 support zone. The price is now showing positive signs and might aim for more gains in the near term. BNB price is attempting to recover from the $600 support
placeholder
Tron’s 374% Profit-Taking Spree Uncovered—Here’s Who Was Behind ItOn-chain data shows Tron (TRX) observed a large profit-taking spike earlier in the month. Which type of holder was responsible for the move? Tron SOPR Saw A Huge Spike Earlier In The Month In a
Author  NewsBTC
6 Month 25 Day Wed
On-chain data shows Tron (TRX) observed a large profit-taking spike earlier in the month. Which type of holder was responsible for the move? Tron SOPR Saw A Huge Spike Earlier In The Month In a
placeholder
Stellar Price Forecast: XLM derivatives data hint at double-digit rally as bullish bets surgeStellar (XLM) is hovering around $0.242 at the time of writing on Thursday, having recovered nearly 6% so far this week. The derivatives data suggest rising investor confidence as XLM’s funding rate turns positive and the bullish bets reach their highest level in over a month.
Author  FXStreet
6 Month 26 Day Thu
Stellar (XLM) is hovering around $0.242 at the time of writing on Thursday, having recovered nearly 6% so far this week. The derivatives data suggest rising investor confidence as XLM’s funding rate turns positive and the bullish bets reach their highest level in over a month.
goTop
quote