DeFi
Don’t Interact With Cryptocurrencies Right Now — TradingView News
As Squarespace domain vulnerability threatens the decentralized finance (DeFi) space with phishing attacks, Web3 professionals have shared their advice on what users and affected individuals could do amid the attacks.
On July 11, security researcher ZachXBT shared a Telegram post warning the community to stay away from the Compound Finance website, which redirected to a phishing site. The DeFi protocol was the first to be hacked due to this vulnerability.
Following this, the Celer network announced that it had also been attacked, but it managed to thwart the attempt.
Meanwhile, DefiLlama developer 0xngmi shared a list of domains vulnerable to the same attack vector. The list included over 100 protocols, including Polymarket, dYdX, and Pendle Finance.
Do not interact with cryptocurrency for the next few days
CoinGecko founder Bobby Ong said the attack came from Squarespace’s domain registrar. The executive explained that after Google sold its domain business to Squarespace, two-factor authentication (2FA) was removed due to the forced migration of domains.
This has left the domains vulnerable. According to Ong, the community should wait until the issue is resolved before interacting with crypto again. “The best thing to do is not to interact with crypto and rest for the next two days until everything is resolved,” Ong added.