There are a lot of ways to improve our safety & security when using Discord. Some of the low hanging fruit that you can do yourself would be: using a strong password and adding 2fa (2 factor authentication) either through an app like Google Authenticator or by using hardware 2fa like a yubikey.
There are a lot of scammers out there and they are experts in Social Engineering and there are a variety of different methods to their scams.
The common methods are:
Phishing
This is the most common way scammers will try to trick you into stealing your assets, token or personal information through fake websites or messages.
Some other methods are: Cold DMing you about a potential job as a game tester or moderator with pay way too high for the role, DMing you about an airdrop, giveaway, or collab offer, impersonating an admin in a server to try to get you to send money to them, reaching out to setup an interview about your organization or project.
NEVER click on suspicious links or provide sensitive information to unknown sources.
Cloned Servers
Some will impersonate popular servers and use an expired invite link the team hasn't replaced. The most common attack vector with those will be the bots you interact with either a fake Captcha Bot or Collab.Land, usually.
- Fake Captcha Bot: They are going to spam others
- Fake Collab Land: Trying to steal your assets
The example here is the fake Collab.Land in the fake Persona server.
- The name isn't @Collab.Land
- They joined a lot earlier than this year, this is a brand new bot
Team Account is Compromised
When scammers take over a team account they will post about a last minute chance to claim an airdrop, claim tokens from a past mint, a collab with a big brand, or a surprise token launch. These are typically all the same.
Once they start tagging everyone in the server they will purge channels and/or remove the ability to chat in the server so people cant be warned. These signs and the spamming of the links should be a big red flag.
Masked Links
Masked links are a relatively new thing to come to Discord. You can hide a link and have it show something else by simply formatting your text properly. You can have a site displayed or even just text or emojis. This is a common vector for those cold dming you about trading or making an offer on a certain asset. You can hover over the link to verify that it is what it says it is.
Example: www.google.com
Shows google but redirects to our Opensea page.
Trust Your Instincts
Always trust your instincts and be cautious when interacting with unfamiliar users or encountering suspicious activity on Discord. If something seems too good to be true or raises red flags, err on the side of caution and don’t touch it. You'd rather be safe than sorry. We are always here to help if you think anything is suspicious.
Comments
Article is closed for comments.