🚨 Polymarket users got hit by a $2.94M phishing attack.
But here’s the key part:
This wasn’t a protocol exploit.
Attackers compromised a third-party vendor, injected malicious code into the frontend, and drained funds from connected wallets.
Polymarket says the issue is contained, and all affected users will be fully refunded. ✅
Scary reminder:
In crypto, the app you connect to can be just as risky as the smart contract itself.
Check out this epic detective work from @SpecterAnalyst for more data! - https://t.co/eLIfYzlAXY
+ Well done to @Polymarket for resolving issues that fast!
