The founder of SlowMist, Cosine, wrote that Curve's current DNS hijacking problem has not been solved, and the attackers behind the scenes have also faked the wallet pop-up window to fish for mnemonic words, which is more subtle. This time, the problem again points to the domain name service provider iwantmyname, which caused a similar incident in 2022.
慢雾创始人余弦发文称,Curve当前DNS劫持问题仍未解决,幕后攻击者还通过伪造钱包弹窗钓取助记词,攻击手法更加隐蔽。此次问题再次指向域名服务商iwantmyname,该服务商曾在2022年也引发类似事件。