Mark Cuban loses nearly $900k on MetaMask fake

Mark Cuban believes he installed a counterfeit MetaMask wallet, potentially exploited by a scammer to pilfer his cryptocurrency

article-image

Joe Seer/Shutterstock, modified by Blockworks

share

“Shark Tank” billionaire Mark Cuban re-engaged in the crypto space over the weekend after months of inactivity, only to fall victim to a hack.

One of the tech mogul’s crypto wallets saw losses of about $870,000 across various cryptocurrencies. 

However, he was alerted after on-chain sleuths noticed his wallet was being unusually drained, thus preventing further losses.

An X user identified as WazzCrypto was the first to draw attention to the transfer, raising concerns about its suspicious nature late on Friday.

After Cuban became aware of the purported attack, he transferred $2 million worth of USDC to Coinbase.

He confirmed the hack in response to DL News, stating “someone one got me for 5 ETH.”

Cuban believed someone must have been tracking his activity, explaining that he came to use MetaMask for the first time in months.

He suspected that he downloaded a counterfeit version of the widely-used browser extension MetaMask cryptocurrency wallet.

He was reportedly looking up stablecoin provider Circle, then mistakenly downloaded what he thought was MetaMask.

Cuban mentioned that the hack took place while he was attempting to clean up his account using his phone.

“MetaMask crashed a couple times. I just stopped. Then you emailed me. So I locked my NFTs on OpenSea. Transferred all my Polygon in the account,” Cuban reportedly told the outlet.

He clarified that only the account that was hacked had any losses, and his other accounts remained unaffected.

Blockworks has reached out to Cuban for comment.

Cuban has earlier expressed keen interest in cryptocurrencies and blockchain tech, showcasing a blend of enthusiasm and caution. 

In 2019, he announced that his NBA team would accept bitcoin as payment for tickets and merchandise, marking a significant toward integrating crypto into the mainstream.

News analysis by Macauley Peterson

Proper self-custody of crypto assets is a responsibility. When downloading any browser extension — whether or not it is a wallet — one should check that the publisher information is accurate. Typically, a legitimate extension will have many thousands or millions of downloads. 

In the case of MetaMask, the real extension is published by metamask.io and has over 10 million downloads.

For Cuban to have been victimized in this way, he would have had to import a seed phrase into the fake extension, thus revealing his private key to scammers.

It is paramount to take care when entering a seed phrase to import a wallet. Only do so when required and if you are sure the application is legitimate.

Using a hardware wallet compatible with MetaMask would have protected Cuban from this risk, since there is no seed phrase to import. If requested by an extension, that would be a clear sign that it was counterfeit.

Correction Sept. 18, 2023 at 12:33 pm ET: Clarified the headline that the exploit was effectuated by a fake MetaMask, not the actual wallet software.


Don’t miss the next big story – join our free daily newsletter.

Tags

Upcoming Events

MON - WED, MARCH 18 - 20, 2024

Digital Asset Summit (DAS) is returning March 2024. What you can expect: And more! Don’t miss out on the opportunity to be in the room when the future of crypto is decided. Join us and help shape the future of our […]

recent research

Research report - cover graphics-2.jpg

Research

Base has doubled-down on its commitment to the Superchain vision, has shown early signs of success with nearly $400M in TVL, and has become home to novel dapps such as friend.tech which has seen significant traction.

article-image

Certain creditors could be repaid sooner, with one hedge fund exec telling Blockworks it expects a payout by the end of the year

article-image

Busan is South Korea’s second largest city with a population around 3.4 million

article-image

Cyprus granted eToro crypto registration, setting the groundwork for the company to operate crypto services post-MiCa rollout

article-image

Sponsored

These are the best tools and practices you can leverage to defend against crypto market volatility

article-image

The agency alleges around 1,160 customers used the margin product, losing about $8.35 million since Oct. 2021.

article-image

On Thursday, the Securities and Futures Commission issued a statement disavowing any communication with JPEX saying that the platform is unlicensed