See the Full Picture.
Published loading...Updated

Ethereum 'CrimeEnjoyors' Aren't Making Money From Exploiting Pectra's EIP-7702, Wintermute Says

  • On May 30, 2025, Wintermute reported that malicious Ethereum contracts called CrimeEnjoyors exploit the Pectra upgrade's EIP-7702 feature to target wallets.
  • This attack stems from EIP-7702, which allows temporary wallet delegation to smart contracts but also increases risks from reused malicious code.
  • Wintermute found CrimeEnjoyors authorized about 79,000 addresses with one address receiving 52,000 permissions, yet attackers failed to profit despite victim losses.
  • Wintermute developed CrimeEnjoyor warning code that injects “NOT SEND ANY ETH” alerts into verified malicious contracts to help prevent fund loss.
  • The event highlights Ethereum security concerns, prompting calls for user vigilance, contract verification, cautious signing, and improved wallet warnings.
Insights by Ground AI
Does this summary seem wrong?

17 Articles

All
Left
Center
2
Right

Wintermute's team detected a vulnerability associated with EIP-7702, which allows bad actors to subtract delegated ETH from committed contracts. Therefore, they developed alerts to notify the community that they can interact with any of these. *** Vulnerability detected after the Ethereum update. It is associated with EIP-7702, which allows attackers to automatically drain ETH from certain contracts. More than 12,000 transactions have already in…

Thoughtful as a decisive step towards account abstraction, the Pectra update already upsets the security balances on Ethereum. Introducing the standard EIP-7702, supported by Vitalik Buterin, it allows portfolios to behave temporarily as smart contracts. However, barely deployed, this innovation is diverted on a large scale to automate attacks. Far from eliminating the risks, the evolution of the protocol creates new, more subtle, ones that hack…

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 100% of the sources are Center
100% Center
Factuality

To view factuality data please Upgrade to Premium

Ownership

To view ownership data please Upgrade to Vantage

CryptoPanic broke the news in on Sunday, June 1, 2025.
Sources are mostly out of (0)