Polygon Discord Breach Hits Avalanche and ZKsync

Polygon Discord Breach Hits Avalanche and ZKsync
POLYGON 10

Avalanche Discord Server Compromised

On August 25, 2024, the official X account for Avalanche reported that its Discord server had been compromised. Users were advised not to interact with or click on any links shared within the server.

According to screenshots shared by members of the Avalanche Discord on X, attackers posted links to fraudulent “distribution” schemes for Avalanche (AVAX) tokens. These links falsely claimed that community members could claim free AVAX tokens.

Approximately one hour after the exploit was detected, Avalanche’s community lead, Ben Well, confirmed that the issue had been identified and resolved. He also noted that efforts were underway to restore the server to its normal state.

ZKsync Discord Server Also Targeted

Just an hour after the Avalanche Discord breach, the official Discord server for ZKsync was reportedly compromised. Hackers shared malicious links promoting a fake “round 2 airdrop” scheme, promising users free ZK tokens.

While ZKsync has not yet addressed the exploit on X, several team members have acknowledged the issue on Discord, advising caution.

Polygon Discord Breach Sets a Precedent

The attacks on Avalanche and ZKsync followed a similar breach on Polygon’s official Discord server, which occurred less than 48 hours earlier. In that incident, hackers also shared malicious links throughout the server.

Polygon’s Chief Information Security Officer, Mudit Gupta, confirmed the breach and advised users to avoid clicking on any links within the Discord channel until the situation had been fully addressed.

Protect Yourself from Similar Attacks

  • Avoid Clicking on Suspicious Links: Be cautious of any links shared in Discord servers, especially those promising free tokens or rewards.
  • Verify Official Announcements: Always check for updates from official channels or team members before taking any action based on information from Discord.
  • Report Suspicious Activity: If you encounter suspicious links or activity, report it to the server moderators and avoid engaging with potential scams.