Scam Alert: MetaMask Wallet Discovers Critical Security Vulnerability

A scam Twitter account with 22.2K Twitter followers warn users about the critical security issue faced by the MetaMask protocol.
By Varinder Singh
Updated August 2, 2025
Pump Fun Hacker Nabbed In London, Makes Troubling Revelation

Scams related to crypto wallet and gateway MetaMask are on the rise amid developments including the Ethereum Merge and Cardano’s Vasil hard fork. The scam Twitter account “@MetaMaskUpdates” on Wednesday warned users about a critical security issue with the MetaMask protocol. It claims the security issue allows attackers to withdraw assets from any user’s wallet without a password or recovery phrase. Also, it advised users to immediately update MetaMask to mitigate issues and secure their funds.

Advertisement
Advertisement

MetaMask Scam on Critical Security Issue

The scam Twitter account uses the name of Jen Luker, security project manager of MetaMask Wallet, to warn users about the critical security issue faced by the protocol. It claims users failing to update the MetaMask app or web software risks losing all assets on their MetaMask wallet.

CoinGape team discovered that the fake Twitter account has 22.2K Twitter followers and retweeted several tweets from the original MetaMask’s Twitter account. The link mentioned on the Twitter account and the website has security risks and misspellings. Also, links on the website are found to be broken. Users are recommended to be alert.

It makes users believe that MetaMask received over 50,000 individual complaints reporting assets, coins, and NFTs stolen from their wallets. Users, including MetaMask employees, reported a widespread breach in the MetaMask protocol.

“Earlier this month, we were made aware of an exploit which enables bad actors to abuse MetaMask’s identification protocol and withdraw all assets from user wallets without having any access to their password or recovery phrase.”

The scam also detailed how attackers misused two functions within the MetaMask extension code to withdraw any MetaMask user’s assets. However, the security team has developed an update to patch this critical vulnerability. As attackers are actively exploiting the issue, all users are required to immediately update their MetaMask extensions.

Advertisement
Advertisement

Rising Scams Amid Important Crypto Developments

Scams seem to have increased amid the Ethereum Merge and Cardano’s Vasil hard fork updates. Blockchain security platform PeckShieldAlert has also warned users about a MetaMask airdrop scam on September 22.

Recently, Indian crypto exchange CoinDCX’s Twitter account was compromised and exploiters shared links to a fraudulent XRP Giveaway. It happened as the XRP price skyrocketed amid rising positive sentiments regarding Ripple’s win against the SEC.

Advertisement
Varinder Singh
Varinder has over 10 years of experience and is known as a seasoned leader for his involvement in the fintech sector. With over 5 years dedicated to blockchain, crypto, and Web3 developments, he has experienced two Bitcoin halving events making him key opinion leader in the space. At CoinGape Media, Varinder leads the editorial decisions, spearheading the news team to cover latest updates, markets trends and developments within the crypto industry. The company was recognized as Best Crypto Media Company 2024 for high impact and quality reporting. Being a Master of Technology degree holder, analytics thinker, technology enthusiast, Varinder has shared his knowledge of disruptive technologies in over 5000+ news, articles, and papers.
Why trust CoinGape: CoinGape has covered the cryptocurrency industry since 2017, aiming to provide informative insights to our readers. Our journalists and analysts bring years of experience in market analysis and blockchain technology to ensure factual accuracy and balanced reporting. By following our Editorial Policy, our writers verify every source, fact-check each story, rely on reputable sources, and attribute quotes and media correctly. We also follow a rigorous Review Methodology when evaluating exchanges and tools. From emerging blockchain projects and coin launches to industry events and technical developments, we cover all facets of the digital asset space with unwavering commitment to timely, relevant information.
Investment disclaimer: The content reflects the author’s personal views and current market conditions. Please conduct your own research before investing in cryptocurrencies, as neither the author nor the publication is responsible for any financial losses.
Ad Disclosure: This site may feature sponsored content and affiliate links. All advertisements are clearly labeled, and ad partners have no influence over our editorial content.