CONTACT US

Twitter Scam Uses Verified Accounts to Steal More than $6.5 Million in Bored Ape Yacht Club (BAYC) and 300 Other NFT Token Types

[Dec 08, 2025]

Rexxfield

A person holds a smartphone displaying an incoming call from an unknown caller, with green and red buttons to accept or decline the call, in a dimly lit setting.

Rexxfield Investigations is currently working with Federal Law Enforcement in multiple countries to track down and unmask the hackers responsible for a series of NFT related phishing sites containing malicious smart contracts.

How The Phishing Scam Operates

The phishing scam first compromises one, or more, verified (blue check marked) Twitter accounts. The primary account is dressed to look like a well known NFT account and has a pinned post pointing people towards the fake NFT claim site. Secondary blue check marked Twitter accounts and a host of newly created Twitter accounts then tag individual Twitter accounts alerting them to the new Minting or Metaverse Land Claim opportunity.

Once on the phishing site, the victim is asked to connect their MetaMask Wallet to the site to claim the offered NFTs. The transaction is for a nominal amount (typically 0.003 ETH). When the contract is then executed 0.003 of ETH leaves the victims account and, at the same time, NFTs present in the victim’s wallet are transferred to a wallet controlled by the hackers.

Are you a NFT Phishing Attack Victim?

If you are a victim of these phishing hacks, you can submit your case below. We will get back to you after a brief case assessment. If you choose to engage Rexxfield for investigation and recovery, we handle everything including IC3 submissions, case preparation, Law Enforcement and prosecution liaison.