Yuga Labs Affected by Mailchimp Data Breach, Warns Users of Phishing Attacks

Yuga Labs Affected by Mailchimp Data Breach, Warns Users of Phishing Attacks

Yuga Labs, a blockchain technology company popular for minting and curating non-fungible tokens (NFTs), has informed users that it was affected by the MailChimp data breach. Users are asked to be wary of phishing scams.

Yuga Labs Affected by Mailchimp Data Breach

Mailchimp, a popular mailing service, disclosed that on January 11th, unauthorized personnel accessed the company’s customer-facing tool, which offers customer support and account administration. 

In the second Mailchimp data breach in the last six months, Yuga Labs — creators of the popular Bored Apes Yacht Club collection — was listed among the 133 Mailchimp accounts affected.

In informing its users about the incident, Yuga Lab clarified that the Mailchimp account was only used for email communication. The company says it would never be used for mints, given the situation. 

Beware of Phishing Scams 

While there’s little to no chance of users losing their NFTs due to the breach, Yuga Labs has warned that the “limited number of people” affected by the leak should avoid phishing emails and not fall for surprise mints. Yuga Labs tweeted:

.tweet-container,.twitter-tweet.twitter-tweet-rendered,blockquote.twitter-tweet{min-height:261px}.tweet-container{position:relative}blockquote.twitter-tweet{display:flex;max-width:550px;margin-top:10px;margin-bottom:10px}blockquote.twitter-tweet p{font:20px -apple-system,BlinkMacSystemFont,”Segoe UI”,Roboto,Helvetica,Arial,sans-serif}.tweet-container div:first-child{
position:absolute!Important
}.tweet-container div:last-child{
position:relative!Important
}

function lazyTwitter(){var i=function(t){if(!t)return;var n=t.getBoundingClientRect();return 2500>n.top||-2500>n.top};if(!i(document.querySelector(“.twitter-tweet”)))return;var s=document.createElement(“script”);s.onload=function(){};s.src=”//platform.twitter.com/widgets.js”;document.head.appendChild(s);document.removeEventListener(“scroll”,lazyTwitter);document.removeEventListener(“touchstart”,lazyTwitter);console.log(“load twitter widget”)}document.addEventListener(“scroll”,lazyTwitter);document.addEventListener(“touchstart”,lazyTwitter);lazyTwitter()

Phishing is an increasingly worrying trend in the NFT space. Recently, an NFT blogger lost his “entire digital livelihood” from phishing. A Chinese DeFi blogger also lost assets worth $7.9 million from phishing.

On the Flipside

  • Mailchimp reports that while the accounts were maliciously breached, there is no prevailing evidence suggesting an export of data on the compromised accounts.

Why You Should Care

Only click on links from official sources to protect oneself from the growing phishing attacks on crypto. Avoid clicking links with offers too good to be true.

Back to Top
Close Zoom
Don't push your luck