Hackers exploited numerous discord servers, including that of BAYC. The attackers exploited a new update to the ticket tool discord bot to include phishing links across several servers.

The Increasing Number Of Stolen Nfts

Following the attack, the hackers made away with several high-value NFTs. In the early hours of April 1, hackers exploited the discord servers of BAYC, doodles, and other important NFT collections, making the NFT ecosystem confused. The bored ape server sent a message through its server at 6.20 UTC notifying users of a new NFT collection titled ‘mutant ape kennel club’ and included a fake minting link.

Users who weren’t aware that the minting link was fake clicked on the link, which enabled the hacker to steal their NFTs from their wallets. Almost at the same time, the attacker also discovered and exploited a loophole in a popular discord bot to hack servers and post links in official channels without requiring the permission of the server admin.

The fake discord message. Source: CubedMeta

The attacker also sent a lookalike message to the doodles discord server, notifying them about a new ‘genesis mint,’ which is limited in supply. However, the number of users who clicked the phishing link on the doodles discord server was significantly less than those on the BAYC discord message.

📰 Also read:  How to Build an AI Trading Bot Using ChatGPT - A Comprehensive Guide

Otherwise, the hacker would have also stolen the NFTs of many of the discord users as he did with the BAYC users. Fortunately, the BAYC team got wind of the attack quickly enough and tweeted to that effect. Part of the tweet reads: “there was a brief compromise on our discord webhook. We put out this notice immediately after we discovered it. However, note that we aren’t doing any April fools stealth airdrops.”

An Insider Was Involved – DAPE Co-Founder

NFT advocate and one of DAPE founders (SerpentAU) opined that the hack on the popular discord captcha bot resulted in the server compromise. SerpentAU alleged some insider collaborators who gave insights to the hacker. However, BAYC has since confirmed that it was a ticket tool bug that enabled the attacker to exploit the servers.

The Ticket Tool official Twitter account reacted to SerpentAU’s allegation stating that they have reversed the upgrade that resulted in the bug. A PeckShield security report states that the hacker stole two Doodle NFTs and one NFT each of Bored Ape and Mutant Ape. Multiple data confirmed that the attacker had sold all the stolen NFTs.

An Unending Issue

This breach isn’t the first and would likely not be the last unless urgent measures are taken to resolve the many cases of compromised discord servers. Two months ago, a hacker exploited the Doodles discord server and posted phishing links, through which many users lost their doodles NFTs.

📰 Also read:  Stablecoin Regulatory Proposal Gains Fresh Cross-Party Support Among Senators

Nevertheless, it is not only discord that has been the victim of cases of NFTs losses to hackers. Opensea users were also exploited through a phishing email scam, with users losing more than $4m worth of NFTs, including the collections of BAYC and Azuki.


At Tokenhell, we help over 5,000 crypto companies amplify their content reach—and you can join them! For inquiries, reach out to us at info@tokenhell.com. Please remember, cryptocurrencies are highly volatile assets. Always conduct thorough research before making any investment decisions. Some content on this website, including posts under Crypto Cable, Sponsored Articles, and Press Releases, is provided by guest contributors or paid sponsors. The views expressed in these posts do not necessarily represent the opinions of Tokenhell. We are not responsible for the accuracy, quality, or reliability of any third-party content, advertisements, products, or banners featured on this site. For more details, please review our full terms and conditions / disclaimer.

📰 Also read:  Stablecoin Regulatory Proposal Gains Fresh Cross-Party Support Among Senators

Avatar photo

By Shelly Melancon (Switzerland)

Shelly is a cryptocurrency enthusiast from Switzerland, she bought her first crypto in 2015 when it was way less popular then it is today and since 2017 she has been writing about cryptocurrency for online news portals. Shelly is the newest addition to the Tokenhell team, she writes mostly news and reviews related articles , stay tuned to her posts to stay up to date with the crypto world.

Leave a Reply

Your email address will not be published. Required fields are marked *

Skip to content