forta-network / starter-kits

MIT License
64 stars 38 forks source link

FN address poisoning #396

Open Ivan1905 opened 9 months ago

Ivan1905 commented 9 months ago

Recently Scam sniffer released a dune dashboard with some address poisoning attacks. Attaching the thread here as well.

Crossed the poisoning addresses with Forta and unfortunately Forta did not detected any of them. Here the doc. Would you mind checking what's the issue here? The poisoning address is on column "E".

Ivan1905 commented 9 months ago

Adding another one which the scam detector detected late. Here when the target mistakenly sent the usdt to the scammer. By checking the history, the scammer tried in several opportunities to steal. The Forta alert was a few minutes late https://app.forta.network/alerts/0x8ac2bd3d73687ea41a3c41e091e13469921b31371006526dece62b85f961107e

Ivan1905 commented 9 months ago

Here a spreadsheet with addresses that executed poisoning attacks. The ones that have a "no" were not detected by Forta. All in all, low recall 16%

Ivan1905 commented 7 months ago

Here another one.

The bot did not flag this one