Crypto phishing uses fake websites, spoofed emails, malicious ads, and social media impersonation to steal seed phrases, exchange credentials, and approval signatures.

Verify URLs manually, bookmark official sites, and never sign wallet transactions prompted by unsolicited messages. Hardware wallet screens should be read carefully before confirming any action.

High-value holders are targeted persistently; assume that any urgent message about wallet security, airdrops, or account suspension is fraudulent until independently verified.

Phishing victims should preserve evidence and initiate confidential case review; fund recovery after phrase disclosure is rarely achievable.