Crypto Scam Warning Signs
The patterns behind most crypto scams, plus an interactive triage checklist that explains which of your answers raise concern and what to read next.
Start from the problem you are trying to solve: protecting a wallet, judging whether something is a scam, checking a request before you sign it, securing an account, verifying a token or contract, or responding to an incident that has already happened.
Crypto security is mostly a small number of habits applied consistently. Transfers are final and there is no fraud department, so prevention carries far more weight than response.
These guides describe how attacks actually work and what to do about them. We do not accuse named companies of fraud without evidence, we do not invent statistics, and we never refer anyone to paid recovery services.
“How do I hold crypto without losing it to my own setup?” Keys, backups and the split between everyday and long-term storage.
“Is this offer, message or website a scam?” Recognising the patterns before anything is sent or signed.
The patterns behind most crypto scams, plus an interactive triage checklist that explains which of your answers raise concern and what to read next.
Why inbound 'support' is the most reliable red flag in crypto, and how to reach genuine support without ever trusting a contact that found you.
What a wallet drainer is, the approval or signature it needs from you, and the habits that stop it before the prompt appears.
Airdrop and giveaway scams rarely ask for a password. They ask for a signature, an approval, or a transfer first.
Long-form crypto fraud builds trust first and asks for money later. The platform is fake; the deposits are real.
“I am about to approve or sign something — what should I check?” The last point at which anything can be stopped.
A practical pre-signing workflow: what to read in the prompt, what approval scope means, and why a signature request is not always a transaction.
An approval is standing permission for a contract to move your tokens. Understanding that one sentence prevents a large share of wallet losses.
Two quiet attacks that redirect a transfer to an attacker's address, and the verification habit that defeats both.
“How do I stop someone taking over my exchange or email account?” Passkeys, second factors, SIM-swap defences and platform settings.
Passkeys, authenticator apps, security keys and SMS compared — plus SIM-swap defences and the account settings that limit damage.
“Is this the token, contract or site I think it is?” Checking identity and control before interacting.
A step-by-step procedure for confirming a contract address is the one you meant — and a clear account of what that does not prove.
The different mechanisms behind rug pulls, what each warning signal can and cannot tell you, and an investigation workflow you can actually run.
A repeatable verification routine — domain, publisher, contract, address, link and signature checks — before any transfer or connection.
“Something has already happened — what do I do in the next hour?” Containment, evidence and reporting.
A decision tree by what actually happened, then the ordered emergency checklist: contain, document, report.
Treat an exposed recovery phrase as a wallet that is already compromised. Move funds to keys the attacker has never seen.
A second scam aimed at victims of the first. No private service can reverse a confirmed blockchain transaction.
Where to file, what each agency covers, and the evidence to collect first. Reporting is a record, not a recovery service.
“What is happening right now?” We do not run a news feed. Instead, the pages describing live attack techniques carry a review date and are revised when the technique changes.
Stop sending funds, stop talking to the other party, and work through the emergency checklist in order. Nobody can reverse a confirmed transfer, so the goal in the first hour is containment and evidence.
Educational information only. Nothing here is financial, legal or tax advice. Read our data methodology for how our live figures are sourced.