Recently, we’ve been made aware of some of our users receiving phishing emails from entities pretending to be Magic Eden. Investigations identified an incident that led to the exposure of information for those that have used our third-party customer support system. Your trust is everything to us and we take this seriously. If your email address was impacted, you should have already received a message from us to that account detailing what occurred.
Here's the Good News:
- Isolated Incident: We checked access to other applications and systems to confirm this was an isolated occurrence. The only information at risk was data shared within customer support tickets. Transactions and your profile on Magic Eden are not impacted.
- On the technical side: We’ve expanded our existing MFA requirements to enforce FIDO2/WebAuthN for all external contractors, not just Magic Eden employees.
Staying Safe and Secure:
- Security First: Keep an eye out for messages impersonating Magic Eden or its employees. We will ONLY send you emails from the domain ‘magiceden.io’.
- Anti-Phishing Code: Don't forget to use our anti-phishing code feature. It's a handy tool to ensure you're always dealing with the real Magic Eden. You can set this up in the settings page on your profile.
- Never share your passwords or secret wallet phrases. Magic Eden will never ask you to do this.
- Never download attachments or sign transactions from email. Magic Eden emails do not include requests with links to download or prompts to sign wallet transactions.
We’re committed to keeping Magic Eden a safe place to trade and enjoy NFTs. Stay safe, and keep building the future with us.
The Magic Eden Team