Gitcoin Subdomain Targeted by Frontend Attack with Phishing Script

Gitcoin Subdomain Targeted by Frontend Attack with Phishing Script

First seen 21 Jun 2026, 13:34 UTC BitgetWeexChaincatcherKucoin 84% similarity 48.9

Article Content

Browse articles
ThreatCluster

On June 21, 2026, Blockaid reported a front-end attack on the Gitcoin subdomain files.gitcoin.co. The attack involves a malicious code known as 'Eleven drainer,' which is designed to steal wallet assets from users. Blockaid has issued a warning advising users not to interact with the compromised website while investigations and repairs are underway. The exact scope of the impact is currently unknown, but the attack raises significant concerns about user security on the platform. No specific numbers or CVEs have been disclosed at this time. The situation is ongoing, and users are advised to remain vigilant.

Key Points: • A front-end attack on Gitcoin's subdomain has been detected, involving a phishing script. • The malicious code, dubbed 'Eleven drainer,' is aimed at stealing wallet assets. • Blockaid has warned users against interacting with the compromised website.

ThreatCluster AI How this analysis works

Timeline

2026-06-21
Blockaid detects front-end attack
Blockaid's monitoring system identified a front-end attack on Gitcoin's subdomain, involving malicious code for asset theft.
Bitget
2026-06-21
Blockaid issues user warning
Users are advised not to interact with the Gitcoin subdomain while the attack is under investigation.
Chaincatcher

Community

Browse all →

Tracked Entities in This Story