There were some red flags on Galxe when their DNS record was compromised.
This browser extension would have made the risks much more obvious.
Here's how it works: 🧵👇🏻
This extension may just save your wallet from an unsuspecting hack.
Introducing: Pocket Universe
This extension helps you to visualise what you're signing.
💡 What's more, you are insured for up to $2,000 if you get hacked.
Download it here:
join.pocketuniverse.app/ref/XQZY
Here's how this extension could have saved your wallet during the Galxe hack:
When using Galxe, you may need to sign in to the platform.
This appears as a gasless signature, mainly to prove you’re not a bot.
Pocket Universe would show the signature like this.
However, it looked different when the Galxe website was compromised:
The fake Galxe site requested you to sign a token approval.
This is how a popup from Pocket Universe would look like instead.
@PocketUniverseZ gives you a clear indication that something is off.
The next step is to verify the smart contract:
I usually do this with @DeDotFi's Scanner
https://de.fi/scanner
If we pasted the smart contract address during the Galxe hack here, it will come up with some red flags.
Instead, @PocketUniverseZ would show a verified smart contract from Galxe like this (next tweet):
The contract would be verified.
What's more, @PocketUniverseZ shows that you'll be insured if you interact with this contract.
There are a few extensions that have this same feature:
❍ @stelolabs
❍ @_joinfire
However, I really like @PocketUniverseZ as it makes transactions super clear and I know what I'm signing.
I hope you enjoyed this thread!$