Crypto Payment Phishing
Pronunciation: KRIP-toh PAY-muhnt FISH-ing
Also known as: Cryptocurrency Payment Phishing
Definition
Crypto payment phishing is social engineering that impersonates a merchant, wallet, payment provider, colleague, or trusted service to make a victim disclose credentials, approve a malicious wallet request, or send cryptocurrency to an attacker-controlled destination. Common methods include lookalike domains, fake payment links, altered QR codes, fraudulent support messages, compromised email threads, malicious wallet-connection prompts, and urgent requests to replace an address.
Overview
Crypto payment phishing is social engineering that impersonates a merchant, wallet, payment provider, colleague, or trusted service to make a victim disclose credentials, approve a malicious wallet request, or send cryptocurrency to an attacker-controlled destination. Common methods include lookalike domains, fake payment links, altered QR codes, fraudulent support messages, compromised email threads, malicious wallet-connection prompts, and urgent requests to replace an address.
Related operational concepts include Crypto Payment Fraud, Crypto Checkout Manipulation, and Payment Link Access Control. They should remain connected through identifiers and evidence without being treated as the same payment state, control, or financial result.
The system should define whether a result blocks acceptance, delays fulfillment, restricts refund or payout, or only creates ongoing monitoring. In the same operational workflow, it should be interpreted alongside Crypto Payment Fraud , Crypto Checkout Manipulation , and Payment Link Access Control ; these terms describe related stages or controls but are not interchangeable.
In the same operational workflow, it should be interpreted alongside Crypto Payment Fraud , Crypto Checkout Manipulation , and Payment Link Access Control ; these terms describe related stages or controls but are not interchangeable. Those details prevent the term from becoming a vague label and allow merchants, developers, finance teams, and risk teams to apply the same meaning.
Governance should connect Crypto Payment Phishing to the original obligation, payment instructions, observed transaction, internal state, financial posting, and any fulfillment or refund. The decisive principle remains that phishing defenses must help users verify who requested the payment and exactly which address, asset, network, and authorization they are approving.
Key Takeaway
Phishing defenses must help users verify who requested the payment and exactly which address, asset, network, and authorization they are approving.
Sources
- Recognize and Report Phishing — Cybersecurity and Infrastructure Security Agency (2026-08-02)
- OWASP Application Security Verification Standard — OWASP Foundation (2026-08-02)
- Sanctions Compliance Guidance for the Virtual Currency Industry — U.S. Department of the Treasury, Office of Foreign Assets Control (2026-08-02)