Swap security

Address poisoning around swaps: why history is a poor address book

Avoid copying lookalike recipient addresses planted in transaction history around wallet activity.

Address poisoning tries to make an attacker-controlled address look like a familiar destination in your transaction history. The dangerous step is copying that lookalike address into a later real transfer or swap recipient field.

MetaMask’s address-poisoning guidance describes this history-based deception. Similar opening and ending characters are designed to pass a quick visual check.

Use an independent address source

For your own account, use the receiving wallet’s verified receive view. For another recipient, verify the full address through a trusted channel. Do not treat a recent explorer entry as an address book.

Zero-value or unfamiliar transfer records can create misleading context. Seeing an address near a genuine transaction does not prove you previously sent meaningful funds to it.

Check the final request

Compare the full recipient in the wallet and on the hardware display where supported. When swapping, distinguish the router destination from the final output recipient; the latter can be encoded inside the call.

A successful small payment to the intended address does not validate a later address copied from a poisoned history entry. Verify each actual request.

If you already sent output

Read the confirmed receipt and identify the true recipient. Recovery depends on control of that address or an applicable service mechanism; the lookalike resemblance does not give you control. Preserve evidence and avoid anyone claiming they can reverse the transfer by “cleaning” your transaction history.

Sources & verification (3)

Source-check date is recorded in the article details. URLs are provided for manual verification. Use Copy to keep this page open.

  1. Address poisoning scams

    Lookalike addresses in transaction history.

    https://support.metamask.io/stay-safe/protect-yourself/wallet-and-hardware/address-poisoning-scams/
  2. Universal Router Commands

    Optional command failure and payment/cleanup behavior in Universal Router.

    https://developers.uniswap.org/docs/protocols/universal-router/concepts/commands
  3. Scam help & reporting | ethereum.org

    Response to scams, approval revocation and recovery limitations.

    https://ethereum.org/community/support/scams/

Continue reading

Verify the recipient on the device before approving a swap Swap output went to a different recipient: what can be recovered?