13 Jan 2025

How to Secure Your Crypto Wallet with Revoke.cash?

How to Secure Your Crypto Wallet with Revoke.cash?

While token approval enhances the DeFi experience, it can also be a gateway to asset loss. To circumvent such risks, specialized tools like Revoke.cash have been devised.

On this page

DeFi offers users control over their data. However, along with the advantages of decentralization, this approach demands secure interactions within the network ecosystem from its participants.

In blockchain, where there is no central authority, the security of transactions is maintained through smart contracts and other technical measures. The risk arises from vulnerabilities that can be present in the contract code.

The Ronin Network hack is one of the most significant DeFi cyber-attacks, leading to the theft of over $625 million in ETH and USDC. This incident happened two years ago, but similar attacks continue to occur. For instance, in November 2023, the decentralized exchange KyberSwap was hacked for $46 million.

Before exploring Revoke.cash, let's review four prevalent fraud types in the DeFi ecosystem:

  • Seed Phrase Exposure: Scammers often use social engineering to trick users into revealing their crypto wallet's seed phrase. Once they acquire this critical information, they gain enduring access to the user’s assets. Regrettably, a wallet compromised in this manner is forever insecure.
  • Disguised ETH Transactions: Fraudsters cunningly request an “eth_sign” signature, camouflaging it amidst other function calls. Signing such a transaction leads to the irreversible loss of funds, though the wallet remains usable.
  • NFT Marketplace Deceptions: This type of scam involves tricking users into giving access to their NFTs, under the illusion of a sale or similar transaction.
  • Token Approval Flaw: Decentralized platforms use token approvals to lessen transaction fees and streamline user interactions. However, if these platforms are hacked, the approvals can be seized by hackers, leading to a heightened risk of asset theft.

What is Token Approval?

Token approval is a permission mechanism allowing decentralized applications (DApps) to move a specific amount of assets from a user's cryptocurrency wallet. It's frequently utilized in scenarios like token trading and NFT sales. For instance, to swap ETH for USDC on Uniswap, you must grant the platform permission to transfer your ETH.

The approve() function call. Source: revoke.cash

The approve() function call. Source: revoke.cash

Token approval is also essential in NFT interactions. For instance, to trade on NFT marketplaces like OpenSea or Blur, you must give permission to transfer your assets. The same applies to crypto lending where you use an NFT as collateral.

As token approvals are conducted on the blockchain, they are treated like transactions. To record them in the blockchain ledger, users need to pay a fee. DeFi applications often set a high limit for token approvals to save users from incurring this fee with each asset transaction.

This method streamlines interactions within DeFi, sparing users from unnecessary fees. However, it bears a risk: if the smart contract is hacked, a user's token approval may end up in a fraudster's hands, granting them access to the user's assets.

Risks of Token Approval

Smart Contract Vulnerability: The most significant risk in token approval lies in the potential hacking of the smart contract you've authorized. Even leading market players are susceptible to such breaches. For example, a breach in a SushiSwap smart contract in April 2023 led to users losing $3.5 million.

Phishing: A type of fraud where malicious applications masquerade as legitimate ones. This often targets decentralized exchanges (DEXs), token claim websites, and platforms offering bonuses. In token approval, phishing manifests in two ways:

  • Direct Approval to Fraudsters: Scammers coerce users into giving access to a smart contract that they control.
  • NFT Marketplace Listings: Using social engineering techniques, fraudsters trick users into signing off approvals for selling their NFTs at 0 ETH. 

To mitigate these risks, it's wise to regularly check the smart contracts to which you've granted access. This can be done through blockchain explorers or specific applications designed for this purpose, such as Revoke.cash.

An Overview of Revoke.cash

Revoke.cash: A Web3 Security Tool. Source: revoke.cash

Revoke.cash: A Web3 Security Tool. Source: revoke.cash

Revoke.cash is a web3 security tool aimed at safeguarding users from the potential risks associated with DeFi interactions. This project, initiated in 2019 by enthusiast Rosco Kalis, is presented as a browser extension.

Revoke.cash Features:

  • The capability to revoke token approvals.
  • Updating the approved token amount.
  • Alerts regarding potentially dangerous websites.
  • Verification of smart contracts that the user engages with.

This extension informs users about the specifics of operations whenever they intend to grant access to a decentralized application. Users can customize the notification settings, including alerts for token approvals, NFTs, hash signature confirmations, and potential phishing activities.

Revoke.cash is most frequently used for revoking or adjusting the amount of token approval, especially in situations like:

  • Engaging with a new DeFi application.
  • Discontinuing active use of a DEX.
  • Distrusting a particular platform.

There are circumstances, however, where maintaining token approvals is beneficial or necessary, such as when dealing with leading protocols like Uniswap or listing NFTs for sale, where token approval is a requisite.

Revoke.cash supports all EVM-compatible networks, encompassing Arbitrum, Polygon, Optimism, and others, as well as testnets like Goerly and Sepolia.

Testnets Supported by Revoke.cash. Source: revoke.cash

Testnets Supported by Revoke.cash. Source: revoke.cash

To withdraw token approvals using the Revoke.cash extension, follow these steps:

  1. Visit the Revoke.Cash website and connect your crypto wallet, like Metamask.
  2. Choose the network and the specific token for which you wish to withdraw approval.
  3. Select the “Cancel Permission” option and then confirm this transaction in your wallet.

Effectively, canceling means setting a new approval at a value of “0”. As such, you'll need a small amount of the network's tokens to cover the transaction fee.

Final Word

Security in the web3 space involves a comprehensive set of measures. Relying solely on Revoke.cash won't guarantee 100% safety, but it does help in significantly lowering the risk of potential asset theft.

Always keep your seed phrase confidential, engage only with trusted smart contracts, verify domains to avoid phishing, and spread your risks (using separate wallets for various activities). Prioritizing your security in advance is key to avoiding becoming a victim of fraud.

The content on The Coinomist is for informational purposes only and should not be interpreted as financial advice. While we strive to provide accurate and up-to-date information, we do not guarantee the accuracy, completeness, or reliability of any content. Neither we accept liability for any errors or omissions in the information provided or for any financial losses incurred as a result of relying on this information. Actions based on this content are at your own risk. Always do your own research and consult a professional. See our Terms, Privacy Policy, and Disclaimers for more details.

Articles by this author

Latest News

MORE
The Future of Crypto in 2025: Fidelity’s Predictions

The Future of Crypto in 2025: Fidelity’s Predictions

What’s next for the biggest cryptocurrencies in 2025? Fidelity Digital Assets analyst Chris Kuiper shares insights on how Bitcoin will navigate volatility, Ethereum will address scaling challenges, and stablecoins will adapt to evolving regulations.

13 Jan 2025
The Crypto Rollercoaster of 2024 — Wins and Woes

The Crypto Rollercoaster of 2024 — Wins and Woes

The crypto sector evolved at breakneck speed in 2024. With major wins and notable setbacks, it’s time to reflect on the year’s key developments and their implications for the future.

31 Dec 2024
OpenSea Token: Release Date and How to Qualify for the Airdrop

OpenSea Token: Release Date and How to Qualify for the Airdrop

The NFT marketplace OpenSea, a pioneer in the space for the past seven years, is expected to launch its native token in 2025. A significant portion of the tokens will likely be distributed through a retroactive airdrop—a common way to reward the community for their past activity and support.

30 Dec 2024
5 Most Exciting Token Launches to Watch in 2025

5 Most Exciting Token Launches to Watch in 2025

In 2024, we saw a number of hot airdrops and token launches, from AI-powered projects to the rise of memecoins. Now, as we head into 2025, the crypto space is set to expand even further with an increasing number of cryptocurrencies.

27 Dec 2024

Latest News Alt

MORE
Weekly Analysis of BTC, ETH, and the Stock Market (Jan 6, 2025)

Weekly Analysis of BTC, ETH, and the Stock Market (Jan 6, 2025)

An overview of BTC, ETH, XAUT, and S&P500 charts, along with the current cryptocurrency market dynamics.

06 Jan 2025
Weekly Analysis of BTC, ETH, and the Stock Market (Dec 30, 2024)

Weekly Analysis of BTC, ETH, and the Stock Market (Dec 30, 2024)

An overview of BTC, ETH, XAUT, and S&P500 charts, and the current cryptocurrency market dynamics.

30 Dec 2024
Weekly Analysis of BTC, ETH, and the Stock Market (Dec 23, 2024)

Weekly Analysis of BTC, ETH, and the Stock Market (Dec 23, 2024)

An overview of BTC, ETH, XAUT, and S&P500 charts, and the current cryptocurrency market dynamics.

23 Dec 2024

Might Be Interesting

MORE
Mining Farms Uncovered — How Crypto Is Mined at Scale

Mining Farms Uncovered — How Crypto Is Mined at Scale

As a cornerstone of the crypto industry, mining farms drive blockchain networks. But how do they work? Uncover the mechanics behind these cutting-edge hubs and their role in the crypto landscape.

07 Jan 2025
William Quigley, WAX/Tether: Stablecoins’ Role in Global Payments

William Quigley, WAX/Tether: Stablecoins’ Role in Global Payments

William Quigley, co-founder of WAX and Tether, firmly believes that stablecoins are more than a tool for traders—they’re the key to transforming the global economy. Already central to crypto trading and cross-border payments, their future potential is even more exciting.

04 Jan 2025
Why Blockchain Is Different from Traditional Databases

Why Blockchain Is Different from Traditional Databases

In the world of business and finance, information is everything. Traditional databases have been reliable tools for decades, but blockchain presents a groundbreaking alternative. What sets it apart, and could it lead to a paradigm shift?

03 Jan 2025
How Does Multisig Works and Protect Your Assets?

How Does Multisig Works and Protect Your Assets?

As threats to digital assets evolve, multisig technology provides a highly effective security layer. By requiring multiple signatures for transactions, it significantly reduces risks such as hacking and access loss.

02 Jan 2025
Crypto Price Gaps: Why Platforms Show Different Prices

Crypto Price Gaps: Why Platforms Show Different Prices

The crypto market has nuances you may not have noticed at first glance. For example, when you want to check the Bitcoin price, you probably Google it without thinking to compare the results. But when you monitor the market regularly and engage in trading, you notice the prices aren’t the same on all platforms.

24 Dec 2024
The Czech Republic and Its Crypto-Friendly Policies

The Czech Republic and Its Crypto-Friendly Policies

The Czech Republic is emerging as a crypto-friendly nation, recognizing cryptocurrencies as legitimate payment methods and encouraging their use in business. But its regulatory framework is still taking shape. Here’s how crypto is managed today.

23 Dec 2024

Opinions

8 Commandments for Crypto Exchange Users

8 Commandments for Crypto Exchange Users

While cryptocurrency exchanges offer many security features, they are still vulnerable to hacks, fraud, and other criminal activity. Remember, no online platform can guarantee 100% protection for your funds. Follow these eight key rules to reduce your risks. Rule #1: Don’t Believe in the Myth of Absolute Exchange Security Even the largest and most seemingly […]

12 Jan 2025
10 Key Investment Trends to Watch in 2025: Green Crypto, Regulations, and More

10 Key Investment Trends to Watch in 2025: Green Crypto, Regulations, and More

Donald Trump is back, Germany’s economy is in trouble, while U.S. economic indicators seem to have a robust momentum, and interest rates are sliding downhill. Sounds dramatic? It is. But 2025 isn’t all doom and gloom—it’s full of opportunities for investors who know where to look. Whether you’re a seasoned pro or someone still figuring […]

12 Jan 2025
MORE

Interviews

Dmytro Gordon and Volodymyr Nosov: A Sensational Interview

Dmytro Gordon and Volodymyr Nosov: A Sensational Interview

Volodymyr Nosov, CEO of Europe’s largest crypto exchange WhiteBIT, sat down with Dmytro Gordon, one of Ukraine’s most prominent journalists. The interview touched on Bitcoin, crypto, WhiteBIT, cars, keys to success, and business vision.

18 Dec 2024
WhiteBIT CEO: Standing Strong Against Russian Aggression

WhiteBIT CEO: Standing Strong Against Russian Aggression

In an interview with BTC-ECHO, Volodymyr Nosov, the founder and CEO of WhiteBIT, discussed the impact of Russian aggression on the crypto exchange’s business, how WhiteBIT stays a top competitor in the industry, and when he believes our financial system will be completely transformed.

04 Oct 2024
MORE