Image Credits:Fractal

Justin Kan’s NFT platform suffers rocky debut as scammer makes off with $150K in user funds

Despite billions in VC investment, many web3 crypto platforms are still pretty hostile places for users new to the crypto world.

Case in point, today Justin Kan’s NFT platform Fractal suffered a security breach when a scammer hacked the announcement bot for the startup’s Discord which sent out a fraudulent link to the platform’s more than 100,000 users, urging them to pay up for a new NFT. The message promised users access to 3,333 commemorative NFTs designed to celebrate the platform’s success, but the link was faked with a URL for fractal.is that swapped an “i” for the “l”, taking users to a minting site where funds were taken and they earned nothing in return.

Techcrunch event

Join 10k+ tech and VC leaders for growth and connections at Disrupt 2025

Netflix, Box, a16z, ElevenLabs, Wayve, Hugging Face, Elad Gil, Vinod Khosla — just some of the 250+ heavy hitters leading 200+ sessions designed to deliver the insights that fuel startup growth and sharpen your edge. Don’t miss the 20th anniversary of TechCrunch, and a chance to learn from the top voices in tech. Grab your ticket before doors open to save up to $444.

Join 10k+ tech and VC leaders for growth and connections at Disrupt 2025

Netflix, Box, a16z, ElevenLabs, Wayve, Hugging Face, Elad Gil, Vinod Khosla — just some of the 250+ heavy hitters leading 200+ sessions designed to deliver the insights that fuel startup growth and sharpen your edge. Don’t miss a chance to learn from the top voices in tech. Grab your ticket before doors open to save up to $444.

San Francisco | October 27-29, 2025

All said, it looks like the scammer actually made off with about $150K. The hack took place before the startup ever even launched its platform, which was scheduled to debut this week. The startup, which is backed by Kan’s GOAT Capital fund, has already pledged to pay back users, tweeting that “If you lost your Sol – we will reimburse you. We will announce further updates soon.”

These attacks aren’t particularly unusual, incidentally; another Solana-based project called Monkey Kingdom was hacked just hours earlier for more than $1.3 million worth of the cryptocurrency. Both attacks taking place over Discord suggests that the chat platform also has some work to do when it comes to authenticating users.

Update: In a Medium post Tuesday afternoon, Fractal confirmed that 373 users fell victim to the scam, but noted that they will be fully compensated by the platform in the next few days. Grape Protocol, a Solana-based tools platform confirmed that one of its admins was hacked which was likely used to exploit both Fractal and Monkey Kingdom today.

Fractal seemed to be aware that such an attack, which has already plagued a host of other NFT-centric Discord projects, was possible, if not likely. On Friday, the team set up an “anti-scam” channel in their Discord for users to flag bad actors, with a team member noting that Fractal “will NEVER ask for you to send funds to any address, and there’s NO google form to fill out,” and furthermore that users should “double check spelling of any links you see.”

While Fractal’s team seemed to be looking to coach their users in the right direction, the broader issue is that the underlying incentive structure of the NFT market tends to discourage users from engaging skeptically because drops sell out so quickly and there’s a culture of seizing on any and every opportunity, which can be dangerous for less seasoned crypto buyers.

Justin Kan debuts Fractal, a Solana-based marketplace for gaming NFTs

Topics

, , , , , , , , , , ,
Loading the next article
Error loading the next article