A user reportedly lost all assets in their MetaMask wallet following a phishing attack after participating in a WLFI private placement. The attack, which is suspected to exploit the EIP-7702 mechanism, automatically transfers assets when the user injects gas or attempts to withdraw WLFI. Users are advised to exercise extreme caution regarding private key security to prevent further risks. For those affected, a potential recovery method involves using Flashbots to front-run transactions within the same block, though this requires advanced technical skills.