BPOI Banner
North Korean Devs Used Fake Identities to Steal From Crypto Project: ZachXBT North Korean Devs Used Fake Identities to Steal From Crypto Project: ZachXBT

Crypto Users Fall Prey to Potential Russian-linked Hackers

Cybercriminals are once again exploiting trusted tools for malicious gains.

This time, a phishing campaign centered around fake Zoom meeting links has left victims counting massive losses in cryptocurrency.

Fake Zoom Invites Mask Malware

A recent report by blockchain security firm SlowMist detailed a sophisticated phishing campaign targeting cryptocurrency users through fake Zoom meeting links. The attack has reportedly resulted in the theft of millions of digital assets.

It involved the use of a fraudulent domain resembling the authentic one. This site mimicked the genuine Zoom interface to trick unassuming victims into downloading a malicious installation package. Once executed, the malware prompted users to enter their system passwords which enabled the collection of sensitive information such as KeyChain data, browser credentials, and cryptocurrency wallet details.

Upon analysis, SlowMist said that it identified the malware’s code as a modified osascript script. The script extracted and encrypted user data before transmitting it to a hacker-controlled server flagged as malicious by threat intelligence platforms.

The server’s IP address was traced to the Netherlands, and the attackers’ monitoring tools, including logs showing Russian script usage, suggest a connection to Russian-speaking operatives.

On-chain tracking through SlowMist’s MistTrack tool revealed that the hackers’ primary wallet amassed over $1 million, converting stolen assets into 296 ETH. Further transfers led to a secondary address which is now linked to transactions across popular crypto exchanges such as Binance, Gate.io, and MEXC. A complex network of smaller wallets and flagged addresses, including those tagged “Angel Drainer” and “Pink Drainer,” facilitated fund dispersal.

“These types of attacks often combine social engineering and Trojan techniques, making users vulnerable to exploitation. The SlowMist Security Team advises users to carefully verify meeting links before clicking, avoid executing unknown software and commands, install antivirus software, and update it regularly.”

Phishing Scams Hit Alarming Highs

There has been a surge in crypto phishing scams lately. Earlier this month, a fraudulent work meeting link sent via KakaoTalk caused a person to lose $300,000 in cryptocurrency. The malware-compromised funds were transferred to a BingX-associated wallet. The link installed malware and compromised Ethereum and Solana wallets.

Another blockchain security expert, Scam Sniffer reported over $9.4 million was lost in phishing attacks in November alone. Malicious blockchain signatures remain a top threat, as scammers exploit fraudulent transaction permissions to drain wallets, including high-profile thefts exceeding $36 million.

SPECIAL OFFER (Sponsored)

Binance Free $600 (CryptoPotato Exclusive): Use this link to register a new account and receive $600 exclusive welcome offer on Binance (full details).

LIMITED OFFER for CryptoPotato readers at Bybit: Use this link to register and open a $500 FREE position on any coin!

Source link

Chayanika Deka

https://cryptopotato.com/zoom-meeting-scam-crypto-users-fall-prey-to-potential-russian-linked-hackers/

2024-12-28 14:18:42

bitcoin
Bitcoin (BTC) $ 97,664.17 0.02%
ethereum
Ethereum (ETH) $ 3,608.33 0.59%
tether
Tether (USDT) $ 1.00 0.02%
xrp
XRP (XRP) $ 2.34 4.14%
solana
Solana (SOL) $ 213.36 1.04%
bnb
BNB (BNB) $ 705.41 1.31%
dogecoin
Dogecoin (DOGE) $ 0.382695 1.34%
usd-coin
USDC (USDC) $ 1.00 0.01%
cardano
Cardano (ADA) $ 1.08 1.42%
staked-ether
Lido Staked Ether (STETH) $ 3,604.95 0.59%
tron
TRON (TRX) $ 0.26338 1.64%
avalanche-2
Avalanche (AVAX) $ 41.62 0.23%
sui
Sui (SUI) $ 5.15 1.78%
wrapped-steth
Wrapped stETH (WSTETH) $ 4,299.63 0.83%
chainlink
Chainlink (LINK) $ 23.10 0.38%
the-open-network
Toncoin (TON) $ 5.64 1.71%
shiba-inu
Shiba Inu (SHIB) $ 0.000024 2.58%
stellar
Stellar (XLM) $ 0.434168 5.88%
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 97,519.13 0.01%
polkadot
Polkadot (DOT) $ 7.54 1.82%
hedera-hashgraph
Hedera (HBAR) $ 0.299171 1.60%
weth
WETH (WETH) $ 3,609.29 0.62%
bitcoin-cash
Bitcoin Cash (BCH) $ 468.22 0.82%
uniswap
Uniswap (UNI) $ 14.91 0.49%
pepe
Pepe (PEPE) $ 0.000021 1.91%
leo-token
LEO Token (LEO) $ 9.12 0.40%
litecoin
Litecoin (LTC) $ 110.80 0.35%
hyperliquid
Hyperliquid (HYPE) $ 24.78 5.70%
bitget-token
Bitget Token (BGB) $ 6.01 2.05%
wrapped-eeth
Wrapped eETH (WEETH) $ 3,812.34 0.63%
near
NEAR Protocol (NEAR) $ 5.69 1.33%
ethena-usde
Ethena USDe (USDE) $ 0.99884 0.09%
usds
USDS (USDS) $ 1.00 0.04%
internet-computer
Internet Computer (ICP) $ 11.96 2.24%
aptos
Aptos (APT) $ 9.79 0.81%
aave
Aave (AAVE) $ 343.34 0.41%
mantle
Mantle (MNT) $ 1.36 0.98%
bittensor
Bittensor (TAO) $ 549.67 2.25%
crypto-com-chain
Cronos (CRO) $ 0.160056 0.84%
polygon-ecosystem-token
POL (ex-MATIC) (POL) $ 0.511036 1.47%
ethereum-classic
Ethereum Classic (ETC) $ 27.76 1.33%
virtual-protocol
Virtuals Protocol (VIRTUAL) $ 4.17 2.13%
render-token
Render (RENDER) $ 7.98 0.14%
vechain
VeChain (VET) $ 0.050275 1.45%
fetch-ai
Artificial Superintelligence Alliance (FET) $ 1.46 0.68%
arbitrum
Arbitrum (ARB) $ 0.896114 7.68%
mantra-dao
MANTRA (OM) $ 3.89 0.59%
ethena
Ethena (ENA) $ 1.22 2.48%
monero
Monero (XMR) $ 196.96 1.04%
tokenize-xchange
Tokenize Xchange (TKX) $ 45.51 6.14%