Crypto Token Tracker logo Crypto Token Tracker logo
Cryptopolitan 2024-12-26 12:30:56

Threat actor uses fake investment offers to gain access to wallets, steals $1.2M

A threat actor has been using the promise of investments to trick users into handing over wallet permissions. The newly discovered scam uses elements of social engineering, pig butchering, and laundering funds through stablecoins. The attacker extracted about $1.2M from user wallets through social engineering tactics. The newly discovered scam was noticed by Whitestream analysts. The funds have not been tracked in detail, but Whitestream notes most were directed to a single wallet before they were sent to exchanges. Threat actor offers shady investments in confidence scams The attacker’s method of stealing funds copies romance scams or pig butchering models, which relies on gaining the victim’s confidence. The end goal is to either request crypto directly or introduce a malicious link. While wallets can flag some sites, they are not filtering third parties yet. This allows anyone to build a wallet connection request and potentially drain funds. The scam led users to a site presented as an investment portal for Seed Crypto. The threat page is still active, displaying a basic message and a button to connect wallets. The landing page explained crypto in a language targeting outsiders while promising a vague investment opportunity. The page required a wallet connection, which then used the permission to drain wallets. The site required a WalletConnect or a Coinbase wallet, one of the most widely used apps. Early details revealed about the scam reinforce the regional nature of attacks and their limited time frame. In this case, the threat actor operated out of Southeast Asia, and focused on local services for cashing out. The exploiting address, however, had no problems with swapping out funds through HTX, Binance, OKX, Gate.IO, and ChangeNow. Pig butchering and confidence scams are among the most closely watched, as they often target mainstream users and not crypto insiders. However, due to the ease of acquiring crypto or stablecoins, scammers are capable of convincing users to hand over or “invest” funds. Both Tether and Circle have assisted law enforcement with tracking and freezing pig butchering addresses, while they were still incapable of cashing out. Personal message scams took up to $3.6B in 2024 Confidence scams targeting crypto outsiders surpassed losses from attacks against crypto protocols. It is difficult to track confidence scams, as some are regional and limited to a campaign. However, an estimated $3.6B was lost and laundered through this type of scam as revealed by data from a preliminary Cyvers overview for the past year. Over the course of 2024, the influence of the Huione Guarantee market was noted as a tool to launder funds through faked commercial activity. The main tools for moving funds were again USDT and USDC, which despite attempts to freeze wallets, managed to remain undiscovered. As this type of scam became more common, Interpol called for removing the “pig butchering” term, to avoid stigma and help victims seek help without shame. Some of the scams were considered romance-baiting, while others still had an element of confidence. Both eventually led up to the same point – investment offers. Confidence scams caused a lot of devastation this year, causing deep losses because they typically target individuals with disposable funds. The US Securities and Exchange Commission (SEC) estimates total confidence scams at $5.6B for the whole of 2023. Crypto and stablecoins only accelerate the process and make the funds potentially untraceable. A Step-By-Step System To Launching Your Web3 Career and Landing High-Paying Crypto Jobs in 90 Days.

면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.