Crypto Token Tracker logo Crypto Token Tracker logo
Cryptopolitan 2024-12-29 13:37:24

Exposed: Hackers now using LinkedIn to scam crypto users

Hackers have now started to use the popular application LinkedIn to scam unsuspecting cryptocurrency users. With the hackers now migrating their tactics and illegal activities to LinkedIn, it adds to a list of sophisticated attacks across several platforms with the singular aim of stealing people’s digital assets. According to Web3 security expert Taylor Monahan (Tayvano) on X, hackers are reportedly using specialized social media-based propaganda to distribute malware. After the malware does its job, the victims typically lose control of their devices, after which the criminals carry out their attacks. Monahan gave a detailed explanation of how the attackers work and how users can be safe. Web3 security analyst details go to avoid hackers According to Monahan’s post on X, the hackers begin their illegal operations by opening fake LinkedIn profiles that appear credible. The next step is to impersonate popular platforms, posing as recruiters. The hackers initiate conversations with their victims and try to keep the conversations going to build trust. 🚨 Heads up all—some dudes have a slick, new way of dropping some nasty malware. Feels infostealer-y on the surface but…its not.🫠 It'll really, deeply rekt you. Pls share this w/ your friends, devs, and multisig signers. Everyone needs to be careful + stay skeptical. 🙏 pic.twitter.com/KRRWGL3GDo — Tay 💖 (@tayvano_) December 28, 2024 After building trust with their victims, the hackers bamboozle them with mouth-watering employment opportunities. The tactic often achieves its purpose, especially among users seeking active employment. Monahan noted that it also works with those not seeking employment because everybody is looking for ways to increase their income stream. To further prove to their victims that the job opportunities are indeed legal, they employ the aid of several tools. For instance, they use the Willo Video interviewing platform, one that is frequently used by most crypto firms when interviewing candidates for positions. Victims are also provided with job details and descriptions, which increases the depth of the deception. The victims are required to record and send their responses on the platform. However, the hackers proceed without actually using the platform’s video features, citing different technical issues to keep the con going. After this stage, the hackers begin their scam, sending their victims a link containing harmful instructions. Once they follow the instructions, their devices are compromised, helping the hackers gain access. Monahan warns the crypto community about social engineering scheme According to Monahan, once a user clicks the link, they automatically cede control to the hackers irrespective of the device they use. “If you follow their instructions, you are fcked. They vary depending on whether you are on Mac/Windows/Linux. But once you do it, Chrome will prompt you to update/restart to “fix the issue.” It’s not fixing the issue. It’s fully fcking you,” Monahan said. It is still unclear the spread of the hack or how much they have recouped, but the incident is closely related to the ones that have occurred in the past. The popular one involved employees of the popular Japanese crypto firm Ginco. The wallet software firm lost about $305 million to hackers via the same social engineering attacks. The breach was investigated by several bodies including the Federal Bureau of Investigations ( FBI ) and Japan’s National Police Agency. While LinkedIn has taken several measures to remove fake accounts, the issue has remained. The platform claimed that about 80 million fake profiles were removed in 2024. Its automated system, which checks accounts at every step, blocked most of the accounts after creation. A Step-By-Step System To Launching Your Web3 Career and Landing High-Paying Crypto Jobs in 90 Days.

면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.