The cryptocurrency world is no stranger to scams, but a new warning from Web3 security firm ScamSniffer has shed light on an increasingly sophisticated scam targeting users. The scam utilizes fake social media accounts posing as popular cryptocurrency influencers and malicious Telegram bots to distribute crypto-stealing malware. Here’s everything you need to know to protect yourself from this growing threat.
A Sneaky Scam: Fake Influencers and Telegram Bots
ScamSniffer has raised alarms about a new wave of cyberattacks in which scammers are leveraging fake social media accounts to impersonate well-known cryptocurrency influencers. These malicious actors are creating fraudulent X (formerly Twitter) accounts and pretending to be trusted personalities in the crypto world. The goal? To trick unsuspecting users into joining fraudulent Telegram groups that promise exclusive investment advice and tips.
Once users follow the fake influencer’s account, they are invited to join a Telegram group. The scammers often present these groups as “exclusive” spaces where users can receive expert advice on crypto investments. To make the scam appear more legitimate, the fake X accounts promote the links to these groups under the guise of the influencer’s official posts. This tactic helps the scammers appear credible and builds a false sense of trust with potential victims.
The Devious Telegram Verification Bot
Once users join the group, they are directed to verify their identity using a Telegram bot called “OfficialSafeguardBot.” This bot is part of a devious ploy to steal crypto assets. It creates a sense of urgency by demanding that users complete the verification process within a short time window.
The bot then prompts users to execute a series of steps, including completing a captcha. However, while the victim is distracted by this fake verification process, the bot secretly injects malicious PowerShell code into their clipboard. PowerShell is a scripting language used for automating tasks in Windows, and once the victim unknowingly executes this code, it leads to the installation of malware on their system. The malware gives the attackers access to private information, including cryptocurrency wallet keys, and can drain their accounts without the victim’s knowledge.
Rising Cases of Crypto Theft Through Malware
ScamSniffer reports that this malware attack has already impacted numerous users, with many victims losing access to their wallets and funds. Alarmingly, the malware has been able to bypass several antivirus programs, and only VirusTotal, a security tool, flagged the malicious code. This means that many users may not realize they’ve been compromised until it’s too late.
This new tactic represents an evolution in the use of malware by crypto scammers, who have become increasingly sophisticated in their approach. Cybercriminals are now leveraging social engineering techniques, like fake influencer promotions and trusted Telegram bots, to target unsuspecting crypto investors. These attacks have become more frequent, as hackers capitalize on the rising value of Bitcoin and altcoins to steal funds from the growing base of cryptocurrency users.
Protect Yourself: Simple Tips to Stay Safe
With scams like this on the rise, crypto users must stay vigilant. Here are some essential tips from ScamSniffer on how to protect yourself from falling victim to these scams:
1. Use Hardware Wallets
Hardware wallets, such as Ledger or Trezor, store your cryptocurrency keys offline, making them far less vulnerable to malware attacks. Storing your crypto on exchanges or in hot wallets exposes it to higher risks, so investing in a hardware wallet is a smart way to safeguard your assets.
2. Avoid Executing Unknown Commands
Be cautious about executing any commands or scripts, especially those that are unsolicited or come from an unverified source. If a bot or website asks you to run a script on your computer, it could be a trap to inject malicious software.
3. Avoid Unverified Software
Only download software from trusted sources. Scammers often disguise malware as legitimate applications or programs, especially when they claim to offer exclusive services or investment opportunities. Stick to reputable platforms, and always verify the legitimacy of any new service or product before installing it.
4. Be Wary of Urgency Tactics
Scammers often create a false sense of urgency to pressure victims into acting quickly. If a bot or individual is asking you to make decisions or complete actions rapidly, take a step back and assess the situation carefully. Genuine platforms will not rush you into making critical decisions.
The Surge in Impersonation Scams
ScamSniffer’s report also highlights a dramatic increase in impersonation accounts on X in recent months. According to the security firm, these fake accounts have spiked by 87% since November. These accounts often promote malicious links and phishing attempts designed to steal crypto assets.
In fact, some of these scams have already caused substantial financial damage. ScamSniffer noted that at least two victims had lost over $3 million after clicking on malicious links shared by fake influencer accounts. These figures highlight just how lucrative and dangerous these scams have become.
Realst Malware: A Rising Threat
Adding to the list of recent crypto threats, Cado Security Labs flagged the Realst malware, which targets users via fake meeting applications. This malware is spread through social engineering, where scammers trick users into believing they need to download an application for legitimate business purposes or to interact with a trusted contact. Once installed, the malware steals crypto assets, browser-stored credentials, and sensitive financial information.
In another notable attack, the decentralized finance (DeFi) platform Radiant Capital lost over $50 million in October after an attacker compromised the systems of developers using a zipped PDF file containing malware. The file was promoted through Telegram, and once opened, it triggered the malware, leading to massive financial losses.
The Growing Threat to Crypto Assets
As the cryptocurrency industry continues to grow, so does the sophistication of cybercriminals targeting it. With Bitcoin recently surpassing $100,000 and altcoins rising in value, the crypto sector has become an increasingly lucrative target for malware and fraud. Scammers are finding new ways to infiltrate systems and drain digital wallets, and users must remain proactive in protecting their assets.
Conclusion: Stay Vigilant Against Crypto Malware
The rise of sophisticated scams involving fake influencers, Telegram bots, and crypto-stealing malware serves as a stark reminder of the importance of cybersecurity in the cryptocurrency space. As the industry continues to evolve, so will the tactics of those looking to exploit unsuspecting users. By following ScamSniffer’s advice to use hardware wallets, avoid executing unknown commands, and be cautious of urgency tactics, crypto investors can better protect themselves from these growing threats.
Disclaimer: The above press release has been provided by a third party. We do not verify or endorse the content and will not be responsible for any inaccuracies, claims, or damages arising from the same.
