Security News

X-ploited: Mandiant restores hijacked Twitter account after attempted crypto heist
2024-01-04 20:00

Miscreants took over security giant Mandiant's Twitter account for several hours on Wednesday in an attempt to steal cryptocurrency, then trolled the Google-owned security shop, telling its admins to change the password. "We are aware of the incident that impacted the Mandiant X account and are conducting a thorough investigation," a spokesperson told The Register.

Hackers hijack govt and business accounts on X for crypto scams
2024-01-04 18:40

Hackers are increasingly targeting verified accounts on X belonging to government and business profiles and marked with 'gold' and 'grey' checkmarks to promote cryptocurrency scams. MalwareHunterTeam has been tracking this type of activity on X lately and reported several notable examples of compromised "Gold" and "Grey" accounts.

Beware: 3 Malicious PyPI Packages Found Targeting Linux with Crypto Miners
2024-01-04 10:35

Three new malicious packages have been discovered in the Python Package Index (PyPI) open-source repository with capabilities to deploy a cryptocurrency miner on affected Linux devices. The three...

Mandiant's Twitter Account Restored After Six-Hour Crypto Scam Hack
2024-01-04 06:29

American cybersecurity firm and Google Cloud subsidiary Mandiant had its X (formerly Twitter) account compromised for more than six hours by an unknown attacker to propagate a cryptocurrency scam....

Crypto-crook Sam Bankman-Fried spared a second trial
2024-01-02 07:30

US prosecutors do not plan to proceed with a second trial of convicted and imprisoned crypto-villain Sam Bankman-Fried, according to a Southern District of New York court letter filed on December 29. Although forgoing an additional trial means not holding SBF accountable for conspiracy to make unlawful campaign contributions, additional court dates would most certainly delay a scheduled March 2024 sentencing, as it would require negotiating with The Bahamas regarding terms of extradition.

Cybercriminals set their sights on crypto markets
2024-01-02 04:00

The cryptocurrency market has grown significantly, attracting both enthusiasts and investors. The rise of cryptocurrencies has also brought forth an unprecedented need for cybersecurity measures.

Beware: Scam-as-a-Service Aiding Cybercriminals in Crypto Wallet-Draining Attacks
2023-12-30 09:30

Cybersecurity researchers are warning about an increase in phishing attacks that are capable of draining cryptocurrency wallets. "These threats are unique in their approach, targeting a wide range...

Crypto drainer steals $59 million from 63k people in Twitter ad push
2023-12-21 21:23

Google and Twitter ads are promoting sites containing a cryptocurrency drainer named 'MS Drainer' that has already stolen $59 million from 63,210 victims over the past nine months. According to blockchain data on MS Drainer's activity, one of its Ethereum-chain victims lost $24 million worth of cryptocurrency, while other notable cases involve victims losing between $440,000 and $1.2 million.

Crypto scammers abuse Twitter ‘feature’ to impersonate high-profile accounts
2023-12-20 20:17

Cryptocurrency scammers are abusing a legitimate Twitter "Feature" to promote scams, fake giveaways, and fraudulent Telegram channels used to steal your crypto and NFTs. On X, formerly and more widely known as Twitter, a post's URL consists of the account name of the person who tweeted it and a status ID, as shown below. This allows you to take an URL for a Tweet and modify the account name to whatever you want, even high-profile accounts.

Crypto scammers abuse X 'feature' to impersonate high-profile accounts
2023-12-20 20:17

Cryptocurrency scammers are abusing a legitimate X "Feature" to promote scams, fake giveaways, and fraudulent Telegram channels used to steal your crypto and NFTs. On X, formerly Twitter, a post's URL consists of the account name of the person who tweeted it and a status ID, as shown below. This allows you to take an URL for a Tweet and modify the account name to whatever you want, even high-profile accounts.