Blog

Intricate social engineering scam that targets crypto users: Report


Threatening actors use an elaborate engineering scheme in society to target crypto users and drain their purses, According to In a Thursday report from Cybersecurity Company Darktrace. The company has written that methods are similar to those used by “Traffer groups,” which use malware to steal credentials and data.

The social engineering scheme involves having the confidence of users by posting as representatives from fake companies starting in the AI, Gaming, Web3 and Social Media industries. The compromised X accounts are often involved, and threat actors add fraud with medium articles and entries to GitHub.

“Each campaign usually starts with a victim in contact through X messages, telegram or discord,” the report reads. “A fake company employee will contact a victim asking to test their software in exchange for a cryptocurrency payment.”

After the user downloads the software, a cloudflare verification bubble begins to get the computer information. At a certain point, credentials from cryptocurrency wallets were stolen. Windows and Mac users are known to be targeted, according to the report.

Fraud, purse, scam
A excerpt code of malicious software acquisition information. Source: Darktrace

The scheme may be similar to the December 2024 attack involved in the Meeten campaign. There have been other social engineering attacks that target cryptocurrency users, including those who have never been askelled by some groups associated with North Korea.

Related: 10 red flags A crypto platform is a scam – and how to protect your money

Crypto scams multiply by 2025

Crypto scams, fraud, and theft are irritating the industry, with names such as “pig butchering” scams and “four-dollar wrench attacks.” In some cases, they have become more sophisticated, relying on social engineering, hacked X account, and insider fraud.

On July 7, the Chinese authorities Warned citizens about illegal fundraising schemes That, in part, is built around the “killer” use of crypto: stablecoins. Allowed, organizations are often facing money laundering and online gambling, and groups take advantage of the public’s limited knowledge of certain aspects of crypto.

The cointelegraph is Written about crypto scams to guard In 2025. They include malicious browser plugins that are purport for security, tampered hardware wallets, and social engineering through a fake Revoker website.

On July 8, the US justice department It is said to run a scheme That is discouraging investors of over $ 650 million. Another method has become fake crypto support scamthat uses psychological tactics to complete fraud.

Magazine: Influencers shilling memecoin scams faced serious legal consequences