Twitter Hackers Use Internal Tools for Massive Crypto Scam

Attackers compromise high-profile Twitter accounts to spread a bitcoin scam by leveraging internal admin tools through a social engineering attack on employees.

A massive cybersecurity breach allows attackers to simultaneously hijack high-profile Twitter accounts, including those of Apple, Elon Musk, and Joe Biden. The hackers use these compromised accounts, which collectively boast millions of followers, to promote a classic cryptocurrency scam. The fraudulent posts promise to double any bitcoin payments sent to a specific wallet address, tricking unsuspecting users into sending their digital funds.

The breach starts with cryptocurrency-focused accounts like Coinbase and Binance before rapidly spreading to major celebrities and corporations such as Bill Gates, Jeff Bezos, and Uber. As the incident unfolds, the attackers switch between multiple bitcoin wallet addresses to complicate tracking efforts. The scammers also quickly lose their primary phishing website after the domain registrar immediately suspends it upon receiving the first abuse report.

Twitter confirms that the attackers execute a coordinated social engineering attack against specific employees to pull off this unprecedented intrusion. By manipulating these staff members, the hackers gain access to internal systems and proprietary admin tools that bypass normal account security measures. Twitter acknowledges the security incident and states that it is actively taking steps to secure its internal infrastructure and investigate the full scope of the breach.

Read More at the original source →