This article is from Trend Micro.
The cryptocurrency exchange platform, Uniswap, this week revealed a catastrophic phishing attack on its users, with the scammers walking away with over $8 million worth of Ether and Bitcoin. The attack followed a classic phishing route, with a promised free airdrop of Uniswap tokens valued at around $2000 each. Users were then directed to a website where they could exchange the new tokens for other cryptocurrencies. Opening the malicious link on this phishing site is what led to the infection of wallets.
Source: Twitter
Users that fell victim had linked their wallets to the malicious phishing webpage, giving the
scammers a way in. Over $6.5 million worth of cryptocurrency (2,444 Ether, 201 Bitcoin) was
stolen from just one wallet. The second victim wallet lost $1.67 million, or 834 Ether tokens
($903,000) and 39 Bitcoin ($774,000). The lost crypto was first reported as a hack before it was
discovered to be socially engineered — with that in mind, here’s what else we’ve found this
week.
Users have reported receiving fake breach alerts from scammers posing as Trust Wallet.
The SMS content is as follows:
Following the phishing link will take would-be victims to a fake page, as seen below, designed to
record and steal your log-in credentials. Don’t let it happen! Malicious URLs to take an eye out
for include:
In the case of the Terra cryptocurrency, users have reported receiving another fake airdrop
offer (like the Uniswap case). SMS content as follows:
Following the link will take you to another phishing page designed to steal your credentials. This
particular webpage was only created last week! Furthermore, it appears to have come out of
Russia.
Trend Micro Check is a browser extension and mobile app for detecting scams, phishing attacks,
malware, and dangerous links — and it’s FREE!
After you’ve pinned the Trend Micro Check extension, it will block dangerous sites automatically! (Available on Safari, Google Chrome, and Microsoft Edge).
You can also download the Trend Micro Check mobile app for 24/7 automatic scam and spam detection and filtering. (Available for Android and iOS).
Check out this page for more information on Trend Micro Check.
Given you’ll be required to enter personal information on these kinds of platforms, ID Security will also ensure you’re never the victim of a data breach.
And as ever, if you’ve found this article an interesting and/or helpful read, please do SHARE it with friends and family to help keep the online community secure and protected.
Source: pexels.com.