Subscribe to our Telegram channel
Cryptocurrency fraudsters use Telegram messenger to steal cryptocurrencies
Cryptocurrency fraudsters have stepped up their activities by using fake Telegram bots to verify identities. They introduce malware to steal cryptocurrencies. The attack starts with fake accounts on social network X (formerly Twitter) that pretend to be well-known crypto influencers. Fraudsters lure users into Telegram groups by promising investment advice.
In these groups, users are asked to verify themselves through a bot called OfficiaISafeguardBot. The bot creates a sense of urgency by demanding that the verification be completed within a limited time. As a result, the bot injects malicious PowerShell code that downloads and activates crypto wallet theft programs. Experts emphasize that all recently reported cases of fraud are related to this bot. Although it is not known whether other bots are being used, the growing sophistication of the infrastructure for such attacks is evident.
Photo: ScamSniffer