Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnWeb3SquareMore
Trade
Spot
Buy and sell crypto with ease
Margin
Amplify your capital and maximize fund efficiency
Onchain
Going Onchain, without going Onchain!
Convert & block trade
Convert crypto with one click and zero fees
Explore
Launchhub
Gain the edge early and start winning
Copy
Copy elite trader with one click
Bots
Simple, fast, and reliable AI trading bot
Trade
USDT-M Futures
Futures settled in USDT
USDC-M Futures
Futures settled in USDC
Coin-M Futures
Futures settled in cryptocurrencies
Explore
Futures guide
A beginner-to-advanced journey in futures trading
Futures promotions
Generous rewards await
Overview
A variety of products to grow your assets
Simple Earn
Deposit and withdraw anytime to earn flexible returns with zero risk
On-chain Earn
Earn profits daily without risking principal
Structured Earn
Robust financial innovation to navigate market swings
VIP and Wealth Management
Premium services for smart wealth management
Loans
Flexible borrowing with high fund security
Crypto hackers take new spin on fake job scam, dropping ‘nasty’ malware

Crypto hackers take new spin on fake job scam, dropping ‘nasty’ malware

CointimeCointime2024/12/30 09:45
By:Cointime

From cointelegraph by Brayden Lindrea

Crypto hackers take new spin on fake job scam, dropping ‘nasty’ malware image 0

Crypto hackers have reportedly found a slick new way of tricking their victims into downloading “nasty” malware — which can grant hackers access to a victim’s computer and drain their wallets, or do other significant damage. 

According  to blockchain sleuth Taylor Monahan, known as Tay on X — the hackers would first pose as a recruiter from a reputable crypto firm offering their target a   $200,000 to $350,000  salary.

Crypto hackers take new spin on fake job scam, dropping ‘nasty’ malware image 1   Source: Taylor Monahan

However, instead of enticing the target to open a PDF containing malware, or getting a victim to  download video-call software  disguised as  malware , the method involves having the victim follow instructions to fix a microphone and video access issue. 

“If you follow their instructions, you are fucked.”

How the victims fall for the malware attack

The malicious actor would first hit an interviewee with a number of long-reponse interview questions, before one final question which needs to be recorded on video on “Willo | Video Interviewing.”

However, victims will find that there’s an issue with granting microphone and camera access, and are told they have a cache problem before being instructed on “the solution” to resolve the problem, said Monahan, adding: 

“Once you do it, Chrome will prompt you to update/restart to ‘fix the issue.’ It's not fixing the issue. It's fully fucking you.”

Crypto hackers take new spin on fake job scam, dropping ‘nasty’ malware image 2 Screenshot of the message victims are met with after clicking access to their camera and microphone. Source: Taylor Monahan

Monahan said the malware  provides  the attackers with “backdoor” access to the victim’s devices and potentially drain their crypto funds.

“Ultimately they’ll rekt you via whatever means are required,” she  added , noting that the malware attacks work for the  Mac, Windows and Linux  operating systems.

Related:  Scammers are using Telegram verification bots to inject crypto-stealing malware

Monahan said the fake recruiters are reaching out to victims on  professional networking site LinkedIn  out of the blue, advertising everything from business development manager roles to analyst and researcher positions at notable crypto firms like Gemini and Kraken.

The hackers have also reached out to people on freelancer websites, Discord and Telegram.

Questions asked in the written interview included what  crypto trends  the victim thinks will be most significant for the industry over the next 12 months to how a business development representative should expand the crypto firm’s partnerships in Southeast Asia or Latin America on a “limited budget.”

Monahan recommended those already exposed to the malware to wipe their computer.

Everyone needs to be “careful” and remain “skeptical,” she added.

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!