Google Ads Becomes Latest Platform Used to Steal Crypto in $500,000 Phishing Attacks

2021-11-7 14:58

In a new twist on phishing attacks, fake wallet registration sites listed advertisements on Google Ads and solicited wallet passphrases from wallet holders.

The attackers emulated platforms like Metamask and Phantom to make users think that their platforms were legitimate. Fake wallets were advertised with the names of genuine wallets, and users were tricked into downloading the fake wallets.

Same phishing attack, different platform

This fake wallet attack is just the latest incarnation of a phishing attempt, where users are tricked into divulging personal information by a bad actor posing as a legitimate entity. Now the medium is advertisements. The illegitimate sites looked very similar to their legitimate counterparts, which may have falsely allayed phishing fears. People familiar with wallets would have picked up on the next red flag, a request for a wallet passphrase. This request was acceded to by the victims, leading to the loss of their money. According to Check Point Research, a passphrase is instrumental in recovering a crypto wallet, and compromising this is more dangerous than giving out an account password.

Are crypto scam red flags too difficult to notice?

According to Checkpoint Research, popular wallets like Metamask and Phantom are browser extensions, not websites. If one is directed to enter a password on a supposed Metamask website, trouble is afoot. One has to be extra careful and perform due diligence before engaging the cryptocurrency world, especially when it comes to managing one’s wallet. It is not like a stolen credit card, where recourse is possible by contacting the bank that issued the card. 

Google ads are not standard vehicles for phishing attacks, and they can be an example of an attack that hides in plain sight. The last major ad attack came about a year ago, where a user claimed to have lost $15k trying to participate in a bogus cryptocurrency sale of the Chinese CBDC. The user clicked on a Coindaq.io top-level URL, which then redirected to a site where funds were required to participate in the sale of the digital yuan. Google’s ad policy now prohibits advertisements for initial coin offerings, DeFi trading protocols, or ads that promote in some way the purchase, sale, or trade of cryptocurrencies. This policy would have protected the victim from their $15K loss. Wallets and exchanges which are licensed and where the products and ads comply with local law and where the account is certified by Google may advertise. Ads for cryptocurrency exchanges and wallets are allowed only in the USA.

What do you think about this subject? Write to us and tell us!

The post Google Ads Becomes Latest Platform Used to Steal Crypto in $500,000 Phishing Attacks appeared first on BeInCrypto.

Similar to Notcoin - TapSwap on Solana Airdrops In 2024

origin »

Kind Ads (KIND) на Currencies.ru

$ 0 (+0.00%)
Объем 24H $0
Изменеия 24h: 0.00 %, 7d: 0.00 %
Cегодня L: $0 - H: $0
Капитализация $0 Rank 99999
Доступно / Всего 0 KIND

phishing attacks google wallet ads latest becomes

phishing attacks → Результатов: 67


Myetherwallet Suffers More Attacks than Any Other Ethereum Wallet

MyEtherwallet has been known to be one of the Largest Ethereum wallets in the Crypto sphere and has major encounters and breach of security which puts users tokens at huge risks. Phishing Attacks have been on the rise with popular exchanges like binance,bittrex and bitfinex always getting cloned by impersonators and most time they still […] The post Myetherwallet Suffers More Attacks than Any Other Ethereum Wallet appeared first on ZyCrypto.

2018-9-17 16:31


Фото:

Top Crypto Exchanges Still Using Authenticator 2FA Despite Google Dropping Support

Google has had none of its 85,000+ employees successfully phished since early 2017 when it was reported they dropped the use of its own Authenticator app and switched to a U2F model.  [Note: This is a guest article submitted by Marco Paez] All Top Crypto Exchanges Currently Use Google Authenticator The move was necessary as recent data released by the APWG reported that phishing attacks have tripled since 2013, with over 246 million user attempts being made Read More The post Top Crypto Exchanges Still Using Authenticator 2FA Despite Google Dropping Support appeared first on Bitcoinist.com.

2018-8-5 23:00


EtherScamDB: Ethereum (ETH) Scam Database For Active Threats?

The continued rise of cryptocurrency popularity has created a breeding ground for malicious attacks, phishing attempts, and the occasional PC hacks. While a large popularity of crypto users is earning from their efforts, there is another group that has chosen to earn a living by stealing from the hard workers. What Is EtherScamDB? EtherScamDB was […]

2018-7-15 14:09