Phishing Scam Accounts Targeting Famous Projects
The SlowMist Security Team has reported an increase in theft within the cryptocurrency community, with many incidents caused by phishing comments posted under tweets from well-known project accounts. These scam accounts employ social engineering and technical expertise to deceive users.
Modus Operandi of Twitter Scam Accounts
Scammers purchase Twitter accounts that appear legitimate by mimicking the usernames of famous projects. They then use promotional tools to boost their credibility, such as buying followers, likes, and shares. With these fake accounts and a bolstered reputation, scammers mimic the information found in legitimate project accounts and ensure their comments appear first under project tweets.
Fake Account Impersonating Optimism
A recent example involved a phishing group posting a comment with a link to their “official website” under a tweet from the official Optimism Twitter account. The link was cleverly disguised as legitimate but was actually a phishing link.
Countermeasures Against Phishing Scams
To counteract these scams, users can integrate anti-phishing plugins, implement real-time alerts for fake domain names, and utilize wallet signature verification and interaction safety features. However, users must also exercise caution and build a strong security mindset to protect themselves from falling into these traps.
Hot Take: 80% of Comments on Tweets from Famous Projects are from Phishing Scam Accounts
According to the SlowMist Security Team, approximately 80% of comments on tweets from famous projects are occupied by phishing scam accounts. These accounts use various tactics to deceive users, including purchasing legitimate-looking Twitter accounts, mimicking well-known project usernames, and employing automated bots to ensure their comments appear first. It is crucial for users to be aware of these scams and take necessary precautions to protect themselves from falling victim to phishing attempts.