Hackers are preying on amateur crypto investors as cost-of-living crisis bites


Cybersecurity researchers from Group-IB have spotted a major crypto scam campaign whose goal is to defraud people out of at least €250.
That may not sound like a lot, but the attackers have employed more than 11,000 domains to carry out the scam, potentially netting huge returns.
The premise is simple: the fraudsters created a fake investment platform (opens in new tab) where people can “invest” in different cryptocurrencies. The platform *guarantees* earnings and high gains for everyone who signs up and uses the service. When the victim makes the deposit, it shows up in their dashboard, where they can track their earnings. The platform, obviously, shows bogus numbers, which sometimes even motivate the victims into depositing even more of their investment budgets (opens in new tab), expecting even more earnings.
Troubles with withdrawals
However, once they try to withdraw the money from the platform is when the scam becomes obvious. Not only does the platform prevent the user from withdrawing the cash, but it also demands one last payment.
This fake investment platform is supported by a network of more than 11,000 promotional domains. The threat actors would use these domains, together with stolen social media accounts, to promote the platform, often using celebrity identities to try and add more legitimacy to the ad.
If the victim clicks the ad, and ends up on the fake platform (after a series of redirects), they’ll get a call from a “customer agent” that explains the terms and conditions, and guides the victim through the onboarding process.
It’s quite an elaborate scheme.
The researchers are saying that right now, more than 5,000 malicious domains are still actively promoting the platform. People in the UK, Belgium, Germany, the Netherlands, Portugal, Poland, Norway, Sweden, and the Czech Republic, are among the victims.
When it comes to cryptocurrency investments and stock trading (opens in new tab), it’s always a good idea to double-check, and triple-check everything. There are very few celebrities actually involved in the industry, while others, such as Elon Musk, are being abused left and right.
Via: BleepingComputer (opens in new tab)
Audio player loading… Cybersecurity researchers from Group-IB have spotted a major crypto scam campaign whose goal is to defraud people out of at least €250. That may not sound like a lot, but the attackers have employed more than 11,000 domains to carry out the scam, potentially netting huge returns.…
Recent Posts
- Nearly a million browsers affected by more malicious browser extensions – here’s what we know
- Our favorite desk accessories for Prime Day
- How exactly did Grok go full ‘MechaHitler?’
- Microsoft says AI saved it $500 million – despite it also confirming massive job cuts
- Gemini AI can now turn photos into videos
Archives
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022