• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

Analysis of Phishing Attack Using Fake Zoom Links

user avatar

by Giorgi Kostiuk

a year ago


Recently, users reported phishing attacks using fake Zoom links, resulting in stolen crypto assets worth millions. SlowMist conducted an analysis of the incident, examining the attack methods and fund movements.

Phishing Link Analysis

Attackers used a domain similar to the legitimate Zoom domain to disguise their attack. Clicking the 'Launch Meeting' button initiated the download of malicious software instead of launching the Zoom client. The analysis revealed that attackers were using the Telegram API to monitor who clicked the download button.

Malware Analysis

The malware file was named 'ZoomApp_v.3.14.dmg' and tricked users into entering their system password. It executed a script that collected and sent data to attackers, allowing access to sensitive information like passwords and crypto wallet data.

Malicious Behavior Analysis

The analysis showed that the malicious code collected system, browser, and crypto wallet data, sending it to an attacker-controlled server in the Netherlands. Using MistTrack, it was discovered that hacker addresses received over $1 million, including ETH and other cryptocurrencies, later moved to various platforms.

Phishing attacks using Zoom links pose a significant security threat, combining social engineering and trojans. SlowMist Security Team advises users to verify meeting links carefully and use antivirus software to protect their data.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

chest

Other news

Synthetix Proposes Basis Vaults for sUSD Stability

chest

Synthetix is considering a shift towards a more structured approach to support sUSD stability through basis vaults.

user avatarLuis Flores

Synthetix Founder Addresses sUSD Management Issues

chest

Kain Warwick, the founder of Synthetix, takes responsibility for the mismanagement of sUSD, highlighting ongoing challenges in maintaining its peg.

user avatarArif Mukhtar

Crypto Markets Under Pressure as Macro Conditions Tighten

chest

The crypto markets are currently facing increased pressure as macroeconomic conditions shift towards a more hawkish stance.

user avatarMaria Gutierrez

SEC Engages with South Korean Officials on Crypto Regulation

chest

The SEC met with South Korean officials and digital asset stakeholders to address regulatory gaps in the crypto market.

user avatarDavid Robinson

BlackRock Publishes New Portfolio Research Report

chest

BlackRock has released a new report based on its portfolio research, emphasizing the importance of accuracy, relevance, and impartiality in investment strategies.

user avatarAndrew Smith

CFTC Lawsuit Against Kentucky Highlights Jurisdictional Battle Over Prediction Markets

chest

The CFTC has filed a lawsuit against Kentucky, raising questions about the regulation of prediction markets in the U.S. The case will determine if federal derivatives law or state gambling laws govern these markets.

user avatarJacob Williams

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.