• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

Analysis of Phishing Attack Using Fake Zoom Links

user avatar

by Giorgi Kostiuk

a year ago


Recently, users reported phishing attacks using fake Zoom links, resulting in stolen crypto assets worth millions. SlowMist conducted an analysis of the incident, examining the attack methods and fund movements.

Phishing Link Analysis

Attackers used a domain similar to the legitimate Zoom domain to disguise their attack. Clicking the 'Launch Meeting' button initiated the download of malicious software instead of launching the Zoom client. The analysis revealed that attackers were using the Telegram API to monitor who clicked the download button.

Malware Analysis

The malware file was named 'ZoomApp_v.3.14.dmg' and tricked users into entering their system password. It executed a script that collected and sent data to attackers, allowing access to sensitive information like passwords and crypto wallet data.

Malicious Behavior Analysis

The analysis showed that the malicious code collected system, browser, and crypto wallet data, sending it to an attacker-controlled server in the Netherlands. Using MistTrack, it was discovered that hacker addresses received over $1 million, including ETH and other cryptocurrencies, later moved to various platforms.

Phishing attacks using Zoom links pose a significant security threat, combining social engineering and trojans. SlowMist Security Team advises users to verify meeting links carefully and use antivirus software to protect their data.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

chest

Other news

Baidu's ERNIE 500110 Transition from Preview to Full Release

chest

Baidu announced that ERNIE 500110 has officially exited its preview phase, showcasing its capabilities.

user avatarArif Mukhtar

Baidu's ERNIE 500110 Achieves Top 10 Global Ranking

chest

Baidu's latest AI model, ERNIE 500110, has scored 1,460 points on the LMArena Text leaderboard, placing it 8th globally and making it the only Chinese model in the top 10.

user avatarMiguel Rodriguez

ERNIE 500110 Demonstrates Versatile Performance Across Multiple Domains

chest

The ERNIE 500110 model has shown competitive performance in various fields, including creative writing, instruction following, and coding.

user avatarLuis Flores

APEMARS APRZ Offers Unique Referral Incentives to Boost Community Growth

chest

APEMARS APRZ has introduced the Orbital Boost System, a referral feature that rewards both the referrer and the referred user.

user avatarMaria Gutierrez

APEMARS APRZ Enters Stage 3 of Presale with Promising Growth Potential

chest

APEMARS APRZ is currently in Stage 3 of its presale, known as Operation Banana Boost, which is designed to reward early investors before the token price increases.

user avatarDavid Robinson

EVE Frontier Set to Launch Cycle 5 with Exciting New Features

chest

EVE Frontier is set to launch Cycle 5 in late March 2026, introducing new mechanics and a full switch to the Sui blockchain for an enhanced gameplay experience.

user avatarAndrew Smith

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.