• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

Analysis of Phishing Attack Using Fake Zoom Links

user avatar

by Giorgi Kostiuk

a year ago


Recently, users reported phishing attacks using fake Zoom links, resulting in stolen crypto assets worth millions. SlowMist conducted an analysis of the incident, examining the attack methods and fund movements.

Phishing Link Analysis

Attackers used a domain similar to the legitimate Zoom domain to disguise their attack. Clicking the 'Launch Meeting' button initiated the download of malicious software instead of launching the Zoom client. The analysis revealed that attackers were using the Telegram API to monitor who clicked the download button.

Malware Analysis

The malware file was named 'ZoomApp_v.3.14.dmg' and tricked users into entering their system password. It executed a script that collected and sent data to attackers, allowing access to sensitive information like passwords and crypto wallet data.

Malicious Behavior Analysis

The analysis showed that the malicious code collected system, browser, and crypto wallet data, sending it to an attacker-controlled server in the Netherlands. Using MistTrack, it was discovered that hacker addresses received over $1 million, including ETH and other cryptocurrencies, later moved to various platforms.

Phishing attacks using Zoom links pose a significant security threat, combining social engineering and trojans. SlowMist Security Team advises users to verify meeting links carefully and use antivirus software to protect their data.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

chest

Other news

Charles Hoskinson Faces Accusations of Undermining XRP Growth

chest

Charles Hoskinson, founder of Cardano, has been accused by a Ripple community member of being involved in the ETHgate saga, which allegedly harmed XRP's growth.

user avatarBayarjavkhlan Ganbaatar

David Schwartz Supports John Deaton's Senate Campaign with XRP Donation

chest

Former Ripple CTO David Schwartz has donated an undisclosed amount of XRP to John Deaton's US Senate campaign, signaling support for Deaton's fundraising efforts.

user avatarMohamed Farouk

BarriC Predicts XRP Price Rally Conditions

chest

Crypto pundit BarriC discusses the conditions for XRP to potentially reach significant price levels, emphasizing the need for integration with global financial systems.

user avatarElias Mukuru

Drake Calls for SBF's Release in New Album

chest

Drake's new album features a track calling for the release of Sam Bankman-Fried, the crypto figure serving a 25-year sentence, while referencing his own involvement in cryptocurrency.

user avatarGustavo Mendoza

Trump's Family Trust Discloses Crypto Trades Amid Legislation

chest

President Trump's family trust disclosed over 3,600 securities transactions, including trades in crypto-related stocks, while advancing pro-crypto legislation.

user avatarKenji Takahashi

Wall Street Exchanges Lobby Against Hyperliquid

chest

Major exchanges, including CME Group and Intercontinental Exchange, are lobbying the CFTC to regulate Hyperliquid, citing concerns over its decentralized structure and potential for market manipulation.

user avatarDiego Alvarez

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.