• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

Analysis of Phishing Attack Using Fake Zoom Links

user avatar

by Giorgi Kostiuk

a year ago


Recently, users reported phishing attacks using fake Zoom links, resulting in stolen crypto assets worth millions. SlowMist conducted an analysis of the incident, examining the attack methods and fund movements.

Phishing Link Analysis

Attackers used a domain similar to the legitimate Zoom domain to disguise their attack. Clicking the 'Launch Meeting' button initiated the download of malicious software instead of launching the Zoom client. The analysis revealed that attackers were using the Telegram API to monitor who clicked the download button.

Malware Analysis

The malware file was named 'ZoomApp_v.3.14.dmg' and tricked users into entering their system password. It executed a script that collected and sent data to attackers, allowing access to sensitive information like passwords and crypto wallet data.

Malicious Behavior Analysis

The analysis showed that the malicious code collected system, browser, and crypto wallet data, sending it to an attacker-controlled server in the Netherlands. Using MistTrack, it was discovered that hacker addresses received over $1 million, including ETH and other cryptocurrencies, later moved to various platforms.

Phishing attacks using Zoom links pose a significant security threat, combining social engineering and trojans. SlowMist Security Team advises users to verify meeting links carefully and use antivirus software to protect their data.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

chest

Other news

Trump Administration Unveils Plans to Enhance Homeownership Accessibility

chest

The Trump administration plans to enhance homeownership accessibility by restricting institutional investors from buying single-family homes and allowing 401k funds for down payments.

user avatarTomas Novak

Grant Cardone Introduces Innovative Investment Model Merging Real Estate and Bitcoin

chest

Grant Cardone has launched a new investment model that combines real estate with cryptocurrency, aiming to enhance returns while minimizing risk.

user avatarKaterina Papadopoulou

Sui Blockchain Partners with LINQ to Enhance Crypto Access in Nigeria

chest

Sui blockchain has partnered with LINQ to enhance cryptocurrency access in Nigeria, enabling fast digital asset conversion to local fiat currency.

user avatarLeo van der Veen

Sui Blockchain's Technical Advantages Support LINQ Partnership

chest

Sui blockchain's innovative architecture supports its partnership with LINQ by achieving high throughput and low latency, enabling rapid transaction processing and unprecedented settlement speeds for Nigerian users.

user avatarMaya Lundqvist

Ethereum Foundation Introduces zkEVM Proof-Based Validation Strategy

chest

The Ethereum Foundation has released a detailed plan to implement zkEVM proofs for block validation on Ethereum's main chain, aiming to enhance efficiency and security.

user avatarLi Weicheng

Bipartisan Congressional Delegation Visits Denmark to Support Greenland

chest

A bipartisan group of U.S. lawmakers visits Denmark to express support for Greenland amid Trump's acquisition efforts.

user avatarAisha Farooq

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.