• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

Analysis of Phishing Attack Using Fake Zoom Links

user avatar

by Giorgi Kostiuk

a year ago


Recently, users reported phishing attacks using fake Zoom links, resulting in stolen crypto assets worth millions. SlowMist conducted an analysis of the incident, examining the attack methods and fund movements.

Phishing Link Analysis

Attackers used a domain similar to the legitimate Zoom domain to disguise their attack. Clicking the 'Launch Meeting' button initiated the download of malicious software instead of launching the Zoom client. The analysis revealed that attackers were using the Telegram API to monitor who clicked the download button.

Malware Analysis

The malware file was named 'ZoomApp_v.3.14.dmg' and tricked users into entering their system password. It executed a script that collected and sent data to attackers, allowing access to sensitive information like passwords and crypto wallet data.

Malicious Behavior Analysis

The analysis showed that the malicious code collected system, browser, and crypto wallet data, sending it to an attacker-controlled server in the Netherlands. Using MistTrack, it was discovered that hacker addresses received over $1 million, including ETH and other cryptocurrencies, later moved to various platforms.

Phishing attacks using Zoom links pose a significant security threat, combining social engineering and trojans. SlowMist Security Team advises users to verify meeting links carefully and use antivirus software to protect their data.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

chest

Other news

Hyperliquid HYPE Shows Signs of Stabilization Amidst Market Volatility

chest

Hyperliquid HYPE has shown significant volatility in the last 24 hours, with buying interest after intraday dips, indicating a potential stabilization phase.

user avatarRajesh Kumar

Regulatory Changes Impact NoKYC Exchanges

chest

In 2025, noKYC exchanges are facing increased scrutiny from global regulators, leading to potential shifts in user preferences towards compliant platforms.

user avatarGustavo Mendoza

Analysts Highlight Accumulation Zone for Bitcoin Amid Market Fear

chest

Analysts from RugaResearch suggest that current market conditions are favorable for high-risk Bitcoin investors, indicating an ideal accumulation zone.

user avatarMiguel Rodriguez

MSCI's Proposal to Exclude Crypto Firms Could Impact $9 Billion in Stock Demand

chest

MSCI's proposal to exclude companies with significant digital asset holdings could impact up to $9 billion in stock demand.

user avatarMaria Gutierrez

Strategic Adjustments in Bitcoin Holdings Amid MSCI's Proposal

chest

Strategic adjustments in Bitcoin holdings are being considered by companies in response to MSCI's proposal to exclude firms with significant digital asset holdings from its indices.

user avatarLuis Flores

Delhi Police Detain Five in Connection with Major Crypto Investment Fraud

chest

Delhi Police have detained five individuals linked to a significant crypto investment scam that has reportedly stolen over Rs 24 crore from unsuspecting victims.

user avatarArif Mukhtar

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.