A recent attack on Cointelegraph led to the injection of a deceptive pop-up window promoting a fake token airdrop, threatening user data.
Details of the Attack
Cointelegraph confirmed that an attack resulted in a deceptive pop-up appearing on the homepage. It promoted a fictitious CTG token airdrop, offering users a reward of $5,500 for connecting their wallets.
Methods of the Attackers
The attackers tried to lend credibility to their scheme by referencing a non-existent audit allegedly conducted by blockchain security firm CertiK. This scam closely resembles a recent phishing campaign targeting users on CoinMarketCap with similar wallet connection prompts.
User Recommendations
Cointelegraph has urged users not to click on the pop-up, not to link their crypto wallets, and to under no circumstances share personal information on the site until the issue is resolved. The company is currently investigating the incident.
The attack on Cointelegraph highlights the importance of user vigilance in the cryptocurrency space. It is essential to avoid suspicious offers and exercise caution when interacting with crypto-related websites.