Recently, Binance users have fallen victim to fraudulent SMS messages. These messages mimic communications from the platform, making them difficult to identify.
Description of the Phishing Attack
Users of the Binance exchange report receiving fake SMS that warn about suspicious actions on their account and ask them to call a specified number to resolve the issue. The messages contain security threats, such as reports of logins from different locations and attempts to add new two-factor authentication devices.
Binance's Response and Warnings
Binance has denied rumors that a data leak occurred from its systems, stating that the data used by scammers may have been obtained from the dark web. The company warns users that they will never ask them to call a number to resolve account issues. Some users have already reported receiving such messages.
Security Tips from Binance
Binance Chief Security Officer Jimmy Su noted that many hacks occur not due to leaks from within the company but due to malware, such as InfoStealers, on users' devices. He urged users to download software only from official sources and avoid saving passwords in browsers. Binance has also implemented an anti-phishing code for SMS to help users recognize genuine messages.
Fraudulent SMS remain a relevant threat to users of cryptocurrency exchanges. By following security recommendations and staying vigilant, users can protect their accounts from such attacks.