US$118,000 worth of BTC lost on Twitter 黑客通过推特窃取了118,000美元的BTC

Elon Musk, Kanye West and Bill Gates were involved in the crypto heist. 伊隆·马斯克,肯伊·韦斯特和比尔盖茨参与了加密货币黑客事件。

Exonium
Exonium Exchange
4 min readJul 22, 2020

--

An unknown attacker managed to take control of a number of accounts on Twitter before tricking followers into a Bitcoin giveaway scam.

This event shook the world as some of the most notable companies, politicians and business leaders had their accounts compromised before sharing similar messages promoting a Bitcoin giveaway that required users to send coins to an address before receiving double that amount back. (A very frequent trick used by scammers in the cryptocurrency industry).

Tesla & SpaceX founder Elon Musk, former United States President Barack Obama, 2020 U.S. presidential candidate Joe Biden, Amazon owner Jeff Bezos as well as Microsoft co-founder Bill Gates had their accounts taken over to share similar messages telling users to send $1,000 to an address in order to receive $2,000 in BTC in return.

The company Twitter accounts of Apple, Uber and CashApp were also used to share the duplicitous messages. Binance CEO Changpeng “CZ” Zhao, Tron CEO Justin Sun and Litecoin founder Charlie Lee also had their accounts hacked. Major cryptocurrency exchanges Binance, Coinbase, Bitfinex and Gemini also fell victim to the attack along with the Twitter accounts of Bitcoin and Ripple.

Some of these accounts did not directly list the same Bitcoin address as Musk and others but rather prompted users to visit a malicious website in order to be considered for a fake 5,000 BTC giveaway. Users would allegedly receive double the amount of BTC they sent to the given address.

How did it happen?

Using SIM swapping, in which threat actors trick, coerce or bribe employees of their victims to gain access to privileged account credentials and administrative tools, hackers were able first to change the email address of each targeted account. Next, two-factor authentication was turned off so when an alert was sent of the account change it went to the hacker’s email address. With the targeted accounts under their control, hackers began promoting their cryptocurrency scam.

Some rumours were going around the internet that the attacker may have been helped by an existing Twitter employee or developer, as they had access to the administrative panels of the various accounts that were compromised. Twitter confirmed that the attackers had accessed internal employee tools that allowed them to take full control of the various accounts. Other users on Twitter speculated that the attackers changed either the phone numbers or email addresses for verification in order to take control of the accounts.

The influence of high profile individuals
Giveaway scams touting users to send cryptocurrencies to a wallet in order to receive a bonus is very common in the cryptocurrency industry. Unlike the early days of the cryptocurrency hype, the community are becoming more cautious about suspicious campaigns and will avoid participating in dubious activities. However, in this twitter hack, we witnessed the influence of celebrities and opinion leaders that many presumed to be credible. This raises the question of whether we should listen to our own opinions or follow whoever we think is trustable. One of the ultimate goals of cryptocurrency is to build a decentralised ecosystem whereby trust can be eliminated during transactions. This hack is not a technical flaw of cryptocurrency in general but the human behaviour among the users. This Twitter hack incident also raised questions regarding the security of a centralised social media platform. If it happened once, will it happen again? What if the hacker has another agenda this time around? Will a blockchain project like Navera be the solution to this problem we’ve been facing for decades?

We would love to hear your opinion regarding this recent event. Do drop a comment below and let us know your thoughts!

***Disclaimer: This content is not financial advice and should not form the basis of any financial investment decisions nor be seen as a recommendation to buy or sell any good or product. Trading cryptocurrency is complex and comes with a high risk of losing money. You should carefully consider whether trading cryptocurrencies is right for you and take the time to learn how trading works and decide how much money you are prepared to risk.

About Exonium

Exonium is a brand new world-class crypto exchange that places an emphasis on security and protection of users’ assets as well as high liquidity.

Exonium was founded to propel cryptocurrency into mass adoption. Merging the best of the exchange ecosystem and the principles of social network platforms, the exchange aims to put the power back in the hands of the community by empowering and enabling traders.

Be part of the future. Be in power. Be in a network of financial freedom.

Connect with us on Twitter, Facebook and LinkedIn for the latest updates

Ready to start trading on Exonium? Try out the seamless registration process and sign up for a new account today at https://exonium.one/

Quick guide:

一个未知的攻击者设法控制了社交媒体平台推特上的多个帐户,然后才将帐户关注者诱骗到比特币赠品骗局中。

这项事件震惊了世界,因为一些最著名的公司,政治家和商业领袖在共享类似信息以推广比特币赠品之前,他们的帐户遭到了黑客攻击,比特币赠品要求用户先将比特币发送到一个地址,然后再收取两倍的钱。 (加密货币行业骗子经常使用的技巧)。

特斯拉&SpaceX创始人埃隆·马斯克,前美国总统巴拉克·奥巴马,2020年美国总统候选人乔·拜登,亚马逊所有者杰夫·贝佐斯以及微软联合创始人比尔·盖茨都是黑客攻击的受害者,以分享告诉用户将1,000美元发送给地址以接收2,000美元的BTC作为回报的信息.

苹果,Uber和CashApp的公司推特帐户也是受害者。币安首席执行官赵长鹏赵,Tron首席执行官孙正义和莱特币创始人查理·李也遭到了黑客入侵。主要的加密货币交易所币安,Coinbase,Bitfinex和Gemini以及比特币和Ripple的推特帐户也成为攻击的受害者。

这事件是怎么发生的?

通过使用SIM交换,黑客可以诱骗,胁迫或贿赂受害者的雇员以获取特权帐户凭据和管理工具的访问权限,从而使黑客能够首先更改每个目标帐户的电子邮件地址。接下来,两因素身份验证被关闭,因此当发送有关帐户更改的警报时,该警报将转到黑客的电子邮件地址。在目标帐户受其控制的情况下,黑客开始推广其加密货币骗局。

互联网上流传着一些谣言,称攻击者可能已获得现有推特员工或开发人员的帮助,因为他们可以访问遭到破坏的各个帐户的管理面板。推特确认攻击者已经访问了内部员工工具,使他们可以完全控制各种帐户。 推特上的其他用户推测,攻击者更改了电话号码或电子邮件地址以进行验证,以便控制帐户。

知名人士的影响

赠予骗局诱使用户将加密货币发送到钱包以获取奖金的做法在加密货币行业中非常普遍。与加密货币的早期不同,社区对可疑活动越来越谨慎,并将避免参加可疑活动。但是,在此推特黑客中,我们目睹了许多人认为是可信的名人和舆论领袖的影响。这就提出了一个问题,即我们应该听取自己的意见还是跟随我们认为可信赖的人。加密货币的最终目标之一是建立一个分散的生态系统,从而可以在交易过程中消除彼此的信任。一般而言,这种黑客攻击不是加密货币的技术缺陷,而是用户之间的人为行为。这次推特黑客事件还引发了有关集中式社交媒体平台安全性的问题。如果发生一次,会再次发生吗?如果这次黑客还有其他动机怎么办?像NVR这样的区块链项目会成为我们几十年来一直面临的资料私隐问题的解决方案吗?

我们很想听听您对最近的事件的看法。请在下面发表评论,让我们知道您的想法!

*** 此内容不是财务建议,不应作为任何财务投资决策的基础,也不应被视为购买或出售任何商品或产品的建议。交易加密货币很复杂,并且有很高的赔钱风险。您应该仔细考虑交易加密货币是否适合您,并花点时间学习交易的工作方式并确定您准备冒多少风险。

关于嘉库

嘉库是一个全新的世界级加密货币交易所,重点关注用户资产的安全性和保护以及高流动性。

嘉库成立是为了推动加密货币被广泛采用。融合了交易所生态系统的最佳功能和社交网络平台的原理,该交易所旨在通过赋予交易员权力和能力,将权力重新交到社区手中。

成为未来的一部分。掌权。处于包容性和财务自由的网络中。

Twitter, FacebookLinkedIn上与我们联系以获取最新更新

准备好开始用嘉库交易了吗?试试无缝注册过程,今天就在 https://exonium.one 注册一个新帐户!

快速指南:

如何进行外源登记

如何存款

--

--

Exonium
Exonium Exchange

ExoniumDEX is a decentralised exchange designed to be a unifying exchange of all coins through a unique oracle concept and bridging function.