Recently, the social accounts of big Vs in the circle have been lost one after another, which is worth talking about.
The hacker's routine is indeed escalating. The early fake phishing links have now evolved to send contract addresses that have skyrocketed - this trick is not small for the old leek, after all, everyone has seen those CAs, and their vigilance will decrease.
But to be honest, the most ruthless trick has not yet appeared. If I take down a KOL's account, I don't need to rush to send any token address. Change your avatar, add a picture with three big characters "New Project", and throw it into the circle of friends and you're done. This operation is much smarter than directly dumping the CA address - because it looks like a normal preview and is almost impossible to see right away.
This round of attacks makes people realize that the ceiling of social engineering is far higher than technical vulnerabilities. When trust is weaponized, the difficulty of defense increases exponentially.
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
7 Likes
Reward
7
3
Repost
Share
Comment
0/400
PumpDoctrine
· 13h ago
Mom, this trick is really amazing, changing your avatar and sending a "new project" can deceive a bunch of people, and you can't prevent it
View OriginalReply0
GasFeeNightmare
· 13h ago
Damn it, I didn't expect this trick to change my avatar and send a preview, so I had to be more preventive
View OriginalReply0
0xDreamChaser
· 13h ago
Damn, this is the real horror, changing your avatar and adding three words can cut a wave?
Recently, the social accounts of big Vs in the circle have been lost one after another, which is worth talking about.
The hacker's routine is indeed escalating. The early fake phishing links have now evolved to send contract addresses that have skyrocketed - this trick is not small for the old leek, after all, everyone has seen those CAs, and their vigilance will decrease.
But to be honest, the most ruthless trick has not yet appeared. If I take down a KOL's account, I don't need to rush to send any token address. Change your avatar, add a picture with three big characters "New Project", and throw it into the circle of friends and you're done. This operation is much smarter than directly dumping the CA address - because it looks like a normal preview and is almost impossible to see right away.
This round of attacks makes people realize that the ceiling of social engineering is far higher than technical vulnerabilities. When trust is weaponized, the difficulty of defense increases exponentially.