A hacker stole $5.5 million from zkLend and then drained all the funds on the fake website Tornado Cash
The hacker who stole from a decentralized lending protocol on Starknet called zkLend back in February lost a significant portion of the stolen funds due to his own greed and short-sightedness. De facto, the thieves have robbed the thief (and this is not a April Fool’s joke).
Apple ignored a bug in iOS 18 for three months that could have caused passwords to leak
Apple has discovered a bug in the Passwords program that left iPhone users vulnerable to phishing attacks for three months.
Phishing on behalf of PayPal — hackers use real company emails
It seems that using real company servers is becoming a trend among hackers. Recently ITC.ua wrote about Google, now «in the sights of» PayPal users.
A phishing site of the popular NFT collection Pudgy Penguins appeared among Google ads
Blockchain security experts at Scam Sniffer discovered a new scam scheme using Google Ads. Following the link redirects users to a fake site of the popular NFT collection Pudgy Penguins. In their post on the X platform, the analysts explained that these ads contain JavaScript code that checks if the user has a crypto wallet. If a wallet is…
Scam Sniffer detects phishing ads on Google: users can lose all cryptocurrency
The security company Web3 Scam Sniffer reported that while searching for the official Soneium website, experts came across sponsored ads on Google for a fraudulent page, after clicking on it, connecting a wallet and signing a permission, users risked losing all digital assets. Suspicious ads appeared when users searched for the term «someium».
Google advertised a fake Google Authenticator website with phishing
Google has faced a serious security problem with its advertising platform. Attackers are creating fake Google Authenticator ads that actually distribute DeerStealer malware that can steal users’ confidential information.
Hackers massively spoof UKR.NET and other services for phishing purposes — how to avoid data theft
In July, cybercrime in Ukraine intensified significantly. Hackers are hunting for personal data of citizens — for this purpose, in particular, they have faked the website UKR.NET
Hackers are attacking GitHub users again — this is OAuth phishing
A new type of phishing attack has spread among developers — attackers pretend to be recruiters and the GitHub security team and ask to follow a link.
Spelling error report
The following text will be sent to our editors: