One click at a cost of 6 million: how fake Zoom brought down the Gigachad rate

Man

Professional
Messages
3,077
Reaction score
614
Points
113
Scammers have implemented malware to withdraw funds from wallets.

A major investor lost about $6.09 million in Gigachad (GIGA) cryptocurrency due to a phishing attack. The attackers used a fake Zoom meeting invitation to distribute malicious software.

According to the blockchain monitoring service Onchain Lens, scammers gained access to three crypto wallets, from where they withdrew 95.27 million GIGA tokens. The criminals managed to convert the stolen funds into 11,759 SOL, which is approximately $2,1 million. As a result of the massive sale, the GIGA meme coin fell from $0.63 to $0.54.

Later, the attackers exchanged the received SOL for USDT and USDC stablecoins. A portion of the 700 SOL funds was transferred to the KuCoin centralized exchange through intermediate addresses.

The affected investor, known on the social network X under the nickname "Still in the Game", confirmed that the sharp drop in the value of the cryptocurrency was due to a phishing attack. At the time of publication, the GIGA rate fell by another 15% and amounted to $0.049.

The incident is being investigated by the US Federal Bureau of Investigation and a team of forensic experts. Scam Sniffer, a company specializing in detecting cryptocurrency scams, noted the similarity of the fake link "us04-zoom[.]us" with the real address of the platform "us02web.zoom[.]us».

Phishing attacks disguised as legitimate Zoom invitations are becoming more common, with fraudsters often using social engineering to gain the trust of the victim. For example, they may impersonate verified contacts or create a false sense of urgency so that the victim does not pay attention to the small differences in the URL addresses.

Earlier this year, a cybersecurity engineer warned of a similar attack targeting NFT owners that used fake Zoom invitation links. Clicking on such links led to a fake page imitating the video conferencing interface, which offered to install malware to steal data.

Source
 
Top