
,7 min
How to use BscScan? A complete guide
Read more
The rise of social media has revolutionized communication and business, but it has also attracted hackers and scammers, especially with the integration of social cryptocurrencies. No platform, from Twitter to Discord, has been safe from cybercriminals exploiting user vulnerabilities. Recent years have seen a surge in crypto-related social media hacks, including phishing attacks, fake giveaways, impersonation scams, and malware. These often use social engineering to deceive users into revealing sensitive information or sending money to criminals, resulting in financial loss, identity theft, and reputational damage.
This text explores recent crypto-related social media hacks, exposes cybercriminal tactics, and offers tips to protect yourself from such scams.
Several high-profile social media accounts have been hacked in the first few weeks of 2024.
At the beginning of January 2024, the SEC’s X (formerly Twitter) account was compromised in a well-organized attack. Just before the official ruling on a Bitcoin ETF, hackers gained unauthorized access to the SEC's social media account and posted a fake announcement that the ETF had been approved. This false news quickly spread and caused significant market volatility, leading to millions worth of cryptocurrencies being traded based on the fake news. As it became known later, the attack was possible because the SEC failed to enable multi-factor authentication (MFA) on their account.
Mandiant, a cybersecurity firm acquired by Google in 2022, also fell victim to a social media hack in January 2024. The company's X account, which did not have MFA enabled, was breached through a brute-force password-guessing attack. Once inside, the hackers shared a link to a scam page that seemed legitimate but was designed to steal cryptocurrency. As an outcome, thousands of dollars in cryptocurrency on the Solana blockchain were stolen.
The crypto platform CoinGecko experienced a sophisticated breach of its X account in January 2024. Despite having MFA enabled, the account was compromised when an employee inadvertently clicked on a fraudulent Calendly link, which was part of a targeted phishing attack. The attacker then used the compromised account to post a fraudulent token airdrop, misleading many users into thinking they could receive free tokens. As a result, many users provided their private key information and ultimately lost access to their crypto wallets. It simply shows how sophisticated social engineering can bypass technical safeguards like MFA by taking advantage of human vulnerabilities. This example also emphasizes the importance of training employees to recognize and avoid phishing attempts.
CertiK, a blockchain security firm known for auditing smart contracts, experienced a noteworthy breach in January 2024. The attackers compromised CertiK's X account and posted a link to a fake Revoke website. This counterfeit site was designed to look like a legitimate tool for revoking permissions granted to dApps but was actually used to drain value from victims' crypto wallets. The attack, which involved sophisticated social engineering, exposed vulnerabilities even in companies dedicated to blockchain security.
Scammers use a wide range of tactics to trick users and gain access to their cryptocurrency. Understanding these tactics is essential for protecting yourself and your assets. Here are some of the most common methods used by cybercriminals in the crypto space.
Phishing is one of the most prevalent tactics used by scammers. It involves sending fraudulent messages, often via email or social media, that appear to come from a trusted source. The goal is to make the recipient provide sensitive information, such as private keys, passwords, or two-factor authentication codes.
Social engineering involves manipulating individuals into performing actions or divulging confidential information. Scammers often exploit human psychology, using feelings such as trust or fear.
Scammers often take advantage of the excitement around giveaways and airdrops. They promise free tokens or coins in exchange for small payments or personal information, but the giveaways are never real.
Malware, or malicious software, is another common tactic used by scammers to steal tokens. Malware can be disguised as legitimate software, apps, or links and is designed to harvest sensitive information or gain unauthorized access to a user’s device.
Protecting yourself from crypto-related social media hacks requires a combination of awareness and best practices. Here are key strategies to safeguard your assets:
The rise in crypto-related social media hacks underscores the need for strong security practices and vigilance. Regularly update your security settings and be wary of unsolicited communications to protect your assets and boost confidence in online interactions. In the unpredictable realm of social media, proactive security is your best defense. Prioritize the protection of your digital wealth to stay safe and secure.
Share:
Join our newsletter — stay informed, stay empowered.

Would you like some cookies?
We use our own cookies as well as third-party cookies on our website to enhance your experience, analyze our traffic, and for security and marketing purposes. Select “Accept All” to allow them to be used.
Cookie PolicyBuy crypto with fiat