LocalBitcoins Users Scammed of Bitcoin in Phishing Attack, Forum Suspended

2019-1-26 16:37

Users of the peer-to-peer OTC Bitcoin trading service LocalBitcoins have been targeted by cyber criminals as part of a phishing scam, resulting in the user’s Bitcoin being stolen.

Forum users were being redirected to a phishing site, which was prompting the users to input two-factor authentication codes that were used to access user accounts and empty them of all their Bitcoin.

LocalBitcoins Forum Compromised, Reddit Users Report

According to a PSA on Reddit posted bu u/bitcoinbabeau, LocalBitcoins has been compromised and the site’s forum landing page has been redirecting users to a phishing site. Once at the phishing site – designed to closely mimic the actual LocalBitcoins forum in order to dupe users – users were prompted to login and enter sensitive two-factor authentication codes.

After the hackers gained access to the user’s sensitive account data, the accounts were then emptied of all Bitcoin.

Related Reading | ShapeShift Phishing Site Advertisement Tops Google Search Results

LocalBitcoins has “temporarily disabled” its forum according to the splash page message. The message also directs users to the LocalBitcoins sub-reddit, where horror stories are already being shared.

@LocalBitcoins has apparently been compromised. Users are claiming its forums were redirecting them to a login page that was a phishing website.

An address shared on social media already has $28,000 worth of #BTC in it after tricking 5 victims. Forums are now diabled. #bitcoin pic.twitter.com/iKLyMQ0Unf

— Francisco Memoria (@FranciscoMemor) January 26, 2019

“Yeah I think I was the first to get cleaned out. 0.14btc. 5 victims going to one wallet. And that’s just one wallet we know about that belongs to the attacker,” reported u/tefl0ncc. 

Another user claimed to be cleaned out of 11 BTC total.

One user posted the hacker’s wallet address, which appears to have only stolen 7.95 BTC across 5 transactions. This already amounts to over $28,000 in Bitcoin. However, additional wallet addresses may be involved considering the report of 11 BTC being stolen from another user.

LocalBitcoins Phishing Attack: Was DNS Spoofing to Blame?

As of the time of this writing, LocalBitcoins has yet to comment on the matter, but do appear to be aware of the situation considering their prompt response in taking down the forum.

How the attack occurred isn’t yet clear, however, it appears to be a fairly common DNS spoofing attack. Hackers use DNS spoofing to maliciously redirect users from one site to a fake one, usually designed to – just like in the case here with LocalBitcoins – steal user’s sensitive personal information, and use it to access the user’s accounts.

Not your vault, not your gold. https://t.co/ThSkkuXGqO

— Jesse Powell (@jespow) January 25, 2019

Reddit users also suggest that the hacker “used some sort of script to use the 2FA code entered by the user to withdraw the bitcoin.”

Related Reading | New Blockchain.info Phishing Email Threatens BTC Users

Last year, the popular Ethereum and ERC-20 token wallet MyEtherWallet was also targeted in a DNS spoofing attack. Users then logged into the fake site they were redirected to, allowing hackers to gain access to their funds.

Users can protect themselves by always double-checking the URL of the page they are currently on, and should always look for the lock next to the URL indicating that the page has a secure connection.

The post LocalBitcoins Users Scammed of Bitcoin in Phishing Attack, Forum Suspended appeared first on NewsBTC.

Similar to Notcoin - TapSwap on Solana Airdrops In 2024

origin »

Bitcoin (BTC) íà Currencies.ru

$ 66247.63 (-0.07%)
Îáúåì 24H $42.864b
Èçìåíåèÿ 24h: 6.82 %, 7d: 8.33 %
Cåãîäíÿ L: $65723.56 - H: $66335.95
Êàïèòàëèçàöèÿ $1305.4b Rank 1
Öåíà â ÷àñ íîâîñòè $ 3598.61 (1740.92%)

users phishing bitcoin localbitcoins being user attack

users phishing → Ðåçóëüòàòîâ: 30


Ôîòî:

Almost $1 Million Stolen in Phishing Attack on Electrum Wallet

Popular cryptocurrency wallet Electrum is in the midst of an ongoing hack which saw almost $1 million in Bitcoin stolen so far, Reddit users discovered on December 27, 2018. 250 BTC Stolen in Electrum Wallet Hack It seems that hackers aren’t lying idle during Christmas time, as a popular cryptocurrency wallet has reportedly experienced one of the largest thefts of.

2018-12-30 00:00


Top 5 Crypto Crime Trends: Cryptojacking Malware, Botnets, Trojan Horses, Phishing and Sextortion

Cryptocurrency is no stranger to dubious tactics by those who are looking to cheat the system – and those who use it. Several digital security companies, such as Kaspersky Labs, have been trying to provide cryptocurrency users and services with the tools and resources they need to combat against the troublesome tactics. Here are just […]

2018-11-14 22:29


Ôîòî:

Singapore Phishing Websites Using Fake News to Get Users’ Bank and Credit Card Details

Phishing websites have been using fake news involving the Deputy Prime Minister of Singapore as means of aquiring users’ credit card and bank account information. Get Rich Quick Scheme The Singaporean government has condemned two separate websites for trying to acquire bank account and credit card information by distributing false information involving the Deputy Prime Minister of Singapore.

2018-9-21 09:00


Myetherwallet Suffers More Attacks than Any Other Ethereum Wallet

MyEtherwallet has been known to be one of the Largest Ethereum wallets in the Crypto sphere and has major encounters and breach of security which puts users tokens at huge risks. Phishing Attacks have been on the rise with popular exchanges like binance,bittrex and bitfinex always getting cloned by impersonators and most time they still […] The post Myetherwallet Suffers More Attacks than Any Other Ethereum Wallet appeared first on ZyCrypto.

2018-9-17 16:31


Ôîòî:

Fake Phishing Website Mimicking Jaxx Wallet Shut Down

A few weeks ago a group of scammers set up a fake website similar to that of Jaxx Wallet with the aim of stealing the cryptocurrencies of users through illegal practices. On September 12, Flashpoint, a cybersecurity firm which provides Business Risk Intelligence advice, posted an article on its official blog commenting that the fraudulent […] The post Fake Phishing Website Mimicking Jaxx Wallet Shut Down appeared first on Ethereum World News.

2018-9-14 09:11


EtherScamDB: Ethereum (ETH) Scam Database For Active Threats?

The continued rise of cryptocurrency popularity has created a breeding ground for malicious attacks, phishing attempts, and the occasional PC hacks. While a large popularity of crypto users is earning from their efforts, there is another group that has chosen to earn a living by stealing from the hard workers. What Is EtherScamDB? EtherScamDB was […]

2018-7-15 14:09


Action Fraud Warning: High Incidence Of Prowling Wannacry Ransomware, Phishing, Targeting Crypto users

Action Fraud, UK’s cyber crime watchdog has warned cryptocurrency users to be watchful of phishing emails which use Ransomware WannaCry. Issuing the red alert, the regulator said, “The WannaCry emails are designed to cause panic and trick you into believing that your computer is infected with WannaCry Ransomware,” and users have to be careful not […] The post Action Fraud Warning: High Incidence Of Prowling Wannacry Ransomware, Phishing, Targeting Crypto users appeared first on ZyCrypto.

2018-6-26 19:58