Elektrine lite

← Feed

@briankrebs@infosec.exchange

Post #4248963

2026-07-30 18:23 UTC

Okay, there's a Reddit thread about this scam. Apparently a lot of people are falling for this. It appears these messages may have abused some email sending trust relationships or credentials, because the phishing messages reportedly passed SPF, DKIM and DMARC tests, and the URL points to a genuine subdomain on their site that they actually use in coms. https://www.reddit.com/r/CryptoCurrency/comments/1vaj96n/cryptocom_phishing_scam/

Replies (5)

  • @xdydx@mastodon.social 2026-07-30 18:33

    @briankrebs@infosec.exchange Without seeing plain text email headers - in gmail, view source - there are multiple ways this might just be spoofing.. crypto.com is not the same as ငrypto.com

    Open ##4250680

  • @briankrebs@infosec.exchange So the value-add of the AI suggestion was that it immediately made you suspicious of the thing it suggested :)

    Open ##4263500

  • @TimWardCam@c.im 2026-07-30 22:16

    @briankrebs@infosec.exchange As long as you are aware that *everything* to do with cryptocurrency is a scam you won't fall for it. (Unless you're deliberately using cryptocurrency to launder drug profits, in which case you probably should simply take the view that "easy come, easy go".)

    Open ##4263501

  • @chuff@bark.wolp.chat 2026-07-30 22:52

    @briankrebs@infosec.exchange @FediTips@social.growyourown.services isn't this word for word the same scam we had on Mastodon?

    Open ##4263504

  • @w_b@mastodon.world 2026-07-31 11:54

    @briankrebs@infosec.exchange 1. "Get the Reddit app to keep using Reddit" HELL NO! 2. Perhaps they were using an IDN with a character that looks like an ASCII character.

    Open ##4282774