Beginning last week, NFTs were the focus of a targeted social engineering campaign using LinkedIn. NFTs or non-fungible-tokens allow creators to link their work to the ETH blockchain and sell the token guaranteed by the immutable ledger. The attacker used various identities to trick creators into downloading and executing a malicious screensaver file (.SCR). Redline Stealer was then installed and used to access cryptocurrency wallets—reportedly taking $176,000 worth of AXS tokens from one creator. Another creator reported telltale signs of a scam, “several issues with the threat actor’s public profile rang alarm bells, such as the low follower count, the lack of a professional LinkedIn or Linktree profile, the attacker’s desire to pay in ETH (Ether coins) with no paperwork, and the request to install a custom app,” said Jong Chan Han
12 Essentials for a Successful SOC Partnership
As cyber threats continue to impact businesses of all sizes, the need for round-the-clock security