The post Ledger CTO Issues Phishing Warning After Fake Podcast Scam Attempt appeared on BitcoinEthereumNews.com. How attack worked  Malware-as-a-service Charles Guillemet, chief technology officer at hardware manufacturer Ledger, recently spotlighted a sophisticated phishing attack targeting Ethereum developer Zak Cole. Guillemet has warned users against storing keys on their computers to avoid becoming the victim of such an attack.  How attack worked  The malicious actor in question posed as a legitimate contact from a popular podcast in order to gain trust.  The attacker sent an email with a link to StreamYard, a popular webinar platform. This was followed by a typical step for such attacks: the landing page showed a fake error and prompted the targeted developer to download a desktop app with rather suspicious insistence. Cole, who already lost some of his crypto holdings to scammers earlier this year, downloaded a macOS installer file to a separate test machine and (unsurprisingly) ended up finding a fake program with a script and a fake Terminal icon that was meant to run the hidden script. You Might Also Like   The malicious malware was meant to grab wallet files, messages, photos, as well as other files from the computer of the potential victim and send back whatever it stole to the servers operated by the attacker. Malware-as-a-service The most surprising development was finding out that the attacker in question was actually operating rented malware that they were able to profitably use for just $3,000 per month.  According to Cole, this shows that “malware-as-a-service” is turning into a burgeoning industry, and even low-skill actors can now get their hands on commodity malware.  Source: https://u.today/ledger-cto-issues-phishing-warning-after-fake-podcast-scam-attemptThe post Ledger CTO Issues Phishing Warning After Fake Podcast Scam Attempt appeared on BitcoinEthereumNews.com. How attack worked  Malware-as-a-service Charles Guillemet, chief technology officer at hardware manufacturer Ledger, recently spotlighted a sophisticated phishing attack targeting Ethereum developer Zak Cole. Guillemet has warned users against storing keys on their computers to avoid becoming the victim of such an attack.  How attack worked  The malicious actor in question posed as a legitimate contact from a popular podcast in order to gain trust.  The attacker sent an email with a link to StreamYard, a popular webinar platform. This was followed by a typical step for such attacks: the landing page showed a fake error and prompted the targeted developer to download a desktop app with rather suspicious insistence. Cole, who already lost some of his crypto holdings to scammers earlier this year, downloaded a macOS installer file to a separate test machine and (unsurprisingly) ended up finding a fake program with a script and a fake Terminal icon that was meant to run the hidden script. You Might Also Like   The malicious malware was meant to grab wallet files, messages, photos, as well as other files from the computer of the potential victim and send back whatever it stole to the servers operated by the attacker. Malware-as-a-service The most surprising development was finding out that the attacker in question was actually operating rented malware that they were able to profitably use for just $3,000 per month.  According to Cole, this shows that “malware-as-a-service” is turning into a burgeoning industry, and even low-skill actors can now get their hands on commodity malware.  Source: https://u.today/ledger-cto-issues-phishing-warning-after-fake-podcast-scam-attempt

Ledger CTO Issues Phishing Warning After Fake Podcast Scam Attempt

  • How attack worked 
  • Malware-as-a-service

Charles Guillemet, chief technology officer at hardware manufacturer Ledger, recently spotlighted a sophisticated phishing attack targeting Ethereum developer Zak Cole.

Guillemet has warned users against storing keys on their computers to avoid becoming the victim of such an attack. 

How attack worked 

The malicious actor in question posed as a legitimate contact from a popular podcast in order to gain trust. 

The attacker sent an email with a link to StreamYard, a popular webinar platform.

This was followed by a typical step for such attacks: the landing page showed a fake error and prompted the targeted developer to download a desktop app with rather suspicious insistence.

Cole, who already lost some of his crypto holdings to scammers earlier this year, downloaded a macOS installer file to a separate test machine and (unsurprisingly) ended up finding a fake program with a script and a fake Terminal icon that was meant to run the hidden script.

You Might Also Like

 

The malicious malware was meant to grab wallet files, messages, photos, as well as other files from the computer of the potential victim and send back whatever it stole to the servers operated by the attacker.

Malware-as-a-service

The most surprising development was finding out that the attacker in question was actually operating rented malware that they were able to profitably use for just $3,000 per month. 

According to Cole, this shows that “malware-as-a-service” is turning into a burgeoning industry, and even low-skill actors can now get their hands on commodity malware. 

Source: https://u.today/ledger-cto-issues-phishing-warning-after-fake-podcast-scam-attempt

Market Opportunity
Union Logo
Union Price(U)
$0.002473
$0.002473$0.002473
+2.14%
USD
Union (U) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

MakinaFi suffered an attack that resulted in the loss of approximately 1299 ETH, with some funds being preemptively processed by MEV.

MakinaFi suffered an attack that resulted in the loss of approximately 1299 ETH, with some funds being preemptively processed by MEV.

PANews reported on January 20th that, according to PeckShieldAlert, the MakinaFi platform was attacked, with hackers stealing approximately 1,299 ETH, worth about
Share
PANews2026/01/20 12:32
Magic Eden co-founder sees 'speculation supercycle' ahead

Magic Eden co-founder sees 'speculation supercycle' ahead

Trading volumes in prediction markets are higher than ever, with Monday seeing a record $814.2 million worth of trades placed on Kalshi, Polymarket, and other platforms
Share
Coinstats2026/01/20 12:12
SOL Rockets 30%, ADA Holds $0.90, BlockDAG Dominates With $407M Presale

SOL Rockets 30%, ADA Holds $0.90, BlockDAG Dominates With $407M Presale

The post SOL Rockets 30%, ADA Holds $0.90, BlockDAG Dominates With $407M Presale appeared on BitcoinEthereumNews.com. The recent Solana (SOL) price surge has impressed traders, but questions remain about whether it can hold support after such a sharp climb. Meanwhile, the Cardano (ADA) market trend shows steady growth, yet its gains feel slower compared to rivals, leaving many wondering if ADA can really break past resistance. So where should investors look when both face their own hurdles? That’s where BlockDAG comes in. While others rely on speculation, BlockDAG is showing proof that rewards are already flowing. Social platforms are filled with photos and unboxing clips of the X10 miner, with users setting up devices and sharing payouts. This isn’t just talk; it’s miners at home already getting paid. For anyone searching for the best crypto to invest in now, BlockDAG stands out by combining real hardware delivery with immediate earning potential. BlockDAG: Proof in the Boxes, Proof in the Rewards BlockDAG’s biggest flex right now isn’t just numbers on a dashboard; it’s the boxes arriving at people’s doors. Across social media, users are posting photos, clips, and setup videos of the X10 miner. You can see them unboxing, plugging in, and instantly starting to mine BDAG. That kind of visibility shows BlockDAG isn’t selling hype; it’s already putting real mining gear into the hands of its backers. The community is not waiting for mainnet to find out if this works; they’re already mining and sharing payouts from home. While other coins are still tied up in speculation, here you’ve got thousands of miners being delivered worldwide. That’s why people are calling it the best crypto to invest in now, because it’s showing action, not just promises. The presale itself is backing up the momentum. BlockDAG has already raised over $407 million, with $40 million pouring in just last month. More than 312,000 holders are locked in,…
Share
BitcoinEthereumNews2025/09/18 08:52