💻 Attackers are using a sophisticated phishing scheme to capture the accounts of crypto personalities on X, bypassing passwords and two-factor authentication.

(These methods are also used in other types of attacks)

• The attack begins with a message containing a link that previews a legitimate Google Calendar domain but leads to a fake website.

• There, the victim is redirected to the official X authorization page for the "Calendar" application with Cyrillic characters instead of Latin ones.

• The application requests broad access rights to the account, including posting updates and changing settings.

• After authorization, the attackers gain full control over the account.

ℹ️ To check for compromise, it is recommended to visit the page of connected applications on X and revoke access for suspicious "Calendar" apps + regularly revoke permissions in crypto wallets - their owners lose tokens through old approvals granted years ago.

#X #BinanceSquareFamily #BinanceSquareTalks #NewsAboutCrypto