Close Menu
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
What's Hot

Location-Based Gaming NFTs: How GPS and Blockchain Are Changing the Way We Play

May 2, 2026

ZachXBT Exposes US Law Firm Gerstein Harrow’s $71M Grab of Stolen Lazarus Funds

May 2, 2026

Crypto hack losses top $630M in April, highest since February 2025

May 2, 2026
Facebook X (Twitter) Instagram
Recession Profit AlertsRecession Profit Alerts
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
Recession Profit AlertsRecession Profit Alerts
Home»Security»Security Firm Certik’s Account Hijacked to Spread Crypto Drainer
Security Firm Certik’s Account Hijacked to Spread Crypto Drainer
Security

Security Firm Certik’s Account Hijacked to Spread Crypto Drainer

March 16, 2026No Comments3 Mins Read

A Web3 security vendor was tricked by a social media phishing attack which hijacked its account and enabled scammers to share a link to a malicious website, it has emerged.

Certik warned on Friday via its X (formerly Twitter) account “Certik Alert” that it was investigating reports of a compromise on its main account.

“Do not interact with any posts until we have confirmed the account is secure,” it said at the time.

#CertiKSkynetAlert 🚨

We are currently investigating a compromise of our X account @CertiK

Do not interact with any posts until we have confirmed the account is secure

— CertiK Alert (@CertiKAlert) January 5, 2024

It later revealed that the account had indeed been compromised and “a tweet with a phishing link” was published. That link was up for just 15 minutes, but it’s unclear whether any of the company’s 342,000 followers clicked through.

Read more on crypto scams: Approval Phishing Scams Drain $1bn of Cryptocurrency from Victims

The phishing message itself appeared to spoof crypto wallet management firm Revoke, with a fake security alert taking users to a spoofed Revoke site. This apparently contained crypto-drainer malware designed to transfer digital currency from victims’ accounts without their consent.

Revoke was forced to publish its own post on Friday morning to warn users of the scam.

The phishing attack that compromised Certik involved the legitimate but dormant account of a Forbes journalist that was hijacked and used to message the security vendor.

“A verified account, associated with a well-known media, contacted one of our employees. Unfortunately, it appears that this account was compromised, leading to a phishing attack on our employee,” the firm noted in its tweet.

See also  Coinbase and Chainlink Expand Partnership With Onchain Data Integration – Crypto News Bitcoin News

“We quickly detected the breach and deleted the related tweets within minutes.”

It is believed to be part of a larger campaign using similar tactics to compromise high-profile X accounts.

In these attacks, a hijacked journalist account engages the victim organization and then sends a booby-trapped link to ‘schedule’ a meeting, which enables the attacker to steal the victim’s X credentials.

“While it’s easy to point the finger after a phishing attack, the reality is that these scams are designed to exploit human trust and vulnerabilities,” Certik tweeted in a separate post.

“That is why we are dedicated to build strong security systems and empower users to recognize and avoid these threats. Combatting phishing requires a united front. We encourage those affected during the recent Twitter incident to reach out to us.”

Crypto-drainer malware is becoming increasingly popular. Last month, researchers at Scam Sniffer claimed one variant, MS Drainer, was responsible for $59m in losses. The same security firm recently claimed that wallet drainers had stolen nearly $295m in virtual currency from over 324,000 victims in 2023.



Source link

Account Certiks Crypto Drainer firm Hijacked Security Spread

Related Posts

ZachXBT Exposes US Law Firm Gerstein Harrow’s $71M Grab of Stolen Lazarus Funds

May 2, 2026

Crypto hack losses top $630M in April, highest since February 2025

May 2, 2026

US seized $500M in Iranian crypto assets, Treasury secretary says

May 2, 2026

El Salvador Crypto Remittances Reach $17.38M

May 2, 2026
Top Posts

Aragon Association to dissolve itself, provide liquidity for ANT redemption

November 2, 2023

Alexandria Real Estate: A Fast-Growing And Fairly Valued REIT

November 3, 2023

North Korean Hackers Amass $3bn in Cryptocurrency Heists

March 18, 2026

Type above and press Enter to search. Press Esc to cancel.