SlowMist Warns Of 5 ‘Insidious’ Crypto Scams From Q2

From Cointelegraph

July 2, 2025 02:22:00 AM:

Crypto users saw an increase in psychologically manipulative attacks in Q2, with hackers using advanced methods to steal crypto, says SlowMist. Malicious browser extensions, tampered hardware wallets, and social engineering tactics are on the rise, preying on user anxiety. These attacks exploit offchain entry points and trick users into divulging sensitive information.

One emerging attack involves browser extensions posing as security plugins, intercepting legitimate downloads and replacing them with malicious programs. Hackers guide users to popular sites like Notion or Zoom to download tampered software that steals sensitive information from their computers. SlowMist warns of the insidious nature of these attacks and the difficulty in detecting them.

Another attack method targets crypto investors by offering compromised cold wallets under the guise of promotions or security updates. One victim lost $6.5 million after purchasing a tampered wallet from TikTok. Hackers also sell pre-activated hardware wallets to drain funds from unsuspecting users. Social engineering tactics like fake revoker websites exploit urgency and trust to trick users into revealing private keys.

Phishing attacks leveraging Ethereum’s Pectra upgrade and WeChat account takeovers were also prevalent in Q2. Attackers exploited vulnerabilities in the latest Ethereum upgrade and gained control of WeChat accounts to scam users with discounted Tether. SlowMist’s data from 429 stolen fund reports in Q2 highlighted the prevalence of phishing, fraud, and private key leaks in crypto theft cases.

Read more at Cointelegraph: SlowMist Warns Of 5 ‘Insidious’ Crypto Scams From Q2