👀 家人们,每天看行情、刷大佬观点,却从来不开口说两句?你的观点可能比你想的更有价值!
广场新人 & 回归福利正式上线!不管你是第一次发帖还是久违回归,我们都直接送你奖励!🎁
每月 $20,000 奖金等你来领!
📅 活动时间: 长期有效(月底结算)
💎 参与方式:
用户需为首次发帖的新用户或一个月未发帖的回归用户。
发帖时必须带上话题标签: #我在广场发首帖 。
内容不限:币圈新闻、行情分析、晒单吐槽、币种推荐皆可。
💰 奖励机制:
必得奖:发帖体验券
每位有效发帖用户都可获得 $50 仓位体验券。(注:每月奖池上限 $20,000,先到先得!如果大家太热情,我们会继续加码!)
进阶奖:发帖双王争霸
月度发帖王: 当月发帖数量最多的用户,额外奖励 50U。
月度互动王: 当月帖子互动量(点赞+评论+转发+分享)最高的用户,额外奖励 50U。
📝 发帖要求:
帖子字数需 大于30字,拒绝纯表情或无意义字符。
内容需积极健康,符合社区规范,严禁广告引流及违规内容。
💡 你的观点可能会启发无数人,你的第一次分享也许就是成为“广场大V”的起点,现在就开始广场创作之旅吧!
SlowMist Tracks North Korean Lazarus Group's Telegram Phishing Targeting Crypto
Using the SlowMist BTI intelligence network, SlowMist has monitored the North Korean cyber organization Lazarus since 2022. A disturbing Telegram phishing effort targeting cryptocurrency is underway. Their techniques now include imitating trustworthy financial firms to conduct phishing operations targeting crypto project teams, which is much more concerning. Instead of randomly impersonating renowned investment institutions, North Korean hackers are selective. Once chosen, they create Telegram accounts in these prestigious organizations’ names. This intricate plan seeks to win over unknowing targets.
North Korean Hackers Exploit Group-meeting team for Cyberattacks
These phony accounts allow hackers to target prominent Decentralized Finance (DeFi) project teams. They engage project teams as potential investors from chosen investment institutions.
To boost their credibility, they try to persuade teams to download a as a prerequisite for meeting planning. Project teams with strong security awareness realize the risks of downloading arbitrary s. Due to skilled and convincing mimicry, non-security experts may fall for these frauds.
After building trust with the project team, North Korean hackers arrange and coordinate meetings. They use two attack methods:
First, Group-meeting.team meetings are enticing the project team. This scheme’s perpetrators pretend to be interested in meeting or discussing with the team but share a destructive meeting link. After clicking the link, the project team faces a region access limitation. North Korean hackers trick the crew into downloading and running a location-changing . The hackers steal funds once the project team agrees to give them control of their computers.
Second, Hackers use Calendly’s “Add Custom Link” feature on event pages to insert malicious URLs and phishing. Calendly’s seamless integration with most project teams’ workflows makes it hard to spot these dangerous relationships. Project teams may accidentally click on these URLs and download and run hazardous apps.
SlowMist Urges Caution Amid Persistent Phishing Threats
SlowMist security advises Web3 users to be cautious due to these phishing scams’ persistence. Before accepting new connections, carefully confirm their identity through many techniques. Telegram 2FA increases account security. Be vigilant to avoid transaction security-related financial losses.
In the event of a malware infestation, disconnect from the internet and run a virus scan. You must immediately replace passwords for any relevant accounts on the hacked machine, including web browsers. If the compromised computer has digital wallets, transfer the funds immediately to a secure place.