New Research Indicates That Telegram’s Blogging Platform Exploited in Hijacked Emails Revealing $3M Crypto Scams

From the end of 2019 through May 2022, INKY detected 1,429 malicious emails via Telegraph, an API launched by Telegram in 2016 that has been described as an anonymous blogging platform to go along with its popular messaging app. 

Recently, there’s been a massive uptick in the volume of these attacks: 1,288 of these emails were sent in 2022 alone. The payloads included cryptocurrency scams using techniques including brand impersonation, credential harvesting, hijacked accounts, and free website abuse to target Microsoft 365 users. 

The bitcoin address associated with this scam had received several transactions totalling almost three million dollars and the leger at blockchain.com showed that the scam worked several times.

You can view the report here.

Leave a Reply

Discover more from The IT Nerd

Subscribe now to keep reading and get access to the full archive.

Continue reading