logo

Hackers hijack govt and business accounts on X for crypto scams

ID: 3edc87e2-916a-514e-b76d-3f2afeb73c64

STIX ID: report--3edc87e2-916a-514e-b76d-3f2afeb73c64

Feed Name: Bleeping Computer

Threat Score
68/100

Date Published: 2024-01-04

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

Hackers are increasingly compromising verified X (formerly Twitter) gold/grey accounts belonging to organizations and government profiles to push cryptocurrency scams and crypto-draining sites; recent high-profile incidents include the hijacking of Mandiant's X account that promoted a fake airdrop and drained wallets. Researchers and CloudSEK report a nascent underground market selling compromised verified accounts (priced ~$1,200–$2,500) and offering affiliate-adding services to lend credibility to scam accounts; recommended mitigations include closing dormant accounts, reviewing security settings, enabling two-factor authentication, auditing connected apps, and monitoring active sessions.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.