Someone targeted security researchers using a fake crypto conference as a lure

Cybersecurity researchers were targeted by a hacker using a fake crypto conference as a lure to install malware. The attacker utilized Google Docs and custom scripts to trick professionals into running malicious software on their systems.
Why it matters
This highlights the increasing sophistication of social engineering attacks targeting high-level security experts.
If you are a malicious hacker, cybersecurity professionals may very well be the worst people in the world to try to hack, as there is a very good chance they are going to catch you.
A person pretending to work for a leading crypto news site targeted several cybersecurity professionals around the time of the hacking conferences Black Hat and Def Con earlier this month. The hacker approached attendees on social media site X, both via public replies and DMs, and then leveraged Google Docs in an attempt to trick the targets into installing malware, according to researchers.
On Wednesday, security firm Huntress published a blog post detailing the hacking campaign, which targeted one of its researchers, who pretended to go along with it to learn what the hacker was trying to do.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in