宇宙链 宇宙链
Ctrl+D收藏宇宙链

Common Scams on Mobile Devices

作者:

时间:1900/1/1 0:00:00

CommunitySubmission-Author:WhoTookMyCrypto.com

2017wasaremarkableyearforthecryptocurrencyindustryastheirrapidincreaseinvaluationspropelledthemintomainstreammedia.Unsurprisingly,thisgarneredthemimmenseinterestfromboththegeneralpublicaswellascybercriminals.Therelativeanonymityofferedbycryptocurrencieshasmadethemafavouriteamongstcriminalswhooftenusethemtobypasstraditionalbankingsystemsandavoidfinancialsurveillancefromregulators.

Giventhatpeoplearespendingmoretimeontheirsmartphonesthandesktops,itisthusnotsurprisingthatcybercriminalshavealsoturnedtheirattentiontothem.Thefollowingdiscussionhighlightshowscammershavebeentargetingcryptocurrencyusersthroughtheirmobiledevices,alongwithafewstepsthatuserscantaketoprotectthemselves.

Fakecryptocurrencyapps

Fakecryptocurrencyexchangeapps

Themostwell-knownexampleofafakecryptocurrencyexchangeappisprobablytheoneofPoloniex.PriortothelaunchoftheirofficialmobiletradingappinJuly2018,GooglePlaywasalreadylistingseveralfakePoloniexexchangeapps,whichwereintentionallydesignedtobefunctional.ManyusersthatdownloadedthosefraudulentappshadtheirPoloniexlogincredentialscompromised,andtheircryptocurrencieswerestolen.SomeappsevenwentastepfurtherrequestingthelogincredentialsofusersGmailaccounts.Itisimportanttohighlightthatonlyaccountswithouttwo-factorauthentication(2FA)werecompromised.

Bitcoin?com宣布“CEX教育计划”,鼓励FTX等事件受害者使用DeFi和自托管服务:11月20日消息,Bitcoin.com宣布创建CEX教育计划(CEX Education Program),将奖励受中心化加密公司破产影响的人,同时鼓励人们使用DeFi和自托管服务。Bitcoin.com将于12月推出钱包奖励和实用性代币VERSE,代币供应总量的5%专用于CEX教育计划。

通过在getverse.com注册,FTX、BlockFi、Celsius、Voyager和其他失败的中心化实体的受害者将有资格从CEX教育计划中获得奖励。在未来,Bitcoin.com将继续使用该计划来帮助受害者,并激励他们使用自托管产品。(Bitcoin.com)[2022/11/20 22:10:18]

Thefollowingstepscanhelpprotectyouagainstsuchscams.

Checktheexchange’sofficialwebsitetoverifyiftheyindeedofferamobiletradingapp.Ifso,usethelinkprovidedontheirwebsite.Readthereviewsandratings.Fraudulentappsoftenhavemanybadreviewswithpeoplecomplainingaboutgettingscammed,somakesuretocheckthembeforeyoudownload.However,youshouldalsobescepticalofappsthatpresentperfectratingsandcomments.Anylegitimateapphasitsfairshareofnegativereviews.Checktheappdeveloperinformation.Lookforwhetheralegitimatecompany,emailaddress,andwebsiteareprovided.Youshouldalsoperformanonlinesearchontheinformationprovidedtoseeiftheyarereallyrelatedtotheofficialexchange.Checkthenumberofdownloads.Thedownloadcountshouldalsobeconsidered.Itisunlikelythatahighlypopularcryptocurrencyexchangewouldhaveasmallnumberofdownloads.Activate2FAonyouraccounts.Althoughnot100%secure,2FAismuchhardertobypassandcanmakeahugedifferenceinprotectingyourfunds,evenifyourlogincredentialsarephished.Fakecryptocurrencywalletapps

Symbiosis Finance 完成 200 万美元融资 Blockchain.com 领投:10月21日消息,稳定币跨链桥 Symbiosis Finance 完成 200 万美元融资,由 Blockchain.com Ventures 领投,Wave Financial、BTC Inc、KuCoin Labs、Injective Labs、DAO Maker、Primitive Ventures、Kairon Labs、Gate.io 和 Richard Dai 参投。Symbiosis 目前已经支持多个网络的测试网,包括以太坊、BSC、Polygon、Avalanche 和 HECO,还将支持每一个二层网络,将在主网推出之前接入更多网络。(CoinDesk)[2021/10/21 20:46:58]

Therearemanydifferenttypesoffakeapps.Onevariationseekstoobtainpersonalinformationfromuserssuchastheirwalletpasswordsandprivatekeys.

Insomecases,fakeappsprovidepreviouslygeneratedpublicaddressestousers.Sotheyassumefundsaretobedepositedintotheseaddresses.However,theydonotgainaccesstotheprivatekeysandthusdonothaveaccesstoanyfundsthataresenttothem.

SuchfakewalletshavebeencreatedforpopularcryptocurrenciessuchasEthereumandNeoand,unfortunately,manyuserslosttheirfunds.Herearesomepreventivestepsthatcanbetakentoavoidbecomingavictim:

Theprecautionshighlightedintheexchangeappsegmentaboveareequallyapplicable.However,anadditionalprecautionyoucantakewhendealingwithwalletappsistomakesurebrandnewaddressesaregeneratedwhenyoufirstopentheapp,andthatyouareinpossessionoftheprivatekeys(ormnemonicseeds).Alegitimatewalletappallowsyoutoexporttheprivatekeys,butitisalsoimportanttoensurethegenerationofnewkeypairsisnotcompromised.Soyoushoulduseareputablesoftware(preferablyopensource).Eveniftheappprovidesyouaprivatekey(orseed),youshouldverifywhetherthepublicaddressescanbederivedandaccessedfromthem.Forexample,someBitcoinwalletsallowuserstoimporttheirprivatekeysorseedstovisualizetheaddressesandaccessthefunds.Tominimizetherisksofkeysandseedsbeingcompromised,youmayperformthisonanair-gappedcomputer(disconnectedfromtheinternet).Cryptojackingapps

NFT数据:新项目TIME Piece Community 24小时成交量达2309万美元:DappRadar最新数据显示,过去24小时成交量排名前十的NFT项目及其成交量涨跌幅如下:TIMEPiece Community、Axie Infinity(+26.65%)、CryptoPunks(+135.61%)、loomlocknft(+51.19%)、Bored Ape Yacht Club(+96.99%)、Art Blocks(-21.16%)、The WynLambo、LOSTPOETS(-62.14%%)、Sup Ducks(+34.16%)、Cupcats Official(-56.84%)。

其中,CryptoPunks 24小时成交量领涨(+135.61%),为987万美元;LOSTPOETS 24小时成交量领跌(-62.14%%),为238万美元。[2021/9/24 17:03:37]

Cryptojackinghasbeenahotfavoriteamongstcybercriminalsduetothelowbarrierstoentryandlowoverheadsrequired.Furthermore,itoffersthemthepotentialforlong-termrecurringincome.DespitetheirlowerprocessingpowerwhencomparedtoPCs,mobiledevicesareincreasinglybecomingatargetofcryptojacking.

Apartfromweb-browsercryptojacking,cybercriminalsarealsodevelopingprogramsthatappeartobelegitimategaming,utilityoreducationalapps.However,manyoftheseappsaredesignedtosecretlyruncrypto-miningscriptsinthebackground.

Therearealsocryptojackingappsthatareadvertisedaslegitimatethird-partyminers,buttherewardsaredeliveredtotheappdeveloperinsteadoftheusers.

Tomakethingsworse,cybercriminalshavebecomeincreasinglysophisticated,deployinglightweightminingalgorithmstoavoiddetection.

超算大陆联合ZG.COM于9月17日19:00开启云算力抢购活动:据官方消息,超算大陆云算力平台联合ZG.COM,将于9月17日19:00在ZG直播间开启云算力1折抢购活动,届时用户可通过直播第一时间了解抢购信息。本次抢购及申购的活动页面均在ZG.COM官网进行,参与用户届时可通过NEW+活动专区、官网首页或APP首页轮播图点击进入参与抢购。

超算大陆是Filecoin云算力挖矿标准引领者,聚焦于云算力挖矿分时租赁共享领域,为全球用户提供算力资产解决方案。已拥有比特币中国集团的战略投资、SBI集团日本软银投资,是迄今为止Filecoin挖矿行业最受资本追捧的明星项目。[2020/9/17]

Cryptojackingisincrediblyharmfultoyourmobiledevicesastheydegradeperformanceandaccelerateswearandtear.Evenworse,theycouldpotentiallyactasTrojanhorsesformorenefariousmalware.

Thefollowingstepscanbetakentoguardagainstthem.

Onlydownloadappsfromofficialstores,suchasGooglePlay.Piratedappsarenotpre-scannedandaremorelikelytocontaincryptojackingscripts.Monitoryourphoneforexcessivebatterydrainingoroverheating.Oncedetected,terminateappsthatarecausingthis.Keepyourdeviceandappsupdatedsothatsecurityvulnerabilitiesgetpatched.Useawebbrowserthatguardsagainstcryptojackingorinstallreputablebrowserplug-ins,suchasMinerBlock,NoCoin,andAdblock.Ifpossible,installmobileantivirussoftwareandkeepitupdated.Freegiveawayandfakecrypto-minerapps

Theseareappsthatpretendtominecryptocurrenciesfortheirusersbutdon’tactuallydoanythingapartfromdisplayingads.Theyincentivizeuserstokeeptheappsopenbyreflectinganincreaseintheuser’srewardsovertime.Someappsevenincentivizeuserstoleave5-starratingsinordertogetrewards.Ofcourse,noneoftheseappswereactuallymining,andtheirusersneverreceivedanyrewards.

Coinbase用户可通过与教育平台互动获得COMP:Coinbase客户现在可以通过在交易所的教育平台Coinbase Earn上“观看代币市场协议课程并完成测验”,从而获得COMP。(theblockcrypto)[2020/6/26]

Toguardagainstthisscam,understandthatforthemajorityofcryptocurrencies,miningrequireshighlyspecializedhardware(ASICs),meaningitisnotfeasibletomineonamobiledevice.Whateveramountsyouminewouldbetrivialatbest.Stayawayfromanysuchapps.

ClipperappsSuchappsalterthecryptocurrencyaddressesyoucopyandreplacethemwiththoseoftheattacker.Thus,whileavictimmaycopythecorrectrecipientaddress,theonetheypastetoprocessthetransactionisreplacedbythoseoftheattacker.

Toavoidfallingvictimtosuchapps,herearesomeprecautionsyoucantakewhenprocessingtransactions.

Alwaysdoubleandtriplechecktheaddressyouarepastingintotherecipientfield.Blockchaintransactionsareirreversiblesoyoushouldalwaysbecareful.Itisbesttoverifytheentireaddressinsteadofjustportionsofit.Someappsareintelligentenoughtopasteaddressesthatlooksimilartoyourintendedaddress.SIMswappingInaSIMswappingscam,acybercriminalgainsaccesstothephonenumberofauser.TheydothisbyemployingsocialengineeringtechniquestotrickmobilephoneoperatorsintoissuinganewSIMcardtothem.Themostwell-knownSIMswappingscaminvolvedcryptocurrencyentrepreneurMichaelTerpin.HeallegedthatAT&Twasnegligentintheirhandlingofhismobilephonecredentialsresultinginhimlosingtokensvaluedatmorethan20millionUSdollars.

Oncecybercriminalshavegainedaccesstoyourphonenumber,theycanuseittobypassany2FAthatreliesonthat.Fromthere,theycanworktheirwayintoyourcryptocurrencywalletsandexchanges.

AnothermethodcybercriminalscanemployistomonitoryourSMScommunications.Flawsincommunicationsnetworkscanallowcriminalstointerceptyourmessageswhichcanincludethesecond-factorpinmessagedtoyou.

Whatmakesthisattackparticularlyconcerningisthatusersarenotrequiredtoundertakeanyaction,suchasdownloadingafakesoftwareorclickingamaliciouslink.

Topreventfallingpreytosuchscams,herearesomestepstoconsider.

DonotuseyourmobilephonenumberforSMS2FA.Instead,useappslikeGoogleAuthenticatororAuthytosecureyouraccounts.Cybercriminalsareunabletogainaccesstotheseappseveniftheypossessyourphonenumber.Alternatively,youmayusehardware2FAsuchasYubiKeyorGoogle'sTitanSecurityKey.Donotrevealpersonalidentifyinginformationonsocialmedia,suchasyourmobilephonenumber.Cybercriminalscanpickupsuchinformationandusethemtoimpersonateyouelsewhere.Youshouldneverannounceonsocialmediathatyouowncryptocurrenciesasthiswouldmakeyouatarget.Orifyouareinapositionwhereeveryonealreadyknowsyouownthem,thenavoiddisclosingpersonalinformationincludingtheexchangesorwalletsyouuse.Makearrangementswithyourmobilephoneproviderstoprotectyouraccount.Thiscouldmeanattachingapinorpasswordtoyouraccountanddictatingthatonlyuserswithknowledgeofthepincanmakechangestotheaccount.Alternatively,youcanrequiresuchchangestobemadeinpersonanddisallowthemoverthephone.WiFiCybercriminalsareconstantlyseekingentrypointsintomobiledevices,especiallytheonesofcryptocurrencyusers.OnesuchentrypointisthatofWiFiaccess.PublicWiFiisinsecureandusersshouldtakeprecautionsbeforeconnectingtothem.Ifnot,theyriskcybercriminalsgainingaccesstothedataontheirmobiledevices.TheseprecautionshavebeencoveredinthearticleonpublicWiFi.

ClosingthoughtsMobilephoneshavebecomeanessentialpartofourlives.Infact,theyaresointertwinedwithyourdigitalidentitythattheycanbecomeyourgreatestvulnerability.Cybercriminalsareawareofthisandwillcontinuetofindwaystoexploitthis.Securingyourmobiledevicesisnolongeroptional.Ithasbecomeanecessity.Staysafe.

标签:THEINGAPPYOUEthereal直译RATINGcointiger交易所app下载youkey

火币网下载官方app热门资讯
蔡奇:努力建设全球区块链科技创新和产业发展高地

原标题:努力建设全球区块链科技创新和产业发展高地!蔡奇在构建新发展格局讲座上对区块链技术发展提要求1月15日下午,市委理论学习中心组学习会举办构建新发展格局讲座.

1900/1/1 0:00:00
HomiEx(红米交易所)将于 1月15日14:00 上线BNB

亲爱的用户: 红米交易所将上线BNB/USDT交易对,具体时间安排如下。开放交易时间:1月15日14:00(UTC8)?开放充值时间:1月15日14:00(UTC8)?开放提现时间:1月15日14:00(UTC8)?关于BNBBina.

1900/1/1 0:00:00
Gate.io 今日ETH2.0 PoS挖矿奖励已发放,年均收益率为14%

Gate.io今日ETH2.0PoS挖矿奖励已发放,用户可以到账单明细中查看详情。Gate.io于12月21日起为ETH2持仓用户按14日平均持仓分发ETH2.0PoS挖矿奖励,当前年均收益率为14%,挖矿收益每日分发,目前获得每日收.

1900/1/1 0:00:00
Gate.io 支持波卡Polkadot和Kusama平行链插槽拍卖公告

为全面支持波卡生态发展,Gate.io支持波卡平行链及其先驱链Kusama插槽拍卖,并将在芝麻金融理财宝中上线对应产品,用户可通过理财宝便捷地参与Polkadot和Kusama插槽拍卖并赚取项目奖励,敬请期待!此前.

1900/1/1 0:00:00
一个常见的疑惑:稳定币供应量增加是否决定了比特币走势?

在过去的几周中,行情图表中的比特币崛起使该行业的其他发展蒙上了阴影。从去年11月26日到截至发稿时间,比特币增长了123%,我们将在稍后讨论稳定币这一主题时,阐述该时间表的特殊重要性.

1900/1/1 0:00:00
BTC 与 ETH、DOT 价格相关性超 80%?

分析过去30天比特币和山寨币价格之间的相互依存关系。在2021年1月的第一周内,比特币价格同比增长414%,突破38000美元。飙升的部分原因是由机构投资者和广大散户的兴趣增加引发的.

1900/1/1 0:00:00