Newspaper Twitter account hacked to promote Goblintown phishing scam

2 years ago

A Twitter hacker has compromised the relationship of EL Universal, a Latin American newspaper, to beforehand a fraudulent goblintown.wtf giveaway, an Ethereum-based non-fungible token (NFT) project, on-chain expert @NFTherder unveiled.

Maybe idiosyncratic should archer the Latin American Newspaper Association that 1 of their newspaper's @ElUniversal twitter relationship was hacked connected June 4th and has been spamming Goblingtown scam nft tweets ever since. I mean, they lone person 5 cardinal followers … pic.twitter.com/rP55MEdDZo

— OKHotshot (@NFTherder) June 9, 2022

The attacker changed El Universal’s Twitter sanction to goblintown.wtf, but near the username, @ElUniversal, intact. Additionally, the malicious histrion linked a phishing URL to the account, hoping to bargain from unwitting goblintown.wtf holders. The URL swaps the N successful municipality with M.

According to @NFTherder, the attacker took power of El Universal’s relationship – which has 5.1 cardinal followers – connected June 4. Since then, the hacker has posted fraudulent tweets, promising to airdrop an further 10,000 Goblins.

The goblintown.wtf postulation has 9,999 NFTs, with the cheapest going for 5 Ethereum (ETH).

While the grade of the onslaught remains unknown, a Twitter idiosyncratic going by @topshotkief.eth claims to person mislaid 10 NFTs to the scam. Specifically, the idiosyncratic alleges that the attacker stole 2 Mutant Ape Yacht Club (MAYC) pieces and 8 Cool Cats.

@NFTherder further revealed:

Of people the Goblintowm scam does ApprovalForAll to bargain the assets of those that approve. It besides seems the wallet liable for @ElUniversal twitter relationship hack antecedently pulled disconnected an Azuki Beanz scam.

After in-depth analysis, the expert recovered that the code down the goblintowm scam and the Azuki Beanz onslaught is the same.

Attackers proceed targeting projects making headlines

This quality comes aft goblintown.wtf launched connected May 22 and rapidly roseate to the apical of NFT charts. Despite being little than a period old, the task has recorded a trading measurement exceeding $70 million, according to information from Cryptoslam. Goblintown.wtf’s occurrence comes arsenic flagship NFTs collections similar CryptoPunks, BAYC, Meebits, and Mutant Ape continue declining.

Goblintown NFTs connected merchantability successful OpenSea

The goblintown.wtf scam comes arsenic atrocious actors proceed attacking the NFT space. Earlier this month, an attacker compromised the Discord server of Yuga Labs’ Bored Ape Yacht Club (BAYC) task and stole astir $355,000 worthy of NFTs.

Before this, an exploit connected BAYC’s Instagram account resulted successful the theft of astatine slightest 54 NFTs. This hack came a fewer days up of Yuga Labs’ overhyped metaverse launch.

In May, renowned integer creator Mike Winkelmann – professionally known arsenic Beeple – had his Twitter relationship hacked. This onslaught came aft Beeple partnered with manner elephantine Louis Vuitton to make 30 NFTs.

The station Newspaper Twitter relationship hacked to beforehand Goblintown phishing scam appeared archetypal connected CryptoSlate.

View source