ZachXBT shares video recording of jailed fake Safeguard Telegram bot scammer

Source Cryptopolitan

Crypto security sleuth ZachXBT has shared a video recording on his X account, exposing a hacker known as vKevin during a sophisticated scam via a fake Safeguard Telegram bot. The exploiter was believed to be working with other actors in the con while he was in a New York school.

On January 23, ZachXBT, a well-known figure in the crypto investigative community, released a 31-minute long video on social media platform X that captured ‘vKevin’ using Telegram to swindle money from victims. In the video, ‘vKevin’ was seen collaborating with accomplices while engaging in phishing activities aimed at unsuspecting victims.

The crypto security analyst was responding to a post made by user @pcaversaccio, who had warned the crypto community about the new deceptive tactic on Telegram, which he described as the “biggest security threat right now.”

The scam involved tricking victims into verifying their identity through a fake Safeguard bot. This allowed the hacker to gain unauthorized access to their Telegram accounts and, subsequently, their trading bot wallets. Once there, the exploiters could cart away victims’ assets, up to hundreds of thousands of dollars in some cases. 

Investigators identify new dangerous Telegram bot scam 

According to a medium explainer by blockchain security firm SlowMist, the fake safeguard Telegram scam has two infiltration methods. Scammers can leverage the bot to solicit users to give out private information, including passwords and verification codes. They can also plant malware viruses to hack into computers and directly steal information.

In the article published on January 18, SlowMist outlined how malicious actors create counterfeit accounts of key opinion leaders (KOLs) on X, strategically attaching Telegram group invitational links in comments to attract potential victims.

Users who join the “communities” through the link are then greeted with requests for a “verification” process. If they follow the steps, a malicious remote access Trojan (RAT) agent unleashes PowerShell commands that compromise any security installations, enabling the hacker to access the system without authorization.

Following ZachXBT’s post, one user inquired if the hacker ‘vKevin’ had been doxxed, to which ZachXBT confirmed with a simple “yes.” 

In one of the replies, a user shared a photo of the purported exploiter, although some specific details, like his immediate location or who he was working with, have yet to be disclosed.

The same hacker was responsible for Discord server breach in 2022

vKevin was purportedly responsible for another network breach that saw NFT holders lose over $300,000 on August 14, 2022. The update was revealed by X user @Iamdeadlyz. They explained how the hacker attacked DigikongNFT’s Discord when he deployed a webhook in the form of a fake MEE6 bot, within the server. 

This bot was designed to facilitate a phishing attack by using a bookmarklet to exfiltrate Discord authentication tokens from users. The phishing site linked to this attack was hosted at mee6.ca/verify, a domain registered through web service Namecheap and hosted on AWS with the IP address 23.22.5.68. 

Evidence of vKevin’s actions was shared on the general channel of the Discord server, although most of the sensitive information was redacted.

Namecheap later confirmed that they had suspended the abusive service in response to this security breach, but vKevin and other hackers had already made away with the NFT collections.

From Zero to Web3 Pro: Your 90-Day Career Launch Plan

Disclaimer: For information purposes only. Past performance is not indicative of future results.
placeholder
Silver Price Forecasts: XAG/USD approaches $78.00 boosted by Iran peace hopesSilver (XAG/USD) is rushing higher on Tuesday, reaching fresh two-week highs right below $78.00 at the time of writing, after bouncing from lows around $72.60 on Monday.
Author  TradingKey
10 hours ago
Silver (XAG/USD) is rushing higher on Tuesday, reaching fresh two-week highs right below $78.00 at the time of writing, after bouncing from lows around $72.60 on Monday.
placeholder
Trump Blockade of Strait of Hormuz Drives Oil Price Surge, Will This Be Another TACO? On Sunday (April 13), Trump announced following the breakdown of U.S.-Iran negotiations that the U.S. Navy would impose a maritime blockade on Iranian ports starting Monday.Following the
Author  TradingKey
Yesterday 10: 27
On Sunday (April 13), Trump announced following the breakdown of U.S.-Iran negotiations that the U.S. Navy would impose a maritime blockade on Iranian ports starting Monday.Following the
placeholder
U.S.-Iran Standoff in the Strait of Hormuz. Iranian-Controlled Strait Has Not Resumed Passage; Why Does Trump Still Want a Military Blockade?Following the failure of U.S.-Iran peace talks, President Trump announced on Sunday that the U.S. Navy will immediately blockade the Strait of Hormuz and prevent any vessels that have pai
Author  TradingKey
Yesterday 03: 20
Following the failure of U.S.-Iran peace talks, President Trump announced on Sunday that the U.S. Navy will immediately blockade the Strait of Hormuz and prevent any vessels that have pai
placeholder
WTI jumps roughly 8% toward $100 as US blockades Strait of HormuzWest Texas Intermediate (WTI) – the US oil benchmark – has opened the week with a bullish gap, climbing roughly 8%, looking to retarget the $100 threshold.
Author  Mitrade
Yesterday 01: 37
West Texas Intermediate (WTI) – the US oil benchmark – has opened the week with a bullish gap, climbing roughly 8%, looking to retarget the $100 threshold.
placeholder
When Will Gold Rise Under the Pressure of High Oil Prices? On April 8, spot gold ( XAUUSD) at one point surged past $4,800 per ounce, hitting a peak of $4,857; however, it fell back to $4,698 on April 9, wiping out all gains in just 48 hours. Thi
Author  TradingKey
Apr 10, Fri
On April 8, spot gold ( XAUUSD) at one point surged past $4,800 per ounce, hitting a peak of $4,857; however, it fell back to $4,698 on April 9, wiping out all gains in just 48 hours. Thi
goTop
quote