๐ "2FA anyone right now. Ask them to answer a question only they would know, anything."
I have had 18 people now confirm they fell to the same phishing attack, many more who caught it on time, but it gets worse:
1. They contacted people for MC positions at ETHCC events using a dupe account and targeting smaller but active niche TG communities (I was contacted for Cannes through a blockchain girlies chat by someone imitating Rimi, but felt the energy was off).
2. They gained access to the first TG account through a faux Google meet link to discuss "speaking". This person was whiped and their TG taken over in under a minute.
3. They used this account to contact distant mutuals about potential collabs or small events, or asked for feedback on a doc.
4. They used the hacked accounts together and gained access to one person's linkedin to send confirmation/yes, that's me!
5. Conversations have ran from one week to over a month before links were sent.
6. This escalated because info was siloed in one group or some people were afraid to say the got attacked.
I'm not and I don't want rhia to happen to you.
I was lucky to only have one wallet accessible due to actively using the browser extension, have a boatload of 2FA, a spare brand new computer, and a cracked team who caught it immediately.
Every person has said messages were written in the style of the persn they were being targeted by. One person knew of the mutual for years. All 18 are careful, smart, well seasoned. these are only what I know from spiderwebbing my community.
When you only cross paths at conferences, or are enough to be friendly but not "friends", that's the line the hackers are finding, not consistent comms where you know they're hacked. They look for a few groups together but one of you isn't too active, occassional idea sharing but no long or consistent conversations. Enough trust and familiarity, but lines at knowledge of personal events. And they take their time in the conversation
I have been advised to file a police report and submit the wallets to the FBI as other's have I also shared in as many groups as possible becauase I believe it's important.
2FA anyone right now. Ask them to answer a question only they would know, anything. Don't take any connection or conversation for granted.
Photo of one of my mutuals who responded she got the same anchor message after I posted in one of our groups about this. I asked for more info multiple times, was told it was being developed as the group came together (not odd, tbh, and knowing some people the hacker name dropped), and was caught on, "Would you review our online docs so far?" I clicked.
Hope this helps you.
Be safe.
Use hardware.
2FA everything.
Don't click anything.
Put malware protection on your phone.
Don't store sensitive info on your computer.