Application security, Threat Management, Incident Response, TDR

Bitcoin scammers impersonate Elon Musk, hack Target’s Twitter account

Scammers impersonating Elon Musk managed to hack the verified Twitter accounts of Target and several others in a cryptocurrency fraud scheme promising huge Bitcoin giveaways Tuesday morning.

Hackers were briefly able to get ahold of the Target Twitter page for about a half hour when they used the big-box retailer’s account to promote “the biggest crypto-giveaway in the world!" promising to give away nearly 5,000 Bitcoin if the victim’s first send along payments of the cryptocurrency.

https://twitter.com/Financialtailor/status/1062299631550390272?ref_src=twsrc%5Etfw%7Ctwcamp%5Etweetembed%7Ctwterm%5E1062299631550390272&ref_url=https%3A%2F%2Fwww.usatoday.com%2Fstory%2Fmoney%2F2018%2F11%2F13%2Ftwitter-bitcoin-scam-elon-musk-target%2F1986017002%2F

"We present cryptocurrency payments for your purchases in our store, and want to celebrate this event with all users!" the scammers said on Target's Twitter account, according to screenshots taken of the rogue tweets.

Furthermore, the hackers also gained unauthorized access to several Twitter verified accounts, switched the names and profile picks to those of Elon Musk, and promoted similar scams to promote similar scams on other compromised pages and in some cases even paying Twitter to promote the fraudulent ads.

https://twitter.com/Target/status/1062384241445613568

“Early this morning, our Twitter account was inappropriately accessed,” Target tweeted after regaining control of its account. “The access lasted for approx. half an hour & one fake tweet was posted during that time about a bitcoin scam. We have regained control of the account, are in close contact with Twitter & are investigating now.”

Get daily email updates

SC Media's daily must-read of the most current and pressing daily news

By clicking the Subscribe button below, you agree to SC Media Terms and Conditions and Privacy Policy.