Emblem Vault CEO Loses $100K in Crypto After Zoom Call Malware Attack

Emblem Vault CEO Loses $100,000 in Crypto Due to Zoom Call Malware Attack

  • Emblem Vault CEO Jake Gallen lost over $100,000 in crypto assets due to Malware installed during a Zoom call.
  • The threat actor, known as “ELUSIVE COMET,” used social engineering tactics to gain remote access through Zoom’s default settings.
  • Zoom’s default settings allow meeting participants to request remote control access of other users’ computers.

Jake Gallen, CEO of NFT platform Emblem Vault, has issued a warning about video conferencing app Zoom after losing over $100,000 in cryptocurrency assets to a sophisticated Hacker. On April 11, Gallen reported on X (formerly Twitter) that he experienced a "complete computer compromise" resulting in the theft of Bitcoin and Ethereum from multiple wallets.

- Advertisement -

Following the incident, Gallen revealed he had been working with Cybersecurity firm The Security Alliance (SEAL) to investigate the attack, which they attributed to a threat actor identified as "ELUSIVE COMET." The scam occurred during what Gallen believed was a legitimate interview over Zoom with a crypto personality.

"We were able to retrieve a malware file that was installed on my computer during a Zoom call with a YouTube personality of over 90k subs," Gallen stated on April 14. The CEO explained that he had arranged the interview after being contacted by a verified X account with 26,000 followers claiming to be the founder of a crypto mining platform. During the call, the scammer kept their camera off while convincing Gallen to install malware called "GOOPDATE," which granted access to his crypto wallets.

Zoom’s Default Security Settings Under Scrutiny

The security vulnerability centers on Zoom’s default settings, which automatically allow meeting participants to request remote access to another user’s computer. "For this scam to take place, it’s said that the guest of the Zoom video call allows remote access to the host of the call, which is a requestable feature that is DEFAULT ON for every Zoom account," Gallen warned.

NFT collector Leonidas confirmed this default setting and advised crypto industry professionals to disable the remote access feature. SEAL security researcher Samczsun told Cointelegraph that while the feature is enabled by default, "the victim still needs to be social engineered into granting access."

Broader Threat to Crypto Community

- Advertisement -

According to SEAL, ELUSIVE COMET is connected to Aureon Capital, a supposedly legitimate venture capital firm that serves as a front for fraudulent activities. The security firm reports that this threat actor has stolen "millions of dollars" through carefully planned social engineering schemes targeting cryptocurrency holders.

The Hackers also gained access to Gallen’s X account in an attempt to lure additional victims through private messages. Gallen noted that the attackers even accessed his Ledger wallet, despite him having rarely logged in and never digitally recording the password.

SEAL has established an emergency hotline on Telegram for users who may have interacted with Aureon Capital. Zoom did not immediately respond to requests for comment on the security concerns.

- Advertisement -

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -

Latest News

Bitcoin Cash Surges 5%, Analysts See Bullish Breakout Ahead

Bitcoin Cash (BCH) rose 5.25% on Sunday, reaching $583.64.The token has gained over 17%...

Ripple Gains Momentum: XRP Eyes $15 Amid Banking License Hopes

Ripple (XRP) is trading at $3.47 after a 0.13% increase in the past 24...

Crypto Analyst Claims Bitcoin OGs Losing Faith Amid Institutions

Early Bitcoin investors are reportedly selling their holdings amid increased institutional participation.Analyst Scott Melker...

Solo Bitcoin Miner Strikes Block, Earns $373K Amid Rising Difficulty

A solo Bitcoin miner earned $372,773 by mining block 907283 on Saturday.The block contained...

Coinbase Base App Rebrand Sparks Zora Token and SocialFi Surge

Coinbase rebranded its Wallet to the Base App on July 16, sparking a surge...

Must Read

What Are Sniper Bots Used in Defi Trading?

You've heard about DeFi, but what about sniper bots? These high-speed trading tools are shaking up the crypto scene.But don't fret, you're not...