- Singapore authorities report $11.8 million in losses from a scam using fake crypto job offers and compromised software systems.
- Victims are approached on LinkedIn by bogus recruiters, then directed to coding assessments that install Malware on company devices.
- The malware captures session tokens to bypass multi-factor authentication, giving attackers access to internal source code and servers.
Singapore’s police force and cyber security agency have documented $11.8 million in losses from scammers posing as recruiters for cryptocurrency companies, using fake job offers to compromise victims’ employers. A joint advisory detailed how a victim was approached on LinkedIn by someone impersonating a recruiter, then moved to email where the sender used a spoofed domain closely resembling a real firm, according to The Straits Times and Channel NewsAsia.
Several interviews followed on Google Meet, with the interviewer keeping their camera off throughout. The victim was then sent to a spoofed website to complete a technical coding assessment on a company-issued device, downloading malicious software in the process.
The malware captured a session token, which bypassed multi-factor authentication and opened the victim’s Bitbucket account. From there, attackers altered the employer’s software systems and reached internal servers, collecting credentials used to bypass transaction limits and approval checks.
Researchers track this pattern as Contagious Interview, a long-running operation in which fake recruiters steer Web3 developers toward malicious code. North Korean Hackers have used similar tactics, while the Russian-speaking crew Crazy Evil built an entire fake Web3 company to lure applicants into installing wallet-draining malware.
✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.
