A new wave of phishing attacks is targeting users of X, formerly known as Twitter. The scheme relies on fraudulent emails designed to create panic by claiming that a login has been detected from a new device in an unusual location.
Stealing Credentials for Profit
According to security experts, the messages urge recipients to click a link to verify their identity. However, this is a trap intended to harvest login credentials. Once the attackers gain control of an account, they utilize it to disseminate cryptocurrency scams or launch additional phishing campaigns against the victim’s followers.
Subscribers are advised to remain vigilant. Rather than clicking links in unsolicited messages, users should manually navigate to the platform’s official settings to check for any suspicious login activity.
Source: The Guardian