Someone targeted security researchers using a fake crypto conference as a lure
Security experts and conference attendees face a targeted phishing campaign involving a fake crypto event and booby-trapped documents.
Velocity
How fast coverage is spreading — measured hourly from article rate × source diversity. How this works →
📍 How it ended
Security experts and attendees of Black Hat and DEF CON were targeted in a persistent phishing campaign using a fake crypto conference and a booby-trapped Google Doc to deliver malware and capture details. Hackers impersonated a CoinDesk executive as part of the scheme involving Google Doc Apps Script.
The coverage quieted without a definitive conclusion regarding the final outcome of the operation.
Epilogue added 42d ago, after coverage quieted.
The brief
Recent reports from outlets including TechRadar, TechCrunch, Infosecurity Magazine, and SC Media reveal an ongoing security threat directed at professionals within the cybersecurity industry. Specifically, attendees of major industry gatherings such as Black Hat and DEF CON have been targeted by malicious actors utilizing sophisticated social engineering tactics. According to the coverage, the scheme involves a fabricated cryptocurrency conference and the impersonation of a CoinDesk executive to deceive victims. Coverage does not yet specify the total number of individuals compromised or the exact identities of the perpetrators behind the operation. Additional technical breakdowns provided by Huntress and itsecurityguru.org detail the exact mechanisms employed in the attacks.
The campaign relies heavily on a booby-trapped Google Doc containing malicious Apps Script designed to deliver malware and prompt users into handing over sensitive details. This lure was deployed directly against researchers following the conclusion of the DEF CON conference. While sources such as Zamin.uz and Bitcoin World confirm the broad outlines of the fake crypto conference scam, specific details regarding the broader infrastructure of the threat group remain under investigation by reporting organizations. This malicious activity fits into a broader pattern of persistent post-conference phishing campaigns that exploit the professional interests and networking habits of security researchers. By leveraging familiar industry touchpoints like high-profile crypto media brands and major hacker conventions, the attackers aim to bypass the natural skepticism of technical experts.
Coverage emphasizes that targeting cybersecurity professionals immediately after major conventions represents a calculated approach by the threat actors, capitalizing on the high volume of post-event communications and follow-up networking requests. As the investigation into the post-DEF CON phishing campaign continues, observers and participants are tracking further updates from technical analysts and security news outlets. Coverage does not yet specify whether law enforcement agencies have intervened or if additional conference dates outside of the Black Hat and DEF CON cycle have been targeted by the same malicious network. Future updates from reporting organizations are expected to provide more insight into the specific strains of malware delivered through the Google Doc Apps Script mechanism and any broader implications for the affected technical community.
Synthesized by PULSE from the headlines below under a strict no-invention contract. ✓ fact-checked: all claims supported by sources Updated 43d ago.
Quick answers
Who was targeted by the fake crypto conference scam?
Security experts and attendees of the Black Hat and DEF CON conferences were targeted by the campaign.
What mechanism was used to deliver the malware?
According to Huntress and itsecurityguru.org, a booby-trapped Google Doc utilizing Apps Script was used to deliver malware and solicit details.
Which executive was impersonated in the scheme?
Coverage from Bitcoin World notes that hackers impersonated a CoinDesk executive as part of the lure.
Coverage (8)
- Security experts targeted by fake crypto conference in scam to hand over details TechRadar · 45d ago
- Fake Crypto Exec Used Booby-Trapped Google Doc to Target Security Researcher After DEF CON itsecurityguru.org · 45d ago
- Cybersecurity Experts Targeted in Fake Conference Scam Zamin.uz · 45d ago
- Def Con Attendees Targeted by Persistent Phishing Campaign Infosecurity Magazine · 45d ago
- Fake Crypto Conference: Hackers Impersonate CoinDesk Executive To Target Researchers Bitcoin World · 45d ago
- Black Hat/DEF CON attendees targeted in malware scheme with Google Doc lure SC Media · 45d ago
- Post-DEF CON Phishing Uses Google Doc Apps Script to Deliver Malware Huntress · 45d ago
- Someone targeted security researchers using a fake crypto conference as a lure TechCrunch · 45d ago
Topics
Related trends
Trump Is Hosting Yet Another Meme Coin Dinner: Here Are the Details
3 news sources are covering this Business story right now — PULSE is tracking how fast it spreads.
Community Banks Swing Back at Trump Regulators Over Crypto Charters
8 news sources are covering this Business story right now — PULSE is tracking how fast it spreads.
Trump’s “Most EXCLUSIVE DINNER IN THE WORLD”
3 news sources are covering this Business story right now — PULSE is tracking how fast it spreads.
Live updates: Bitcoin turns lower as rates rise, consumer confidence plunges
Bitcoin turns lower as interest rates rise and consumer confidence plunges, according to market coverage.
Bitcoin's Days Are Numbered, And So Are Strategy's (NASDAQ:MSTR)
5 news sources are covering this Business story right now — PULSE is tracking how fast it spreads.
Bitcoin ETFs have erased a $5.8 billion hole
Bitcoin exchange-traded products recover ground as investors acquire nearly $1 billion, erasing a massive market deficit.