X users at risk as crypto scammers exploit new design flaw
Crypto scammers have found a new way to abuse X interface to propagate scams, fake giveaways, and deceptive Telegram channels. As reported by BleepingComputer, fraudsters have started actively taking advantage of what appears to be a user interface flaw, enabling them to create seemingly legitimate URLs containing malicious content. This flaw, initially identified by X user @rcwht_, empowers scammers to publish tweets that mimic those from authentic accounts. Interesting scam crypto-related tweets. Link looks like it should direct to binance, but actually direct to some scammy account. Been tagged in two of these and they both use https://t.co/2HhH3FW3nT – anyone know whats going on here? pic.twitter.com/NVtFkm12d6 — Rob White (@rcwht_) December 17, 2023 According to BleepingComputer, scammers can change the status_id field, while putting the legitimate tag in the account_name field. For instance: https://x.com/[account_name]/status/[status_id] would look like ...