PSA: Malicious Telegram Links
2 years ago
So I've heard of a number of instances (and witnessed one firsthand) of Telegram accounts being compromised by what seems to be phishing attacks.
The compromised account will ask (or demand) that you help them with some sort of account problem. And this fake "help" involves the victim joining this chat with a Telegram bot, which is presumably tied how the phishing attack works.
In the instance I witnessed, their English was frankly a bit shit, so the "logic" behind the scheme sounded very flawed and didn't make much sense. I THINK they were *trying* to tell me that they needed another user to verify the legitimacy of their account, but.. Could be wrong. Either way, it's 100% bullshit and no suspicious web links nor account links should be followed. There is no way that YOU can solve an account problem for someone else by using a bot or following any links.
There are likely other variations of context and covers for the scam, too.
The perpetrators may take it a step further and attempt to damage victims' reputation and take advantage of other sensitive information.
If you see a compromised account, report it if possible. Then MAKE SURE to block and delete the chat immediately.
The compromised account will ask (or demand) that you help them with some sort of account problem. And this fake "help" involves the victim joining this chat with a Telegram bot, which is presumably tied how the phishing attack works.
In the instance I witnessed, their English was frankly a bit shit, so the "logic" behind the scheme sounded very flawed and didn't make much sense. I THINK they were *trying* to tell me that they needed another user to verify the legitimacy of their account, but.. Could be wrong. Either way, it's 100% bullshit and no suspicious web links nor account links should be followed. There is no way that YOU can solve an account problem for someone else by using a bot or following any links.
There are likely other variations of context and covers for the scam, too.
The perpetrators may take it a step further and attempt to damage victims' reputation and take advantage of other sensitive information.
If you see a compromised account, report it if possible. Then MAKE SURE to block and delete the chat immediately.