Cryptocurrency
Archived copy of the hacked British Army Twitter account
Primary Source ↗Blockchain(s)
Bitcoin, Ethereum
Incident Details
The 362,000-follower verified Twitter account and 178,000-follower YouTube account for the British Army were simultaneously compromised, and used to shill two different crypto scams.On Twitter, the account details were changed to resemble the Possessed NFT project (as also happened to top Super Smash Bros. Ultimate player MkLeo in March). Tweets from the account announced a “new NFT collection” and linked to a fake minting website, complete with a fake counter showing the number of available NFTs appearing to dwindle.Meanwhile, the YouTube account was rebranded to resemble ARK Invest, the investment management firm founded by Cathie Wood. It ran a steady stream of fake videos cribbed from an old, real livestream with Elon Musk and Jack Dorsey, but surrounded with borders promoting “double your money” Bitcoin and Ether scams. This is a common YouTube scam, and one such scam earned crypto scammers $1.3 million in 24 hours back in May.
Technical Details
- Initial Attack Vector
- Smart contract exploit / hack
- Vendor / Product
- British Army social media accounts
Timeline
- 2022-07-03 Breach occurred
- 2022-07-03 Publicly disclosed