Hijacked – Earlybirds Invest https://earlybirdsinvest.com Latest Crypto News Sun, 08 Jun 2025 15:24:31 +0000 en-US hourly 1 https://wordpress.org/?v=6.9.7 https://i0.wp.com/earlybirdsinvest.com/wp-content/uploads/2024/12/cropped-New-Project-2024-12-17T235703.455.png?fit=32%2C32&ssl=1 Hijacked – Earlybirds Invest https://earlybirdsinvest.com 32 32 240146708 $4.4 Million Cryptojacking Bust: Ukrainian Man Hijacked 5,000 Hosting Accounts https://earlybirdsinvest.com/4-4-million-cryptojacking-bust-ukrainian-man-hijacked-5000-hosting-accounts/ https://earlybirdsinvest.com/4-4-million-cryptojacking-bust-ukrainian-man-hijacked-5000-hosting-accounts/#respond Sun, 08 Jun 2025 15:24:31 +0000 https://earlybirdsinvest.com/4-4-million-cryptojacking-bust-ukrainian-man-hijacked-5000-hosting-accounts/

A man from Ukraine has been arrested for using a hosting company’s servers to mine cryptocurrency without permission, according to a June 4 statement by the country’s police officers.

Authorities reported the 35-year-old, who lives in the Poltava region, had been looking for weak spots in the digital systems of various companies since at least 2018.

Police claimed he gained access to over 5,000 user accounts at one international hosting service that rents out servers for websites and online tools.

What is a Bitcoin & How Does it work? (Animated Explainer)

Did you know?

Want to get smarter & wealthier with crypto?

Subscribe – We publish new crypto explainer videos every week!

After gaining access to the accounts, he allegedly set up virtual machines and installed mining software to generate cryptocurrency, using the company’s resources without paying for them.

This type of activity, also known as cryptojacking, reportedly resulted in over $4.4 million in losses for the hosting company.

When police searched the suspect’s home, they found laptops, phones, banking cards, and other equipment. Investigators said the devices contained information linked to illegal activity, including email account details, cryptocurrency wallets, and programs used to remotely manage and control mining operations.

The suspect had reportedly been moving between different locations in the Poltava, Odesa, Zaporizhia, and Dnipropetrovsk regions to evade capture.

The man has been charged with unlawfully interfering with electronic communications networks. If found guilty, he could face up to 15 years in prison.

On May 21, Jacob Irwin-Cline, a US tourist, lost $123,000 in XRP
XRP


$2.26

and BTC
BTC


$105,185.15

after getting into a fake Uber. How did it happen? Read the full story.

Having completed a Master’s degree in Economics, Politics, and Cultures of the East Asia region, Aaron has written scientific papers analyzing the differences between Western and Collective forms of capitalism in the post-World War II era.
With close to a decade of experience in the FinTech industry, Aaron understands all of the biggest issues and struggles that crypto enthusiasts face. He’s a passionate analyst who is concerned with data-driven and fact-based content, as well as that which speaks to both Web3 natives and industry newcomers.
Aaron is the go-to person for everything and anything related to digital currencies. With a huge passion for blockchain & Web3 education, Aaron strives to transform the space as we know it, and make it more approachable to complete beginners.
Aaron has been quoted by multiple established outlets, and is a published author himself. Even during his free time, he enjoys researching the market trends, and looking for the next supernova.

]]>
https://earlybirdsinvest.com/4-4-million-cryptojacking-bust-ukrainian-man-hijacked-5000-hosting-accounts/feed/ 0 40860
Hijacked Microsoft Stream classic domain “spams” SharePoint sites https://earlybirdsinvest.com/hijacked-microsoft-stream-classic-domain-spams-sharepoint-sites/ https://earlybirdsinvest.com/hijacked-microsoft-stream-classic-domain-spams-sharepoint-sites/#respond Fri, 28 Mar 2025 05:18:28 +0000 https://earlybirdsinvest.com/hijacked-microsoft-stream-classic-domain-spams-sharepoint-sites/

Microsoft

The legacy domain for Microsoft Stream was hijacked to show a fake Amazon site promoting a Thailand casino, causing all SharePoint sites with old embedded videos to display it as spam.

Microsoft Stream is an enterprise video streaming service that allows organizations to upload and share videos in Microsoft 365 apps, such as Teams and SharePoint.

Video content hosted on Microsoft Stream was accessed or embedded through a portal at microsoftstream.com.

In September 2020, Microsoft announced they were deprecating the Microsoft Stream classic service and moving it into SharePoint.

Organizations were told to migrate their Microsoft Stream videos to the new platform by April 2024, when the service was retired.

Microsoft Streams classic domain hijacked

Today, the Microsoft Streams classic domain, microsoftstream.com, was hijacked to display a website imitating Amazon that acts as a phishing page for a Thai online casino, as shown below.

Microsoftstream.com site showing a spam site
Microsoftstream.com site showing a spam site
Source: Archive.org

It is unclear if the domain was hijacked or DNS modified to show the news site, but WHOIS records show that a change was made to the domain on March 27, 2025.

Domain Name: MICROSOFTSTREAM.COM
Registry Domain ID: 2027086511_DOMAIN_COM-VRSN
Registrar WHOIS Server: whois.comlaude.com
Registrar URL: http://www.comlaude.com
Updated Date: 2025-03-27T02:46:29Z
Creation Date: 2016-05-09T22:38:37Z
Registry Expiry Date: 2025-05-09T22:38:37Z
Registrar: Nom-iq Ltd. dba COM LAUDE
Registrar IANA ID: 470
Registrar Abuse Contact Email: abuse@comlaude.com
Registrar Abuse Contact Phone: +442074218250
Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited
Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited
Name Server: NS1-04.AZURE-DNS.COM
Name Server: NS2-04.AZURE-DNS.NET
Name Server: NS3-04.AZURE-DNS.ORG
Name Server: NS4-04.AZURE-DNS.INFO

As a result of the hijack, SharePoint servers that still had embedded videos from the classic microsoftstream.com domain, were now seeing this spam page in pages.

“This afternoon, a user reported a suspicious website on our intranet, that is using microsoftstream.com. After some analysis, it turns out the domain is currently redirecting to a sketchy website signed by ‘Ibiza99’,” reported a SharePoint admin on Reddit.

“Here’s an interesting one for you all. I just got a call that our SharePoint site was showing spam instead of embedded videos. Interesting, I thought. I wonder how that could happen,” another Reddit thread explained.

“So I jumped on to see the issue, site is using embedded video from an aspx page on the SharePoint layout. It is definitely showing spam.”

Earlier today, the domain was shut down again, blocking the spam page from appearing in SharePoint.

“We are aware of these reports and have taken appropriate action to further prevent access to impacted domains,” Microsoft told BleepingComputer when asked about the incident.

However, Microsoft did not share further information about how the domain was hijacked.

Thankfully, the threat actors behind this hijack did not attempt to conduct a more harmful campaign, such as distributing malware through fake software updates or other messages that would have been displayed on SharePoint servers.

Red Report 2025

Based on an analysis of 14M malicious actions, discover the top 10 MITRE ATT&CK techniques behind 93% of attacks and how to defend against them.

]]>
https://earlybirdsinvest.com/hijacked-microsoft-stream-classic-domain-spams-sharepoint-sites/feed/ 0 27630
Ben Chow’s X Account Hijacked After Explosive Meme Coin Claims https://earlybirdsinvest.com/ben-chows-x-account-hijacked-after-explosive-meme-coin-claims/ https://earlybirdsinvest.com/ben-chows-x-account-hijacked-after-explosive-meme-coin-claims/#respond Wed, 12 Mar 2025 00:36:37 +0000 https://earlybirdsinvest.com/ben-chows-x-account-hijacked-after-explosive-meme-coin-claims/

Ben Chow, co-founder of Meteora, appears to have had his X account hacked after a post resurfaced concerns about several meme coins.

On March 11, a message was shared from his account, linking his departure from the project to the launch of meme coins, including Libra (LIBRA), Melania Meme (MELANIA), and Official Trump (TRUMP) tokens.

In response, Meteora’s official X account warned that Chow’s account had been compromised and advised users not to engage with the post or any links.

What is a Cryptocurrency: For Beginners (Animated Explainer)

Did you know?

Want to get smarter & wealthier with crypto?

Subscribe – We publish new crypto explainer videos every week!

The post accused DefiTuna founders Vlad Pozniakov and Dhirk of prioritizing profit over transparency, claiming they aimed to maximize gains from token launches, including MELANIA, Mates (MATES), and a Raydium-based release.

The message also stated that the meme coin industry was too exploitative for him to continue.

Among the claims in the post were screenshots of conversations between Hayden Davis, CEO of Kelsier Ventures, Gideon Davis, its COO, and Pozniakov. The messages suggested an effort to extract as much value as possible from the MATES token, with one participant reportedly stating, “Yeah, fellas, tbh, we are trying to max extract on this one”.

Reports later emerged that Meteora’s own account had also been accessed without authorization. Zen, the current CEO of Meteora, confirmed the breach but stated the team had regained control and was verifying security measures.

On February 26, hackers took over Pump.fun’s X account. What was their goal? Read the full story.

Having completed a Master’s degree in Economics, Politics, and Cultures of the East Asia region, Aaron has written scientific papers analyzing the differences between Western and Collective forms of capitalism in the post-World War II era.
With close to a decade of experience in the FinTech industry, Aaron understands all of the biggest issues and struggles that crypto enthusiasts face. He’s a passionate analyst who is concerned with data-driven and fact-based content, as well as that which speaks to both Web3 natives and industry newcomers.
Aaron is the go-to person for everything and anything related to digital currencies. With a huge passion for blockchain & Web3 education, Aaron strives to transform the space as we know it, and make it more approachable to complete beginners.
Aaron has been quoted by multiple established outlets, and is a published author himself. Even during his free time, he enjoys researching the market trends, and looking for the next supernova.


]]>
https://earlybirdsinvest.com/ben-chows-x-account-hijacked-after-explosive-meme-coin-claims/feed/ 0 24609