Zoom – Earlybirds Invest https://earlybirdsinvest.com Latest Crypto News Tue, 22 Apr 2025 20:59:18 +0000 en-US hourly 1 https://wordpress.org/?v=6.9.7 https://i0.wp.com/earlybirdsinvest.com/wp-content/uploads/2024/12/cropped-New-Project-2024-12-17T235703.455.png?fit=32%2C32&ssl=1 Zoom – Earlybirds Invest https://earlybirdsinvest.com 32 32 240146708 Hackers abuse Zoom remote control feature for crypto-theft attacks https://earlybirdsinvest.com/hackers-abuse-zoom-remote-control-feature-for-crypto-theft-attacks/ https://earlybirdsinvest.com/hackers-abuse-zoom-remote-control-feature-for-crypto-theft-attacks/#respond Tue, 22 Apr 2025 20:59:17 +0000 https://earlybirdsinvest.com/hackers-abuse-zoom-remote-control-feature-for-crypto-theft-attacks/

Zoom

A hacking group dubbed ‘Elusive Comet’ targets cryptocurrency users in social engineering attacks that exploit Zoom’s remote control feature to trick users into granting them access to their machines.

Zoom’s remote control feature allows meeting participants to take control of another participant’s computer.

According to cybersecurity firm Trail of Bits, which encountered this social engineering campaign, the perpetrators mirror techniques used by the Lazarus hacking group in the massive $1.5 billion Bybit crypto heist.

“The ELUSIVE COMET methodology mirrors the techniques behind the recent $1.5 billion Bybit hack in February, where attackers manipulated legitimate workflows rather than exploiting code vulnerabilities,” explains the Trail of Bits report.

Zoom-based interview scheme

Trail of Bits learned of this new campaign after the threat actors attempted to conduct the social engineering attack on its CEO via X direct messages.

The attack starts with an invitation to a “Bloomberg Crypto” interview via Zoom, sent to high-value targets via sock-puppet accounts on X, or via email (bloombergconferences[@]gmail.com).

The fake accounts impersonate crypto-focused journalists or Bloomberg outlets and reach out to the targets via direct messages on social media platforms.

Fake accounts used in the attacks
Fake accounts used in the attacks
Source: Trail of Bits

The invitations are sent through Calendly links to schedule a Zoom meeting. Since both Calendly and Zoom invites/links are authentic, they work as expected and lower the target’s suspicions.

Calendly page used in the attack
Calendly page used for scheduling the interview
Source: Trail of Bits

During the Zoom call, the attacker initiates a screen-sharing session and sends a remote control request to the target.

The trick employed in this stage is that the attackers rename their Zoom display name to “Zoom,” so the prompt the victim sees reads “Zoom is requesting remote control of your screen,” making it appear as a legitimate request from the app.

The deceptive request on Zoom
The deceptive request on Zoom
Source: Trail of Bits

However, approving the request gives the attackers full remote input control over the victim’s system, allowing them to steal sensitive data, install malware, access files, or initiate crypto transactions.

The attacker may act quickly to establish persistent access by implanting a stealthy backdoor for later exploitation and disconnect, leaving victims with little chance to realize the compromise.

“What makes this attack particularly dangerous is the permission dialog’s similarity to other harmless Zoom notifications,” says Trail of Bits.

“Users habituated to clicking “Approve” on Zoom prompts may grant complete control of their computer without realizing the implications.”

To defend against this threat, Trail of Bits suggests the implementation of system-wide Privacy Preferences Policy Control (PPPC) profiles that prevent accessibility access, which is possible by using this collection of tools.

The firm recommends removing Zoom entirely from all systems for security-critical environments and organizations that handle valuable digital assets.

“For organizations handling particularly sensitive data or cryptocurrency transactions, the risk reduction from eliminating the Zoom client entirely often outweighs the minor inconvenience of using browser-based alternatives,” explains Trail of Bits.

]]>
https://earlybirdsinvest.com/hackers-abuse-zoom-remote-control-feature-for-crypto-theft-attacks/feed/ 0 32268
ELUSIVE COMET Strikes: Emblem Vault CEO’s Crypto Wiped Out After Zoom Call https://earlybirdsinvest.com/elusive-comet-strikes-emblem-vault-ceos-crypto-wiped-out-after-zoom-call/ https://earlybirdsinvest.com/elusive-comet-strikes-emblem-vault-ceos-crypto-wiped-out-after-zoom-call/#respond Sat, 19 Apr 2025 10:52:56 +0000 https://earlybirdsinvest.com/elusive-comet-strikes-emblem-vault-ceos-crypto-wiped-out-after-zoom-call/

Jake Gallen, who runs the non-fungible token (NFT) marketplace Emblem Vault, has alerted the crypto community about a scam that cost him over $100,000 in digital assets.

The attack was carried out by a group called “ELUSIVE COMET”, and it began during a video call arranged through Zoom.

On April 11, Gallen posted on X that his computer had been fully compromised, which led to the loss of Bitcoin
BTC


$85,098.28

and Ethereum
ETH


$1,593.85

from multiple wallets. He later added that he was working with a cybersecurity company, The Security Alliance (SEAL), to investigate the situation.

What is Monero? XMR Animated Explainer

Did you know?

Want to get smarter & wealthier with crypto?

Subscribe – We publish new crypto explainer videos every week!

SEAL had already been tracking ELUSIVE COMET, which they said targets crypto users through social tricks and malware.

The scam started when Gallen received a message from a verified X account that claimed to be the founder of a crypto mining project. Gallen agreed to a Zoom interview with the person, and during the call, the scammer convinced Gallen to install malware on his device, which SEAL later identified as “GOOPDATE“.

The malware gave the attacker access to Gallen’s computer and let them steal login details and crypto wallet information.

Gallen explained that this worked because Zoom allows the host of a call to request remote access from other participants—and that setting is turned on by default unless manually changed.

The hackers also got into Gallen’s Ledger wallet—even though he said he had only logged into it a few times over the past three years and had never stored the password digitally.

Meanwhile, KiloEX, a decentralized crypto trading platform, recently suffered a $7.5 million loss due to a security breach. How did the team respond? Read the full story.

Having completed a Master’s degree in Economics, Politics, and Cultures of the East Asia region, Aaron has written scientific papers analyzing the differences between Western and Collective forms of capitalism in the post-World War II era.
With close to a decade of experience in the FinTech industry, Aaron understands all of the biggest issues and struggles that crypto enthusiasts face. He’s a passionate analyst who is concerned with data-driven and fact-based content, as well as that which speaks to both Web3 natives and industry newcomers.
Aaron is the go-to person for everything and anything related to digital currencies. With a huge passion for blockchain & Web3 education, Aaron strives to transform the space as we know it, and make it more approachable to complete beginners.
Aaron has been quoted by multiple established outlets, and is a published author himself. Even during his free time, he enjoys researching the market trends, and looking for the next supernova.


]]>
https://earlybirdsinvest.com/elusive-comet-strikes-emblem-vault-ceos-crypto-wiped-out-after-zoom-call/feed/ 0 31663
A zoom lens won’t convince me to buy the Pixel 10 over the 9a https://earlybirdsinvest.com/a-zoom-lens-wont-convince-me-to-buy-the-pixel-10-over-the-9a/ https://earlybirdsinvest.com/a-zoom-lens-wont-convince-me-to-buy-the-pixel-10-over-the-9a/#respond Tue, 08 Apr 2025 12:05:03 +0000 https://earlybirdsinvest.com/a-zoom-lens-wont-convince-me-to-buy-the-pixel-10-over-the-9a/
Pixel 9 vs Galaxy S24 cameras

Robert Triggs / Android Authority

Google’s Pixel series has staked a lot on its photography reputation, and the upcoming Pixel 10 Pro models seem to say: “We’re happy with what we have.” According to our latest exclusive look at the upcoming phones, the Pixel 10 Pro and Pro XL use the same hardware as their predecessors. Still, there is something new in store for prospective Pixel 10 buyers: a new telephoto zoom camera — a first for the entry-level flagship.

While the Pixel 10’s three sensors might appear like a considerable upgrade at first glance, Google is downgrading the main and ultrawide cameras to use the same components found in the budget Pixel 9a. In a sense, you can think of the Pixel 10’s camera setup as the Pixel 9a with a zoom lens attached rather than a smaller version of the Pixel 10 Pro. These thinner and smaller modules might make room for that new lens and/or help keep costs in check, but there are bound to be negative repercussions for image quality — and that’s set my alarm bells ringing.

As I’m sure you’re aware, big sensors with big pixels aid with light capture, which is the key ingredient of taking good pictures, even with Google’s fancy HDR algorithms. Moving from 50MP 1/1.31-inch to 50MP 1/1.95-inch on the main sensor results in much smaller individual pixels for light capture and sharpness. The change to the ultrawide sensor, which drops from 1/2.55-inch to 1/3.1-inch, isn’t so drastic, but the loss of the f/1.7 aperture (now f/2.2) will compound the loss of light capture on a camera that was already pretty dubious in its fine details. It’s worth remembering that these ultrawide specs have been kicking about since 2023’s Pixel 7a — hardly a cutting-edge piece of kit for a 2025 flagship.

Downgrades, even hard to notice ones, sound the alarm even for the Pixel.

The Pixel 10’s purported new camera array is a compromise; what Google gives with new zoom capabilities it takes away from the primary and ultrawide sensors. Undoubtedly, there’ll be some utility in the new telephoto lens; I find myself constantly zooming in for portraits and longer-range snaps, no matter which phone is currently in my pocket. The lack of zoom was a minor gripe of mine when I reviewed the Pixel 9, especially in light of the Samsung Galaxy S25, Galaxy S24 FE, and other even more affordable phones offering at least a little extra distance for similar or cheaper prices. Just take a look at this 3x zoom crop I took towards the end of last year to see the gap Google is attempting to bridge.

Flagship phones ideally need a telephoto camera these days, so I really want to like what Google has planned for the Pixel 10. In isolation, I agree with my colleague that it’s probably the right call for added zoom flexibility, even with the other camera downgrades. And yet, I’m having difficulty convincing myself that it’ll make the Pixel 10 a better buy.

For example, the small telephoto in the Pixel 9 Pro Fold, the same sensor heading for the Pixel 10, is a clear downgrade from its other Pro counterparts. The difference in fine details is noticeable enough that I wouldn’t recommend that really serious photography enthusiasts pay for the overly pricey Fold. Of course, we’re talking a lot less money for the Pixel 10, but will a so-so telephoto really make all that much difference in the example above? Worse, the other downgrades will draw inevitable comparisons with Google’s existing products, which isn’t exactly how you want to kickstart a launch.

The Pixel 10’s photography problem is not only that the phone will trade down quality versus the Pro models across not one but all three of the lenses, but its other two cameras will also be worse (even if only slightly) than last year’s Pixel 9. It would have been one thing for the Pixel 10 to have an inferior telephoto to the Pros; that would have been a fair compromise, but downgrading the other two lenses, too, makes the Pixel 10 Pro (and last year’s 9 Pro, to be honest) much more attractive for the serious photographer. Take a look at the details (or lack of) from the Pixel 9’s ultrawide sensor in the overcast shots below. The Pixel 10 will almost certainly be even worse with its move to a smaller sensor and narrower aperture.

I would have been far more sated if Google had stuck with a dual camera configuration, swapping out the ultrawide for a telephoto. The ultrawide quality is pretty questionable anyway, and 23mm from the primary lens is more than wide enough 99% of the time. Plus, the cost savings might have allowed Google to keep a larger set of sensors for both, resulting in better pictures all around. An opportunity to reset the dual-camera standard has been missed.

Dropping the ultrawide and sticking with two cameras could have been a game changer.

At least as far as photography is concerned, the Pixel 10 series looks set to be split like never before, with the Pixel 10 appearing as more of an upgrade over the budget Pixel 9a than a slightly cut-down version of the pricier Pro models, as it’s been in years gone by. I don’t like that change, especially when the Pixel 10 will cost $799, if not more, against the Pixel 9a’s $499. It’s worth remembering that Google’s entry-level flagship has gone from $599 to $799 in just three years and, with it, raised expectations.

Google Pixel 9 series pink lineup

Ryan Haines / Android Authority

Of course, the Pixel 10 will have more things going for it than just the new telephoto lens. Additions like the Tensor G5 processor, a new 5G modem, and some of the latest software features could well convince me (and you) that the phone still offers enough extra to make it worth the jump up from the Pixel 9a. The Pixel 10’s design still looks like the more expensive Pro models, too, which I prefer over the cheaper appearance of the 9a.

More importantly for Google’s unique selling point, the Pixel 10 will ship with more RAM than the 9a, making it a more powerful showcase for the company’s latest AI smarts. The Pixel 9a can only run the extra-small version of Gemini Nano, which limits it to text-based AI functionality, while the Pixel 10 will have the latest audio and imaging bells and whistles. If you’re looking for more of the best Google AI tools, the Pixel 10 will be the better buy. However, customers who want the best of Google’s AI capabilities should again probably stump up a little more for the Pixel 10 Pro. It will no doubt have yet more RAM, meaning it’s even more responsive when running Gemini Nano, and will surely have access to exclusive Pro-tier features like Video Boost and be higher up the pecking order for the latest Feature Drops, just as previous Pro models have been.

The Pixel 10 will have the AI and performance edge over the 9a, but is that enough?

It’s this chasm between the regular and Pro flagship Pixels that’s really the cause of my dilemma. If the Pixel 10 ends up with Pro-level software features but specs that are a bit closer to the 9a, that would be one thing. But it won’t; it appears to have some of Google’s top-tier flagship specs but seems unlikely to dine at the software top table. Yes, its price will sit bang smack in the middle of the A and Pro options, which is fair enough, but I’m still finding it difficult to see who I will recommend the middle tier of Google’s portfolio to. It’s not the budget-conscious, it’s not the AI aficionados, and it’s now not picky photographers either.

There’s always been some awkward stepping on toes with Google’s recent flagship and A-series lineups, but this year’s launch doesn’t appear to have solved this conundrum. Perhaps the Pixel 10 is simply the best phone Google can build to compete with Apple and Samsung at the $799 point, but those two brands offer AI feature parity across their flagship models, not to mention have a considerable performance advantage to boot. Maybe Google will surprise us with far more shared features across the Pixel 10 and 10 Pro models, but I won’t hold my breath. In any case, the Pixel 10 looks like it will still suit those who want a bit of everything Google does really well, even if it’s not quite cutting-edge.

I think that’s fine, but I don’t want the Pixel 10 to be fine; I want it to be brilliant. Unfortunately, it’s hard to think of any product as top-class when it makes downgrades (even small ones) compared to its predecessor, however unfair that may seem. I can see myself rewording my Pixel 9 review when the 10 eventually falls in my lap: If you don’t care about Gemini, there’s probably not enough hardware here to justify the price tag, so buy the Pixel 9a instead. A new telephoto lens at the expense of budget-tier primary and ultrawide cameras is unlikely to convince me otherwise.

]]>
https://earlybirdsinvest.com/a-zoom-lens-wont-convince-me-to-buy-the-pixel-10-over-the-9a/feed/ 0 29688
Crypto Founders Warn of Fake Zoom Scams Linked to North Korean Hackers https://earlybirdsinvest.com/crypto-founders-warn-of-fake-zoom-scams-linked-to-north-korean-hackers/ https://earlybirdsinvest.com/crypto-founders-warn-of-fake-zoom-scams-linked-to-north-korean-hackers/#respond Sun, 16 Mar 2025 05:03:51 +0000 https://earlybirdsinvest.com/crypto-founders-warn-of-fake-zoom-scams-linked-to-north-korean-hackers/

Crypto entrepreneurs have recently shared warnings about a scam where attackers pose as potential business partners on video calls to trick people into downloading harmful software.

Reports suggest that these scams are linked to North Korean hackers using realistic Zoom calls and misleading messages to gain access to sensitive information.

Nick Bax, a cybersecurity expert from the white hat group Security Alliance, explained in a March 11 post on X that this tactic has led to millions in losses.

DEX vs CEX: Which is Best for YOU? (Explained with Animation)

Did you know?

Want to get smarter & wealthier with crypto?

Subscribe – We publish new crypto explainer videos every week!

The scammers typically invite targets to a business meeting or investment pitch. Once the call starts, a fake video plays while they claim to have audio problems. They then send a new link, which urges the target to install a software patch to fix the issue.

Following Bax’s post, multiple crypto founders shared their experiences. David Zhang, co-founder of the stablecoin company Stably, stated that the scammers first used his actual Google Meet link but later pushed him to switch to their meeting, claiming an internal discussion required the change.

Zhang took the call on his tablet and later reflected, “The site acted like a normal Zoom call. I took the call on my tablet though, so not sure what the behavior would’ve been on desktop”. He suspected the scam worked differently on various devices.

Giulio Xiloyannis, co-founder of Mon Protocol, also encountered the scam. He said scammers tried to lure him and his marketing lead with a partnership offer.

The red flag appeared when they were asked to switch to a different Zoom link that pretended to detect an audio issue, which prompted them to install malware.

Recently, nine residents of Kent, England, lost over $1.2 million in a crypto scam. How did hackers pull this off? Read the full story.

Having completed a Master’s degree in Economics, Politics, and Cultures of the East Asia region, Aaron has written scientific papers analyzing the differences between Western and Collective forms of capitalism in the post-World War II era.
With close to a decade of experience in the FinTech industry, Aaron understands all of the biggest issues and struggles that crypto enthusiasts face. He’s a passionate analyst who is concerned with data-driven and fact-based content, as well as that which speaks to both Web3 natives and industry newcomers.
Aaron is the go-to person for everything and anything related to digital currencies. With a huge passion for blockchain & Web3 education, Aaron strives to transform the space as we know it, and make it more approachable to complete beginners.
Aaron has been quoted by multiple established outlets, and is a published author himself. Even during his free time, he enjoys researching the market trends, and looking for the next supernova.


]]>
https://earlybirdsinvest.com/crypto-founders-warn-of-fake-zoom-scams-linked-to-north-korean-hackers/feed/ 0 25405