扫码下载
BTC $63,641.71 +1.09%
ETH $1,673.68 +0.96%
BNB $604.87 +0.93%
XRP $1.12 +1.96%
SOL $66.78 +2.05%
TRX $0.3124 -2.87%
DOGE $0.0864 +1.74%
ADA $0.1712 +3.38%
BCH $204.45 +2.15%
LINK $7.89 +1.02%
HYPE $59.09 +5.67%
AAVE $64.73 +2.52%
SUI $0.7554 +0.78%
XLM $0.1939 +2.56%
ZEC $437.17 +1.62%
BTC $63,641.71 +1.09%
ETH $1,673.68 +0.96%
BNB $604.87 +0.93%
XRP $1.12 +1.96%
SOL $66.78 +2.05%
TRX $0.3124 -2.87%
DOGE $0.0864 +1.74%
ADA $0.1712 +3.38%
BCH $204.45 +2.15%
LINK $7.89 +1.02%
HYPE $59.09 +5.67%
AAVE $64.73 +2.52%
SUI $0.7554 +0.78%
XLM $0.1939 +2.56%
ZEC $437.17 +1.62%

X 平台出现冒用虚假应用获取授权绕过 2FA 的新型钓鱼攻击

2025-09-26 11:10:53
收藏

ChainCatcher 消息,近期一场高度隐蔽的钓鱼攻击利用 X 平台应用授权机制,绕过密码和双重验证,已导致多位加密领域人士账号被劫持。

攻击者通过伪装成 Google Calendar 链接的钓鱼信息,诱导用户授权恶意应用 “Calendar”,实则包含伪装字符并请求全面账号控制权限。安全专家建议受影响用户及时前往 X 的已授权应用页面,移除可疑 “Calendar” 应用以防止进一步损失。

app_icon
ChainCatcher 与创新者共建Web3世界