Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
A Different Type of Scam (splashdot.github.io)
14 points by rsav on Nov 3, 2021 | hide | past | favorite | 13 comments



Reminds me of another similar scam I heard about where someone would post their mnemonic phrase in a public chat. Some malicious actor will then quickly try to import it into a wallet to spend it to find a ERC20 Shittoken but no ETH to pay the gas fee to transfer it, and would try to transfer some ETH quickly to the wallet, where the original attacker will come in and swipe the ETH away.


Apparently kids on TikTok are "hacking" by going to prnt.sc and entering random URLs, as covered here https://www.youtube.com/watch?v=05K5glVCwis&t=433s . So now scammers are exploiting the popularity of that "hack" meme (using the original definition as an idea that spreads).

I wonder if the scammers are going the influencer route next, throw lots of shit out onto the net and hope they go viral, and when they do, somehow use that to scam people...


This scam is rampant in Discord where in many top cryptoasset communities a bot will PM someone about winning a 'contest' or receiving a promotion for one of these scam exchanges, and it follows the same narrative from there of asking for transfer fees to claim "up to 1.2 BTC" etc.


That feels very different. In the OP the 'victims' are people trying to steal Bitcoins themselves.


That advance fee scam is old, just add bitcoin to it and you find new suckas.


IMHO the real clever part is that they're scamming people trying to scam others by using a poorly designed screen shot app. So it's a kinda Dexter level serial killer killer level scam.

More power to 'em.


Scamming people by scamming them to think they are scamming somebody else is the oldest trick in the book. It’s the plot of ‘The Sting’ and it keeps people from going to the police.


Absolutely.

The trick I love here is that there's almost zero interaction to the grift. The websites just sit there. There's no soft skills, no convincing of the mark. The soft skills are all on the website.


looked into this some time ago after watching a video[1] about Lightshot don't recall the addresses involved but the set of domains was different, the interface looked similar to the screenshots. This was a 6+ months ago at least, the video is dated Mar 14, 2020. This is probably been going on for quite some time

[1] https://www.youtube.com/watch?v=ZwKFY61-hq0


Cute.


somehow this is the exact word that came to my mind when I read this.


You watched your kids tiktoks didn't you? This "hack" is one of the most watched on tiktok.


Kids on tiktok are watching stuff about people uploading fake credentials snapshots in order to scam unscrupulous users trying to steal crypto? Either I'm very out of touch or you misunderstood what the OP is about. It's not about bruteforcing URLs, the scam is built on top of that.




Consider applying for YC's Fall 2025 batch! Applications are open till Aug 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: