SlowMist said it has identified a newly discovered recruitment scam aimed at people working in Web3. In the campaign, attackers pose as recruiters and persuade targets to install an AI meeting application called "Relay," which is in fact an information-stealing malware sample. According to SlowMist, the malware targets both macOS and Windows users and is capable of stealing browser credentials, crypto wallet-related data, Keychain data, and Telegram sessions. The security firm said it has completed sample analysis and disclosed how the attack chain operates. SlowMist also urged users to stay cautious during online interviews and hiring processes, avoid running unverified applications, and watch for unusual installation requests or system password prompts.
ChainCatcher reported that SlowMist has flagged a newly discovered recruitment scam targeting Web3 professionals.
In the scheme, attackers impersonate recruiters and trick victims into installing an AI meeting app called "Relay," which is actually information-stealing malware. SlowMist said the malware targets both macOS and Windows users and can steal browser credentials, crypto wallet-related data, Keychain data, and Telegram sessions.
The company said it has completed sample analysis and disclosed how the attack chain works. SlowMist also warned users to be careful when installing unfamiliar software during online interviews or hiring processes, avoid running unverified applications, and pay attention to unusual installation requests or system password prompts.
This article was originally published by Bit.Fan. For more cryptocurrency news and market insights, visit www.bit.fan. Disclaimer:
The market information, project data, and third-party content displayed on this platform are for industry information sharing only and do not constitute any form of investment advice or return commitment.
Cryptocurrency trading carries high risks. Users should fully assess their risk tolerance and make independent decisions. All profits, losses, and legal responsibilities are borne by the users themselves.