Reserved IP Address°C
03-10-2025
BSV
$32.7
Vol 37.42m
-2.35%
BTC
$80587
Vol 47764.26m
-3.28%
BCH
$359.08
Vol 316.99m
-2.28%
LTC
$93.8
Vol 857.96m
-4.36%
DOGE
$0.16
Vol 2300.9m
-6.41%
Getting your Trinity Audio player ready...

A new phishing site that impersonates an established online messaging service is preying on digital currency users. It is able to read the users’ messages and in cases where a digital currency address is on the message, it changes it to one owned by the scammers.

The site, privnotes.com is a clone of the legitimate online messaging service, privnote.com. The latter allows its users to send encrypted messages over the internet which self-destruct after reading.

Privnotes.com has been in operation for over a year now, cybersecurity journalist Brian Kerbs revealed on his blog. With the URLs being quite similar, a number of users can hardly tell the difference and end up using the scam. On Google search, for instance, the scam comes up as the second search result when you search for ‘privnote.’ Additionally, the scammers have a paid ad that pops up at the top of Google search results.

The genuine site encrypts all the users’ messages in a way that even the site can’t access them. However, the scam doesn’t encrypt the messages and can read and modify them.

The scammers have focused on users who send digital currency addresses via their platform, using an automated script that scours the messages for the addresses.

The blog post stated, “Any messages containing bitcoin addresses will be automatically altered to include a different bitcoin address, as long as the Internet addresses of the sender and receiver of the message are not the same.”

The script changes the digital currency address just once if it’s repeated multiple times in a message.

The self-destructing nature of the messages sent via the service makes it the perfect crime. Allison Nixon, a cybersecurity researcher at Unit 221B remarked, “And because of the design of the site, the sender won’t be able to view the message because it self-destructs after one open, and the type of people using privnote aren’t the type of people who are going to send that bitcoin wallet any other way for verification purposes. It’s a pretty smart scam.”

Nixon believes that the scammers are also collecting other data in the messages which they can then use to extort the users.

Recommended for you

The Elon Musk vs Sam Altman Feud part 4
The feud between Musk and Altman continues in courts, and the latest development in this case seems to be both...
March 10, 2025
Tech of Tomorrow: How innovative techs can be used in practice
Besides covering the Tech of Tomorrow event, Becky will also be moderating a panel discussion about the Age of Blockchain,...
March 10, 2025
Advertisement
Advertisement
Advertisement