Cybersecurity Firm CrowdStrike Warns Of Fake Job Offers Spreading XMRig Miner

CrowdStrike has warned of a new phishing campaign that mimics its recruitment process to deliver the Monero miner via a fake application download.

Global cybersecurity provider CrowdStrike has identified a phishing campaign exploiting its recruitment emails to distribute a malicious Monero (XMR) mining software.

In a blog post, the Austin-headquartered firm explained that the scam uses fake job offers to trick people into downloading an application that installs the XMRig miner on their system. CrowdStrike says the phishing emails impersonate its recruitment process, luring victims to a fake website. There, they are asked to download an “employee CRM application,” which is actually a downloader for the cryptominer.

“The attack begins with a phishing email impersonating CrowdStrike recruitment, directing recipients to a malicious website. Victims are prompted to download and run a fake application, which serves as a downloader for the cryptominer XMRig.”

CrowdStrike

CrowdStrike explained that the downloaded file checks the victim’s system to avoid detection. “If these checks are passed, the executable displays a fake error message pop-up before continuing,” the firm said. After this, the malicious application downloads and installs the XMRig miner.

CrowdStrike says the phishing site, cscrm-hiring[.]com, hosts the fake CRM application and urges job seekers to be cautious, stressing that it never asks candidates to download software during the recruitment process.

The latest campaign is once again a good reminder that crypto scams can show up behind fake job offers. A similar incident happened during the 2022 Ronin Network hack, where North Korean state-backed hacking collective Lazarus Group tricked an employee with a phishing email, getting them to open a malicious PDF file, which led to the theft of over $600 million in crypto.

RECENT NEWS

Ether Surges 16% Amid Speculation Of US ETF Approval

New York, USA – Ether, the second-largest cryptocurrency by market capitalization, experienced a significant surge of ... Read more

BlackRock And The Institutional Embrace Of Bitcoin

BlackRock’s strategic shift towards becoming the world’s largest Bitcoin fund marks a pivotal moment in the financia... Read more

Robinhood Faces Regulatory Scrutiny: SEC Threatens Lawsuit Over Crypto Business

Robinhood, the prominent retail brokerage platform, finds itself in the regulatory spotlight as the Securities and Excha... Read more

Trump Spouts False Economic Claims Ahead Of Crypto Summit

The White House held its first-ever “crypto summit” on Friday, gathering top execs from digital asset firms to chat ... Read more

Gemini, Backed By Winklevoss Twins, Taps Goldman Sachs And Citigroup To Explore IPO

Gemini, the cryptocurrency exchange and custodian founded by billionaire twins Cameron and Tyler Winklevoss, has confide... Read more

BTC, ETH, XRP, Altcoin Prices At Risk: Nasdaq 100 Loses Key Support

Cryptocurrency prices resumed their downward trend after President Donald Trump hosted top executives for the White Hous... Read more