TLDR: Hackers trick users with fake podcast invites before requesting screen control through Microsoft Teams. Once granted, attackers get remote desktop access and can run code that drains crypto wallets. Security researcher Nick Bax says millions are already gone, hitting both project leaders and regular holders. Experts call for clearer Microsoft Teams warnings to stop [...] The post Hackers Use Microsoft Teams to Hijack Crypto Wallets: What To Know appeared first on Blockonomi.TLDR: Hackers trick users with fake podcast invites before requesting screen control through Microsoft Teams. Once granted, attackers get remote desktop access and can run code that drains crypto wallets. Security researcher Nick Bax says millions are already gone, hitting both project leaders and regular holders. Experts call for clearer Microsoft Teams warnings to stop [...] The post Hackers Use Microsoft Teams to Hijack Crypto Wallets: What To Know appeared first on Blockonomi.

Hackers Use Microsoft Teams to Hijack Crypto Wallets: What To Know

2025/09/13 16:42

TLDR:

  • Hackers trick users with fake podcast invites before requesting screen control through Microsoft Teams.
  • Once granted, attackers get remote desktop access and can run code that drains crypto wallets.
  • Security researcher Nick Bax says millions are already gone, hitting both project leaders and regular holders.
  • Experts call for clearer Microsoft Teams warnings to stop more crypto users from falling victim.

Hackers have found a new way to clean out crypto wallets, and it’s catching people off guard. The method is simple, built on trust, and ends with stolen funds. 

Security researcher Nick Bax shared details of the attack, warning that millions are already gone. Both project founders and everyday investors have been hit. This is a growing problem for the crypto community, and it relies on social engineering more than tech.

Bax explained that hackers are using Microsoft Teams calls to take full control of victims’ desktops. They first gain access to a real Twitter or Telegram account, or create a convincing fake. Then they contact their target with an offer: usually a podcast interview, partnership call, or investor chat.

The conversation continues until the hacker asks the victim to screen-share their project. After some time, they claim they need to share something too. That’s when a request appears asking for “control” of the screen. Most users think this is harmless and click accept.

Once accepted, the hacker has remote control of the computer. Bax warned that they can now run commands, install malware, and empty wallets. This is not a technical exploit but a social one, and it works.

Crypto Security Risks Widen

According to Bax, this attack is harder to spot on Microsoft Teams because of how the dialog is worded. The message says “Requesting control,” which sounds routine. On other platforms like Zoom, there are extra warning clicks before control is handed over. This difference makes Teams a softer target.

Bax even tested creating a fake Teams account using Cyrillic characters to mimic “Microsoft Teams.” He said the platform allowed it, making it easier for attackers to trick victims. The result is a mix of bad UX design and patient social engineering.

This attack has been active for months and keeps evolving. The initial hook may change, but the result is the same: a complete desktop takeover. Crypto investors and project leaders are urged to treat all screen control requests as high-risk.

Security experts say users should verify who they are speaking to before any screen share. Turning off screen control permissions unless absolutely needed can also prevent attacks. Bax called on Microsoft to add clearer warnings so users understand what they are agreeing to before control is granted.

The post Hackers Use Microsoft Teams to Hijack Crypto Wallets: What To Know appeared first on Blockonomi.

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.
Share Insights

You May Also Like

DBS Tests Repo With Ripple RLUSD and Franklin sgBENJI

DBS Tests Repo With Ripple RLUSD and Franklin sgBENJI

The post DBS Tests Repo With Ripple RLUSD and Franklin sgBENJI appeared on BitcoinEthereumNews.com. Ripple, DBS, and Franklin Templeton launch tokenized repo pilot on DBS Exchange. Repo trades use Ripple’s RLUSD stablecoin and Franklin Templeton’s sgBENJI token. sgBENJI issued on XRP Ledger enables fast collateralized lending and settlements. DBS, Ripple, and Franklin Templeton have signed a memorandum of understanding to bring repo transactions into tokenized finance. The framework pairs Ripple’s RLUSD stablecoin with Franklin Templeton’s sgBENJI tokenized money market fund, listed on DBS Digital Exchange. The setup gives accredited clients a path to rebalance cash into a regulated, yield-bearing vehicle while transacting with stablecoins that settle within minutes. For institutions used to overnight repo desks, this is a first look at how traditional liquidity tools can migrate onto public blockchains. Related: Franklin Templeton Launches its DeFi Solution Benji on Ethereum Demand From Institutions Shapes the Design The three firms cited rising demand for digital asset allocations, with surveys showing nearly nine in ten institutional investors plan to increase exposure in 2025. The repo model was chosen because it mirrors an existing backbone of global funding markets: collateralized lending against short-term securities. By allowing RLUSD to trade directly against sgBENJI on DBS Digital Exchange, desks can manage intraday liquidity, park stablecoin reserves into a fund earning regulated yield, and unwind positions quickly when cash is needed. DBS to Expand Collateralized Lending The next phase extends sgBENJI beyond a trading instrument into repo collateral. DBS plans to let investors pledge sgBENJI against credit lines arranged through the bank or third-party lenders. That opens deeper liquidity pools with the assurance that collateral sits inside a regulated balance sheet. For trading desks, that means onchain repo could eventually function like its traditional counterpart, rolling positions overnight, secured by tokenized assets that settle in near real-time. XRP Ledger as the Settlement Rail Franklin Templeton will issue sgBENJI tokens on…
Share
BitcoinEthereumNews2025/09/18 20:25
SBF-Linked Account Posts Document Claiming FTX Was ‘Never Bankrupt’

SBF-Linked Account Posts Document Claiming FTX Was ‘Never Bankrupt’

A social media account once linked to Sam Bankman-Fried, the imprisoned founder of FTX, posted a new document on X late Thursday. The 14-page file argues that the crypto exchange was never genuinely insolvent.Visit Website
Share
Coinstats2025/10/31 14:33