Scam Sniffer Profile picture
Apr 27 11 tweets 10 min read Twitter logo Read on Twitter
1/ 🚨 A recent surge in phishing scams via Google search ads has led to users losing approximately $4 million.
ScamSniffer has investigated multiple cases where users clicked on malicious ads and were directed to fraudulent websites.
#PhishingScams #GoogleAds Image
2/ 🕵️‍♂️ Investigation into the keywords used by victims has uncovered numerous malicious ads at the forefront of search results.
Most users, unaware of the deceptive nature of search ads, click on the first available option, leading them to malicious websites.
#Cybersecurity Image
3/ 🎯 Some of the malicious ads and websites target brands such as @zapper_fi , @LidoFinance , @StargateFinance and @DefiLlama.
These advertisers have been identified as placing these malicious ads:
ТОВАРИСТВО З ОБМЕЖЕНОЮ ВІДПОВІДА­ЛЬНІСТЮ «РОМУС-ПОЛІГРАФ»
TRACY ANN MCLEISH. ImageImage
4/ 🛡️ Malicious ads employ several techniques to bypass Google's ad review process, including parameter distinction and debugging prevention.
These tactics allow them to deceive Google's ad review process and cause significant harm to users. #AdReview #Bypass ImageImageImage
5/ 🔧 Recommended improvements for @GoogleAds include the integration of a Web3-focused malicious website detection engine (e.g., ScamSniffer) and continuous monitoring of landing pages throughout the ad placement lifecycle.
#GoogleAds #Security
6/ 💰 Analysis of on-chain data from addresses associated with the malicious ad websites reveals that approximately $4.16 million has been stolen from around 3,000 victims.
Details: dune.com/scamsniffer/go…
#CryptoTheft #OnChainData Image
7/ 🌐 By analyzing several larger fund collection addresses, it was found that some funds were deposited into @SimpleSwap_io , Tornado.Cash, @kucoincom , and @BinanceUS. Image
8/ 📈 Ad analysis platforms suggest that the average cost per click for these keywords is around $1-$2. Based on an estimated conversion rate of 40% and 7,500 users clicking on the ads, the advertising cost is approximately $15K.
Estimated ROI of about 276%.
#ROI #PhishingScams Image
9/ 🚀 You should exercise caution when using search engines and actively block content in the advertising area.
Furthermore, it's crucial for @GoogleAds to strengthen its review process for Web3 malicious ads to better protect users.
#CybersecurityAwareness #GoogleAdsProtection
10/ 🙏 Thanks to @IM_23pds from @SlowMist_Team@tayvano_@bax1337 from @convex_labs, @1nf0s3cpt, @zachxbt and @DeFiTeddy2020 for reviewing the data and content!

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with Scam Sniffer

Scam Sniffer Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @realScamSniffer

Aug 28, 2022
Weekly Update - 28th Aug

1. DNS change monitor and reminder
2. NFT honeypot attack detection
3. Sync malicious domains and addresses to Chainabuse
4. Tenderly API configuration
1. DNS change monitor and reminder
In the recent Curve DNS attack on 9th Aug. 2022, the Curve DNS vendor changed from Vercel to UAB Cherry Servers with no pre-notice.
We tried to build DNS change monitor and reminder for over 50 well-known projects: github.com/scamsniffer/Si…
Now, we added this function to our Chrome extension to protect our users from DNS hijacking attacks.
Thanks to @1nf0s3cpt for the inspiration! Image
Read 12 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Don't want to be a Premium member but still want to support us?

Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal

Or Donate anonymously using crypto!

Ethereum

0xfe58350B80634f60Fa6Dc149a72b4DFbc17D341E copy

Bitcoin

3ATGMxNzCUFzxpMCHL5sWSt4DVtS8UqXpi copy

Thank you for your support!

Follow Us on Twitter!

:(