2 Sources
[1]
Crypto-stealing scam targets Web3 workers with fake meeting apps
Web3 workers are being targeted by a campaign that uses fake meeting apps to inject malware and steal credentials to websites, apps and crypto wallets, Cado Security Labs warned. Scammers have been using artificial intelligence to generate and fill out websites and social media accounts to appear
[2]
Fake video conferencing app is stealing passwords and spreading malware -- how to stay safe
Scammers are using AI to make their shady websites appear legitimate Cado Security Labs has identified a Realst info-stealer that uses a fake meeting app to steal crypto wallets and inject malware. The scammers are tricking web3 workers into downloading an app, which has been called Meeten,
Share
Copy Link
A sophisticated scam using AI-generated content and fake meeting apps is targeting Web3 workers to steal crypto wallets and sensitive information. The scheme involves social engineering and malware distribution.

A sophisticated crypto-stealing scam campaign is targeting Web3 workers, leveraging artificial intelligence (AI) to create convincing fake meeting apps and websites. Cado Security Labs has uncovered this scheme, which uses social engineering tactics to lure victims into downloading malware-infected applications
1
.The primary tool in this scam is a fake meeting app, which has operated under various names including "Meeten," "Meetio," "Clusee.com," and "Meetone.gg." This app contains a Realst info stealer, designed to hunt for sensitive information such as:
2
What sets this scam apart is its use of AI to generate convincing content. The threat actors create seemingly legitimate company websites with AI-generated blogs, product content, and accompanying social media accounts on platforms like X and Medium. This AI-powered approach allows scammers to quickly produce realistic website content, adding an air of legitimacy to their operations and making it more challenging to detect suspicious websites
1
.The scammers employ targeted social engineering tactics. In one instance, a user reported being contacted on Telegram by an impersonator posing as a known contact to discuss a business opportunity. The scammer even sent an investment presentation from the target's own company, demonstrating the sophisticated and targeted nature of the attack
1
.The malware campaign has both macOS and Windows variants, indicating a broad reach across different operating systems. The fake websites used to distribute the malware contain JavaScript that can steal crypto stored in web browsers even before the malware is installed
2
.Related Stories
This scam has been active for approximately four months, according to Cado Security Labs. To protect against such threats, users are advised to:
2
.This scam is part of a growing trend of AI-assisted cyber threats. In August, onchain sleuth ZackXBT identified 21 developers, allegedly North Koreans, working on various crypto projects using fake identities. The FBI has also warned about North Korean hackers targeting crypto companies and DeFi projects with malware disguised as employment offers
1
.As AI continues to evolve, it's likely that we'll see more sophisticated scams leveraging this technology to create convincing fake personas and content, posing significant challenges for cybersecurity professionals and end-users alike.
Summarized by
Navi
[1]
11 Jul 2025•Technology

19 Nov 2024•Technology

10 Feb 2026•Technology
