-
Notifications
You must be signed in to change notification settings - Fork 5
Description
Challenge Title:
Fake Crypto Job Scam — Remote Beta Tester Trap
Difficulty Level:
[×] Beginner
[ ] Intermediate
[ ] Advanced
Description / Scenario:
In public Telegram groups or forums, scammers post attractive remote crypto jobs:
Community Manager ($30/hour)
Moderator ($20/hour)
Beta Tester ($15/hour)
Bug Bounty Hunter ($100/bug)
They claim no experience is needed and “training will be provided.” When users DM them, the scammer sends a malicious .exe or .dmg file disguised as a training platform or internal testing software. Once installed, it hijacks the victim's computer (keylogger / RAT), leading to wallet access theft and total drain.
Learning Objective:
Users will learn to recognize high-paying remote job scams, avoid installing unverified software, and verify the legitimacy of Web3 job offers—especially from DMs or Telegram group posts.
Phishing Technique Used:
Social engineering via job opportunity bait
Trojan horse through a malicious app disguised as training software
Device-level compromise (remote access tool, keylogger)
Subsequent crypto wallet drain (hot wallet access / seed leak)
🪙 Reward Wallet Address (USDT - ERC20 Polygon/Arbitrum)
0xc9e7e459d2bef4e6493a76543c7ed0de06dc6bac
✅ By submitting this challenge, I agree to open-source it under the project's license and allow the Unphishable team to modify or improve it for consistency.