Binance Co-CEO Yi He Hacked: Attackers Use Account To Shill MUBARAKAH and Other Tokens

ccn.comPublished on 2025-12-10Last updated on 2025-12-10

Abstract

Binance Co-CEO Yi He's dormant WeChat account was hacked on December 9, as confirmed by Binance co-founder Changpeng Zhao (CZ). The attackers gained access through an old, reactivated phone number or a SIM-swap attack, bypassing SMS-based two-factor authentication. They used her account to promote the fraudulent memecoin MUBARAKAH, causing its price to surge over 900% and allowing them to profit approximately $55,000. The hackers spent 19,479 USDT to acquire 21.16 million tokens and sold 11.95 million during the peak. Both CZ and Yi He issued warnings, emphasizing that Web2 social platforms remain vulnerable. This incident follows a similar breach of Tron founder Justin Sun's WeChat account in November. No internal Binance systems were compromised. CZ urged the community to avoid buying tokens based on social media posts and to strengthen non-crypto account security with hardware keys and stronger 2FA.

Key Takeaways

  • The dormant WeChat account of Binance’s Co-CEO was hacked and used to promote fraudulent memecoins.
  • The hackers gained access through a reactivated number or SIM-swap attack.
  • CZ urged the community to stay vigilant and never buy tokens based on social media posts.

Binance new Co-CEO Yi He’s WeChat account was hacked earlier on Dec. 9, as confirmed by Binance co-founder Changpeng Zhao (CZ) himself.

This is the second major WeChat compromise involving a prominent crypto figure in two months, after Tron founder Justin Sun reported a similar breach in November.

Earn Crypto with These Top Mining Apps
Sponsored
Disclosure
We sometimes use affiliate links in our content, when clicking on those we might receive a commission at no extra cost to you. By using this website you agree to our terms and conditions and privacy policy.
"}' data-trk="67d19e1ff74d32de176c1b03" href="https://www.miningrigrentals.com?ref=2742248" rel="nofollow" target="_blank">
Mining Rig Rentals<\/h3>"}' data-trk="67d19e1ff74d32de176c1b03" href="https://www.miningrigrentals.com?ref=2742248" rel="nofollow" target="_blank">

Mining Rig Rentals

promotions
Earn a commission on your referral\u2019s transactions.<\/strong>"}' data-trk="67d19e1ff74d32de176c1b03" href="https://www.miningrigrentals.com?ref=2742248" rel="nofollow" target="_blank"> Earn a commission on your referral’s transactions.
Coins
6
Claim Offer
"}' data-trk="67d19ee2f74d32de176c1b5f" href="https://hashing24.com/?rid=53616c7465645f5fe8657fbf16217f483baff299e53f4db4" rel="nofollow" target="_blank">
Hashing24<\/h3>"}' data-trk="67d19ee2f74d32de176c1b5f" href="https://hashing24.com/?rid=53616c7465645f5fe8657fbf16217f483baff299e53f4db4" rel="nofollow" target="_blank">

Hashing24

promotions
Earn 3-10% on referral purchases<\/strong>"}' data-trk="67d19ee2f74d32de176c1b5f" href="https://hashing24.com/?rid=53616c7465645f5fe8657fbf16217f483baff299e53f4db4" rel="nofollow" target="_blank"> Earn 3-10% on referral purchases
Coins
Claim Offer
"}' data-trk="67d1a119f74d32de176c1be1" href="https://accounts.binance.com/en/register?ref=DTDJBNX1" rel="nofollow" target="_blank">
Binance Pool<\/h3>"}' data-trk="67d1a119f74d32de176c1be1" href="https://accounts.binance.com/en/register?ref=DTDJBNX1" rel="nofollow" target="_blank">

Binance Pool

promotions
Sign up, verify, deposit 100 USDT, get 100 USDT bonus<\/strong>"}' data-trk="67d1a119f74d32de176c1be1" href="https://accounts.binance.com/en/register?ref=DTDJBNX1" rel="nofollow" target="_blank"> Sign up, verify, deposit 100 USDT, get 100 USDT bonus
Coins
5
Claim Offer

Hackers Gain Access to Binance Co-CEO’s WeChat Account

Yi He posted on X explaining that her dormant WeChat account had been hijacked through an old phone number, allowing scammers to slip into her contacts and send out fraudulent promotions.

Once inside, the attackers used her identity to shill the MUBARAKAH memecoin.

The fake endorsement triggered a rapid pump-and-dump, sending the token up more than 900% within hours and allowing the scammers to profit roughly $55,000.

The attackers created two wallets and spent 19,479 USDT to accumulate 21.16 million MUBARAKAH tokens at fractions of a cent.

The token briefly surged from $0.001 to $0.008, pushing its market cap above $8 million.

As the price peaked, the attackers sold 11.95 million tokens for 43,520 USDT, locking in most of their gains.

Both CZ and Yi He issued immediate warnings , pointing to vulnerabilities in Web2 social platforms.

The incident mirrors Justin Sun’s recent WeChat hack, highlighting persistent security risks for crypto executives on Chinese social platforms—even with two-factor authentication.

How Did Hackers Access the Co-CEO’s Account?

Social media users speculated that the breach stemmed from SIM-swap tactics or phone-number reuse.

Yi He’s old number had been reassigned, allowing attackers to bypass WeChat’s SMS-based two-factor authentication.

This is a known weakness in services that tie identity to mobile carriers rather than hardware-based security.

The hack affected only the dormant WeChat Moments feed.

Attackers gained no access to Binance’s internal systems, email, or active accounts.

Yi He clarified that she abandoned the WeChat account years ago.

The episode underscores how outdated Web2 accounts remain a major vulnerability for high-profile crypto leaders.

As CZ emphasized: “Web2 security is not that strong,” urging users to strengthen non-crypto account protections with hardware keys and stronger 2FA.

Top Trending Crypto Articles
  • Best Exchanges Check Out Our Recommended Exchanges Here
  • Buy Crypto Fast How To Buy Crypto with a Credit Card Now
  • Safe Crypto Gambling See Our Picks for the Best Crypto Gambling Sites

Related Reads

Before the Bull Market Returns: Lessons I Learned in the Crypto World with Millions

Investment Lessons from the Crypto Market: A Reflection Before the Bull Run This article shares hard-earned lessons from losing millions in the crypto space, offering a sobering perspective on market behavior and personal psychology. The author begins by distinguishing between investment and speculation, noting that crypto is primarily driven by sentiment and tokenomics, not fundamentals. In bull markets, emotion dictates 60% of pricing, token distribution 30%, and fundamentals only 10%. This makes speculation far more profitable than value investing, which often leads to significant losses as holders refuse to cut losses, hoping for a recovery that never comes. A critical mistake is poor timing and position sizing. The author emphasizes the importance of maximizing risk exposure early in a trend's reversal—when uncertainty is high but odds are favorable—rather than during the euphoric peak when downside risk is severe. Examples from the AI meme season and the BSC rally illustrate how late entries often lead to missed opportunities or forced, high-risk bets. The piece also warns against traditional valuation metrics like P/E ratios and token buybacks, which assume sustainable earnings—a rarity in crypto where few projects survive long-term. Market leaders often change, and entire sectors are disproven. Ultimately, the author concludes that theoretical knowledge isn't enough; true understanding comes from painful, personal experience. The market's cyclical nature means many are doomed to repeat errors, but self-awareness and disciplined strategy are essential for survival and success.

marsbit7m ago

Before the Bull Market Returns: Lessons I Learned in the Crypto World with Millions

marsbit7m ago

Axe Compute [NASDAQ: AGPU] Completes Corporate Restructuring (formerly POAI), Enterprise-Grade Decentralized GPU Computing Power Aethir Officially Enters Mainstream Market

Predictive Oncology has officially rebranded as Axe Compute and will trade on NASDAQ under the ticker AGPU. This rebranding signifies the company's shift to operating as an enterprise-level provider, commercializing Aethir's decentralized GPU network to deliver guaranteed computational power for global AI enterprises. Axe Compute's infrastructure is supported by the Aethir Strategic Compute Reserve (SCR), which offers predictable GPU reservations, dedicated computing clusters, and enterprise-grade SLAs to address computational bottlenecks in AI training, inference, and data-intensive workloads. This move marks the first time decentralized GPU infrastructure has entered mainstream capital markets via a U.S. publicly listed company. Axe Compute will serve as the enterprise-facing delivery and contracting entity, while Aethir continues to operate as the underlying decentralized GPU-as-a-Service infrastructure. This structure bridges Web3 decentralized networks with Web2 enterprise demand, allowing businesses to use distributed GPU resources within familiar compliance and procurement frameworks. Aethir's network currently spans 93 countries, over 200 regions, and deploys more than 435,000 GPU containers, supporting high-end hardware like NVIDIA H100, H200, B200, and B300. Axe Compute's model aims to provide guaranteed GPU reservations, dedicated clusters, bare-metal performance, multi-region deployment, and enterprise SLAs—addressing common industry challenges such as long procurement cycles, centralized cloud queues, and price volatility. This represents a significant step in scaling decentralized AI infrastructure for commercial use.

深潮14m ago

Axe Compute [NASDAQ: AGPU] Completes Corporate Restructuring (formerly POAI), Enterprise-Grade Decentralized GPU Computing Power Aethir Officially Enters Mainstream Market

深潮14m ago

Trading

Spot
Futures
活动图片