THORChain Co-Founder Hit by $1.3M Scam Using Zoom Call Scam

TheCryptoTimes发布于2025-09-12更新于2025-09-12

John-Paul Thorbjornsen, “JP Thor,” Co-Founder of THORChain and Vultisig, was scammed out of about $1.3 million by North Korean hackers. The attack happened through a conference call scam involving a hacked Telegram account, a fake Zoom link, and even a deepfake video of a friend.

On X, on-chain analyst ZachXBT said, “JP is one of the people whose has greatly benefited financially from the laundering of DPRK hacks/exploits. So it’s a bit poetic he got rekt here by DPRK.”

How the Attack Happened?

Confirming the $1.3M loss, John emphasized that hackers gained access to old private keys stored in his iCloud Keychain, which allowed them to drain an old MetaMask wallet he had forgotten about. He emphasized that the attack required no transaction signing, pointing to the likelihood of a 0-day exploit.

This is not the first time John has been attacked. On September 6, he revealed he was targeted on his Mac workstation. He noticed a strange pop-up, then heard the Finder “download” sound. 

A script was copying his entire Documents folder into a temporary directory, likely preparing it for upload. John disconnected from the internet, wiped his Mac, and reset it. He also decided to disable iCloud syncing for sensitive documents.

A few days later, he traced the breach back to the Zoom link from his friend’s hacked Telegram.

The Zoom link was official, and John even joined through his browser, not the app. He saw a deepfake video of his friend, but within two minutes, a malicious script had already been downloaded. That script started copying his iCloud Documents folder.

Lessons and warnings

Following the incident, John warned that private keys remain permanently unsafe, even when forgotten. He urged crypto users to abandon traditional wallets in favor of multi-factor wallets, which split key shares across multiple devices. John noted that while his MetaMask wallet was drained, his Vultisig wallets remained untouched.

Also Read: Radiant Hacker Moves $26.7 Million in Stolen Funds to Ethereum


Mobile Only ImageMobile Only Image

热门币种推荐

你可能也喜欢

Meta 跟风入局预测市场,能否避开元宇宙失败的老路?

Meta(原Facebook)正在组建团队开发一款名为Arena的预测市场应用,允许用户使用积分对政治、体育等事件结果进行预测。此举被视为Meta在元宇宙业务连年巨额亏损后的一次战略转向。 预测市场赛道近年来增长迅速,头部平台月交易量已达数百亿美元,预计2030年市场规模可能突破万亿美元。Meta凭借超过35亿的日活用户,有望将这一小众市场推向大众。其惯用策略是借鉴成熟产品模式,并依托自身巨大流量实现超越,此前在Stories、Reels等产品上已多次验证。 然而,Meta面临严峻挑战。其上一款预测应用Forecast已于2022年关停。该领域监管复杂,已有平台因违规遭罚款,并出现了内幕交易诉讼。更重要的是,Meta自身存在严重的信任危机,其过往在政治内容、虚假信息处理以及金融项目(如Libra)上的不良记录,令监管机构对其涉足敏感领域(尤其是涉及选举和真实资金)高度警惕。 Arena初期可能以积分游戏形式规避严格金融监管,但预测市场的核心价值在于真实资金博弈形成的公允价格。若仅依赖积分,可能更侧重用户活跃度而非预测准确性。Meta的流量虽是巨大优势,能吸引海量新用户,但也可能放大任何与虚假信息或市场操纵相关的争议。 总结来说,Meta入局预测市场,机遇在于庞大的用户基础和一个已验证需求的赛道;风险则在于严密的监管环境和自身难以摆脱的信任赤字。成功与否,将取决于Meta能否在运营中逐步重建公信力,而非仅依赖流量规模。

Foresight News35分钟前

Meta 跟风入局预测市场,能否避开元宇宙失败的老路?

Foresight News35分钟前

交易

现货
合约

热门文章

如何购买SCA

欢迎来到HTX.com!我们已经让购买Scallop(SCA)变得简单而便捷。跟随我们的逐步指南,放心开始您的加密货币之旅。第一步:创建您的HTX账户使用您的电子邮件、手机号码注册一个免费账户在HTX上。体验无忧的注册过程并解锁所有平台功能。立即注册第二步:前往买币页面,选择您的支付方式信用卡/借记卡购买:使用您的Visa或Mastercard即时购买Scallop(SCA)。余额购买:使用您HTX账户余额中的资金进行无缝交易。第三方购买:探索诸如Google Pay或Apple Pay等流行支付方法以增加便利性。C2C购买:在HTX平台上直接与其他用户交易。HTX场外交易台(OTC)购买:为大量交易者提供个性化服务和竞争性汇率。第三步:存储您的Scallop(SCA)购买完您的Scallop(SCA)后,将其存储在您的HTX账户钱包中。您也可以通过区块链转账将其发送到其他地方或者用于交易其他加密货币。第四步:交易Scallop(SCA)在HTX的现货市场轻松交易Scallop(SCA)。访问您的账户,选择您的交易对,执行您的交易,并实时监控。HTX为初学者和经验丰富的交易者提供了友好的用户体验。

304人学过发布于 2024.08.21更新于 2026.06.02

如何购买SCA

相关讨论

欢迎来到HTX社区。在这里,您可以了解最新的平台发展动态并获得专业的市场意见。以下是用户对SCA(SCA)币价的意见。

活动图片