Contagious Interview Campaign Compromises 30,000 Devices, Steals $10.71M in Crypto

A coordinated interview campaign has compromised an estimated 30,000 devices worldwide, stealing over $10.71 million in cryptocurrency from unsuspecting victims. This attack serves as a stark reminder of the importance of protecting one’s online identity and maintaining robust security measures to prevent data breaches.

At its core, this campaign relies on a sophisticated social engineering tactic known as “privilege escalation.” Attackers typically target vulnerable individuals who have shared sensitive information online, such as login credentials or personal details. By mapping these cross-domain connections, hackers can exploit the privilege escalation routes that exist between seemingly secure systems and compromised devices. In essence, they are able to bypass existing security measures by identifying key choke points in the network where the attack can be most effectively initiated.

The campaign’s success is attributed to its ability to adapt to various operating systems and device types, including Windows, macOS, Android, and iOS. Attackers have been observed using a range of tactics, from phishing emails with embedded malware to manipulating social media profiles to gain access to targeted devices. Once inside, they deploy custom-built ransomware that freezes the victim’s system until a hefty cryptocurrency payment is made.

Experts warn that this type of attack can be particularly devastating due to its ability to spread rapidly through networks and evade traditional security defenses. The sheer number of compromised devices suggests that many victims may not even be aware their systems have been breached, allowing attackers to continue extracting sensitive information or cryptocurrency over an extended period.

The implications of this campaign are far-reaching and underscore the need for heightened vigilance when sharing personal details online. With more people than ever before storing sensitive information on cloud-based services or social media platforms, it is increasingly crucial that individuals prioritize their digital security and take proactive measures to protect themselves from such attacks.

In light of these findings, CyberNews.work advises users to exercise extreme caution when interacting with emails or messages requesting personal data or login credentials. Additionally, ensure that all systems are running the latest software updates, implement robust password management practices, and consider investing in reputable antivirus solutions to bolster defenses against evolving threats like these.


Source: The Hacker News — 2026-09-21