Microsoft’s Official X Account Hacked in Sophisticated Crypto Scam
In a disturbing display of cybercriminal sophistication, Microsoft’s official account on X was hijacked this week as part of a pump-and-dump scheme promoting a cryptocurrency token. The attack, which has left experts scratching their heads, highlights the ongoing threat posed by crypto scams and the ease with which malicious actors can compromise even high-profile social media accounts.
The incident began when the Microsoft account (@Microsoft) followed and reposted a tweet from another X account (@clippymsftcto), which was impersonating Microsoft’s Clippy virtual assistant. While @clippymsftcto has since been suspended, another X account (@ClippyMSFT) that reposted Microsoft’s original tweet is still promoting the $Clippy crypto token, claiming it has a liquidity pool paired directly with $MSFT (Microsoft’s stock ticker). This brazen move was likely designed to artificially inflate interest in the token and then sell it for a profit.
The attackers’ scheme relies on exploiting the trust and influence of major social media accounts like Microsoft’s. By hijacking such an account, they can reach a vast audience and create a sense of urgency around their fake cryptocurrency offer. This is not the first time Microsoft has fallen victim to this type of attack; in June 2024, its India account on X was compromised by crypto scammers who used it to impersonate Roaring Kitty (a handle associated with notorious meme stock trader Keith Gill) and lure potential victims into infecting themselves with cryptocurrency wallet drainer malware.
This incident serves as a stark reminder that even the most secure accounts can be vulnerable to sophisticated attacks. Crypto scams have become increasingly common on social media platforms like X, where verified organizations are often targeted by malicious actors. In 2023, blockchain threat analysts at ScamSniffer revealed that cybercriminals stole around $59 million worth of cryptocurrency from over 63,000 people in a single Twitter ad push using the “MS Drainer” wallet drainer.
As we navigate this complex digital landscape, it’s essential to remain vigilant and aware of the tactics used by malicious actors. While Microsoft has since removed the attackers’ posts and confirmed the incident, the company will likely continue to investigate and take legal action against those responsible. In the meantime, individuals should exercise extreme caution when engaging with cryptocurrency offers on social media platforms, especially if they involve suspiciously high returns or complex investment schemes.
To protect yourself from similar scams, be sure to research any investment opportunity thoroughly before committing to it, and never provide sensitive information or authorize transactions via unsolicited links or websites. By staying informed and taking proactive steps to secure your online presence, you can minimize the risk of falling victim to these types of attacks.
Source: Bleeping Computer — 2026-10-02