Conning the Crypto Conman: End-to-End Analysis of Cryptocurrency-based Technical Support Scams
Bhupendra Acharya, Muhammad Saad, Antonio Emanuele Cin\`a, Lea, Sch\"onherr, Hoang Dai Nguyen, Adam Oest, Phani Vadrevu, Thorsten Holz

TL;DR
This paper provides a comprehensive end-to-end analysis of cryptocurrency-based technical support scams, using a novel system called HoneyTweet to lure and study scammers across multiple communication channels, revealing their methods and payment strategies.
Contribution
It introduces HoneyTweet, an automated system for studying crypto support scams, and offers an in-depth analysis of scammers' operations, payment methods, and communication channels.
Findings
Scammers primarily initiate scams on Twitter before moving to other channels.
Two main scammer categories identified: secret key theft and direct wallet payments.
Validation with payment providers confirms scammer behaviors and payment methods.
Abstract
The mainstream adoption of cryptocurrencies has led to a surge in wallet-related issues reported by ordinary users on social media platforms. In parallel, there is an increase in an emerging fraud trend called cryptocurrency-based technical support scam, in which fraudsters offer fake wallet recovery services and target users experiencing wallet-related issues. In this paper, we perform a comprehensive study of cryptocurrency-based technical support scams. We present an analysis apparatus called HoneyTweet to analyze this kind of scam. Through HoneyTweet, we lure over 9K scammers by posting 25K fake wallet support tweets (so-called honey tweets). We then deploy automated systems to interact with scammers to analyze their modus operandi. In our experiments, we observe that scammers use Twitter as a starting point for the scam, after which they pivot to other communication channels (eg…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsSpam and Phishing Detection · Cybercrime and Law Enforcement Studies · Blockchain Technology Applications and Security
