Threat actors compromised British Army ’s Twitter, YouTube accounts to promote crypto scams

Twitter and Youtube from British army compromised

Threat actors compromised the Twitter and YouTube accounts of the British Army to promote online crypto scams.

The Twitter and YouTube accounts of the British Army were used to promote NFT and other crypto scams. The YouTube account was used to transmit an older Elon Musk clip that attempts to trick users into visiting cryptocurrency scam sites.

The attackers hijacked the verified Twitter account of the British Army, changed the profile images, and renamed it to ‘pssssd.’

Investigation started

After the UK’s Ministry of Defence regained control of its accounts launched an investigation into the incident and apologized for the security breach.

We are aware of a breach of the Army’s Twitter and YouTube accounts and an investigation is underway. The Army takes information security extremely seriously and is resolving the issue. Until their investigation is complete it would be inappropriate to comment further.— Ministry of Defence Press Office (@DefenceHQPress) July 3, 2022
Apologies for the temporary interruption to our feed. We will conduct a full investigation and learn from this incident. Thanks for following us and normal service will now resume.— British Army (@BritishArmy) July 3, 2022At this time it is not clear how the attackers compromised the accounts simultaneously or if they were protected with two-factor authentication. In the latter case, threat actors could have obtained access to the account through SIM swapping attacks.

At this time it is not clear how the attackers compromised the accounts simultaneously or if they were protected with two-factor authentication. In the latter case, threat actors could have obtained access to the account through SIM swapping attacks. It is still unclear if someone has fallen victim to these scams proposed through the hacked accounts.

The post Threat actors compromised British Army ’s Twitter, YouTube accounts to promote crypto scams appeared first on Security Affairs.