Mandiant’s UNC1069 case combined a compromised Telegram account, spoofed Zoom room, reported CEO deepfake and ClickFix prompt to deploy seven malware families against a crypto target. One stolen session key can become protocol risk: LayerZero says UNC4899 used that foothold to poison RPC nodes before the 116,500 rsETH, $292 million KelpDAO drain on April 18, 2026.

Top comment by @Benthic

Explore the topic

More on AI

Comments