Source: Freepik
Cory Klippsten, CEO of Swan Bitcoin, took to X, formerly known as Twitter, to alert followers about a new phishing scam targeting the platform’s users. The warning came after multiple reports surfaced of a spoofed “Data Breach Notice” email that was sent to recipients of Swan’s marketing emails, likely stemming from the 2022 Klaviyo and HubSpot data breaches.
Klippsten’s post read: “IT’S FAKE! Don’t send anyone your Bitcoin. @Swan will never ask you to send your sats to anyone.” He emphasized that Swan Bitcoin has not experienced a data breach and reiterated that any communication asking users to transfer their Bitcoin is fraudulent. Klippsten also advised caution, noting that many scams are successful because they target individuals when they are distracted or less vigilant.
He added, “It’s not very well done, but a good reminder to be careful out there. Most scamming succeeds when the target is drunk or high, and it is a US holiday…”
The Swan Bitcoin phishing email in question appears to have been crafted with the intent to trick users into sending Bitcoin to fraudulent addresses. The scam exploited previous data leaks from email marketing services Klaviyo and HubSpot in 2022, which affected numerous businesses, including Swan Bitcoin.
Several Twitter users quickly reported receiving the phishing emails. Alexander Meiklejohn (@zimmer0911) tweeted, “Yep- just got this phish. Better than some I’ve seen- the branding and grammar are better than most. Email was a dead giveaway though. Wondering if @swan can block transfers to the wallet they are giving to send to. F*** these scammers.”
Klippsten responded to this concern by explaining that each phishing email contained a unique Bitcoin address, making it impossible to block a single destination address and prevent further scams. It’s a unique address for each email, unfortunately,” he replied, highlighting the sophisticated nature of the scam in adapting to each potential victim.
The phishing attempt has stirred up mixed reactions among the Swan Bitcoin community. User @LtCrandog tweeted, “Just got it. Weird phishing email as not even really sure what they are trying to do. Gave the keys to a random wallet,” expressing confusion over the vague nature of the scam.
Others, like @BitcoinGrower, appreciated the quick action taken by Swan Bitcoin. He tweeted, “I just checked my email and saw this, came right here to make sure. You posted, and as always, you already taken care of your customers well done.”
Despite the alarm caused by the phishing attempt, the Swan Bitcoin team and its CEO have been proactive in addressing the issue and reassuring their users. Several followers praised Klippsten’s transparency and promptness in handling the situation.
This incident serves as a crucial reminder for all cryptocurrency users to remain vigilant and skeptical of unsolicited communications, especially those requesting financial information or cryptocurrency transfers. Phishing attacks are a common tactic used by cybercriminals to steal sensitive information or cryptocurrency by masquerading as legitimate entities.
Users are advised to verify the authenticity of emails, particularly those that claim to be from financial institutions or digital asset companies like Swan Bitcoin. Simple steps such as checking the sender’s email address, looking for grammatical errors, and questioning any urgent requests for money can often reveal a phishing attempt.
To further protect themselves, users are encouraged to follow a few best practices:
This weekly roundup covers the Five Eyes AI warning, TfL cyberattack, KDDI breach, Garfield AI legal milestone, and FBI cybercrime…
A threat actor exploited CVE-2026-20245 in Cisco Catalyst SD-WAN Manager to gain root access, steal data, and erase forensic evidence.
An Iranian hacker accused of a $3.4B cyberattack on USA infrastructure has been arrested in Montenegro on fraud, hacking and…
AI-powered law firm Garfield AI won a landmark case at Wandsworth County Court, marking a major moment for regulated legal…
The Stryker cyberattack legal battle intensifies as the company seeks dismissal of a lawsuit alleging employee data was exposed.
KDDI data breach may have exposed 14.22M emails and passwords after a threat actor exploited third-party software used by ISP…
This website uses cookies. By continuing to use this website you are giving consent to cookies being used.
Read More