How I Got Hacked by a Telegram Bot and Reclaimed My Accounts
用户因点击虚假物流链接感染恶意软件,导致社交媒体和支付账户被入侵并损失3000美元。事件揭示了数字安全的重要性。 2025-8-7 05:8:44 Author: infosecwriteups.com(查看原文) 阅读量:23 收藏

The 72-Hour Nightmare That Taught Me About Digital Security

Shahzaib

Zoom image will be displayed

by Shahzaib

It started with an innocent-looking Telegram message:

“Your package is delayed. Track it here: t.me/parcel_bot”

I tapped the link—because who hasn’t waited for a package?— and instantly my phone got hotter than a frying pan. Within minutes:

  • My Instagram was posting crypto scams
  • My Gmail forwarded passwords to a Russian IP
  • My PayPal sent $3,000 to “Electronics LLC” (which doesn’t exist)

This is how Telegram bot scams work in 2024 and how I fought my way back.

Phase 1: The Bait

The bot mimicked a legit shipping notification, complete with fake tracking numbers and a “Customer Support” option. Classic social engineering.

Phase 2: The Payload

Clicking the link installed:

  • A keylogger (tracking every tap)
  • A session hijacker (stealing active logins)
  • A clipboard malware

文章来源: https://infosecwriteups.com/how-i-got-hacked-by-a-telegram-bot-and-reclaimed-my-accounts-a27dc431e531?source=rss----7b722bfd1b8d---4
如有侵权请联系:admin#unsafe.sh