A cyber campaign called PoisonSeed is targeting cryptocurrency users by exploiting customer relationship management (CRM) platforms and email marketing tools.
Attackers use stolen login credentials to send spam emails with fake cryptocurrency recovery phrases, tricking victims into giving them access to their funds.
The campaign targets both individuals and enterprises, including well-known crypto firms like Coinbase and Ledger.
The phishing kits used in PoisonSeed differ from those of other threat actors, suggesting it may be a new actor using similar methods.