Hack of Robinhood CEO's Social Account Fuels Million-Dollar Crypto Scam
On July 24th, blockchain security firm GoPlus issued an urgent security alert detailing a social engineering attack targeting a high-profile fintech executive. The X account of Vlad Tenev, co-founder and CEO of Robinhood, was compromised and used to promote a fraudulent meme coin named $VLAD.
Attack Vector and Fund Flow Breakdown
Security investigators traced a deliberate attack pattern. The token creation address was identified as 0xd70627fd9ee5b70906620a6f2001ba74457b438d, which only created this single token. The initial funding for gas fees followed a traceable path:
- Originated from Binance exchange withdrawals.
- Funds were then bridged to the attacker's address using services like Relay.
After leveraging the compromised account's reach to attract buyers, the attacker executed a classic “pump and dump.” The proceeds were not held on the original chain but funneled through an obfuscation process:
- Funds passed through intermediary addresses to complicate tracing.
- Subsequently bridged to the Ethereum network.
- All assets were consolidated into the final address: 0x3ab2206b98b01ba256dbdd4c50208bf17ab27d50.
Security Takeaways and User Precautions
This incident underscores the dangerous intersection of social media security and crypto investment risks. Scammers capitalized on a verified account's influence to execute a rapid scheme, leaving little time for investor response. Users should treat any sudden token promotions on social platforms—especially those from verified accounts posting uncharacteristic content—with extreme skepticism and always seek verification through official channels.
The exact method of the account compromise remains unclear, though such breaches often involve phishing, SIM-swapping, or leaked third-party app permissions. It highlights the critical need for enhanced security measures, like robust two-factor authentication, for both platforms and individuals.