While analyzing a scam server infrastructure, we discovered a folder containing a random name and profile generator - an open source tool designed to create identities on demand. The open source tool is hosted on Github and is pretty old with the latest commit around 7 years ago.

From a scammer’s perspective, tools like this are invaluable and are part of their toolkit. They’re used to craft believable personas for,

1. Pig-butchering and romance baiting
2. Crypto and investment scams
3. Social engineering campaigns at scale

Behind the scenes, the tool offers an API for automation and pulls profile images from unsplash[.]com

The next time you get a "Hi" or a "Hello" or something similar from a stranger, do recollect this post 😀

#pigbutchering #romancebaiting #investmentscams #cryptoscams

Smashing Security podcast #419: Star Wars, the CIA, and a WhatsApp malware mirage - Why is a cute Star Wars fan website now redirecting to the CIA? How come Cambodia has be... https://grahamcluley.com/smashing-security-podcast-419/ #smashingsecurity #romancebaiting #vulnerability #lawℴ #starwars #whatsapp #malware #podcast #meta #cia
Smashing Security podcast #419: Star Wars, the CIA, and a WhatsApp malware mirage

Why is a cute Star Wars fan website now redirecting to the CIA? How come Cambodia has become the world’s hotspot for scam call centres? And can a WhatsApp image…

Graham Cluley

As folks in my network already know, we've ( @shreshta ) been actively detecting and tracking network infrastructure associated with industrial scale scams such as - pig-butchering/romance baiting, and crypto and investment fraud campaigns.

An interesting pattern in this data is the misuse of the Tesla brand in crypto and investment scam infrastructure.

From fake trading platforms to cloned website templates/kits and impersonation pages promising unrealistic returns, these scams are designed to deceive victims by capitalizing on the Tesla brand.

I am sharing our report which has some key findings, tactics used by threat actors, and indicators of compromise (IOCs).

Full report available here - https://shreshtait.com/blog/2025/05/crypto-investment-scams-exploiting-the-tesla-brand/

#pigbutchering #romancebaiting #scams #investment #Tesla #crypto

Crypto & Investment scams exploiting the Tesla brand

A surge in crypto and investment scams exploiting Tesla’s brand and Elon Musk’s image is targeting investors through fake websites.

Shreshta Blog
Smashing Security podcast #407: HP’s hold music, and human trafficking - Journey with us to Myanmar's shadowy scam factories, where trafficked workers are forced ... https://grahamcluley.com/smashing-security-podcast-407/ #technicalsupportscam #romancebaiting #malvertising #lawℴ #malware #podcast #myanmar #printer #scam #hp
Smashing Security podcast #407: HP’s hold music, and human trafficking

Journey with us to Myanmar’s shadowy scam factories, where trafficked workers are forced to run romance-baiting and fake tech support scams, and find out why a…

Graham Cluley

No, Brad Pitt isn’t in love with you - No, Brad Pitt isn't in love with you.

A French woman was duped into believing a hospital... https://www.bitdefender.com/en-us/blog/hotforsecurity/no-brad-pitt-isnt-in-love-with-you #romancebaiting #celebrities #guestblog #celebrity #deepfake #bradpitt #scam #ai

No, Brad Pitt isn't in love with you

For Anne, a French woman in her fifties, things began innocently enough in early 2023.

Hot for Security
Pastor’s “dream” crypto scheme alleged to be a multi-million dollar scam - Imagine trusting your pastor with your savings, only to find out he's running a crypto sc... https://www.bitdefender.com/en-us/blog/hotforsecurity/pastors-dream-crypto-scheme-alleged-to-be-a-multi-million-dollar-scam #romancebaiting #cryptocurrency #guestblog #scam
Pastor's "dream" crypto scheme alleged to be a multi-million dollar scam

A federal grand jury has indicted a 51-year-old church pastor on 26 counts of fraud, after allegedly using his position to deceive victims into investing in a cryptocurrency investment scam.

Hot for Security
It’s time to stop calling it “pig butchering” - Online romance and investment scams are painful enough without its victims being describe... https://www.bitdefender.com/en-gb/blog/hotforsecurity/its-time-to-stop-calling-it-pig-butchering #romancebaiting #guestblog
It's time to stop calling it "pig butchering"

Online romance and investment scams are painful enough without its victims being described as "pigs.

Hot for Security