Fake Crypto Investment Platforms Target Global Investors
Ukrainian law enforcement agencies, including the Security Service of Ukraine, recently uncovered a sophisticated fraud network operating through counterfeit cryptocurrency investment platforms. This scheme reached users across more than 20 countries, luring victims with fabricated profit figures to gain their trust before stealing funds. Investigators have identified at least 62 victims, estimating the monthly fraudulent proceeds at around $1 million.
Hidden Wallet Theft Behind Artificial Account Balances
Victims saw seemingly growing account balances on these platforms, mistakenly believing their investments were yielding significant returns. However, withdrawal attempts triggered requests to connect users’ main crypto wallets. After users authorized small “test transactions,” a concealed wallet siphoning mechanism activated, transferring user funds to wallets controlled by the scammers. Following the fund transfers, victims were locked out of their accounts.
Personal Data and Crypto Assets Compromised
Authorities revealed that during registration and identity verification, these fraudulent platforms collected sensitive personal information, including passports, phone numbers, emails, login data, and photographs. This compromised data not only facilitated cryptocurrency theft but also exposed victims to potential subsequent scams targeting their personal identities.
Fraud Ring Structure and Operations
The criminal organization was led by a 25-year-old IT specialist and included over 46 Ukrainian nationals. They operated multiple offices where technical teams developed and maintained the fake websites to ensure consistent platform functionality. Other members handled client communications, daily management, and security. The victim pool includes investors from Germany, Poland, Lithuania, Latvia, Spain, France, the UK, Canada, Israel, and other countries.
International Server Access Critical to Investigation
During the probe, Ukrainian investigators traced the scam’s servers to the Netherlands and gained access to the databases. This data comprised victim lists, wallet addresses, stolen fund amounts, internal communications, and details on the scam’s operational processes. These insights were crucial in mapping the fraud network and identifying more victims.
Law Enforcement Raids and Ongoing Investigation
Joint raids conducted in Kyiv and surrounding areas resulted in 34 searches, seizing over 100 computers, 100 mobile phones, 79 SIM cards, various documents, cash, and 15 vehicles. The investigation continues as authorities work to apprehend additional suspects, uncover further victims, and verify the total volume of stolen cryptocurrency assets.
This case highlights the persistent sophisticated nature of scams in the cryptocurrency sector, underlining the importance for investors to exercise rigorous security checks and permission controls when engaging with digital asset platforms.