{
  "id": 852431,
  "title": "$15 million lost in cryptocurrency scam involving fake job offers, compromised software systems",
  "url": "https://urgent.news/2026/08/14/15-million-lost-in-cryptocurrency-scam-involving-fake-job-offers",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-08-14T08:35:00.000Z",
  "source": {
    "name": "Straits Times",
    "slug": "straits-times",
    "url": "https://www.straitstimes.com/singapore/15-million-lost-in-cryptocurrency-scam-involving-fake-job-offers-compromised-software-systems"
  },
  "original_language": "en",
  "account": "A cryptocurrency scam involving fraudulent job offers and compromised software has resulted in US$11.8 million (S$15.1 million) in losses for a victim in Singapore, according to the Singapore Police Force (SPF) and the Cyber Security Agency of Singapore (CSA). The victim was contacted on LinkedIn by a scammer posing as a recruiter from a cryptocurrency-related firm. The scammer communicated via email, using a fake domain that appeared legitimate, and conducted video interviews where the video function was disabled. The victim was directed to a fraudulent website to complete a technical coding assessment on their company-provided device, during which malicious software was downloaded.\n\nThe compromised account, linked to the victim's company's code repository, allowed the scammer to remotely access internal servers and bypass transaction limits and approval checks. To avoid such attacks, the SPF and CSA advised the public to verify the identities of recruiters and companies via official channels, be cautious of interviewers who refuse to enable their video during calls, and not execute code or download files from unverified sources. They also recommended performing software scans before using them, protecting API keys and internal credentials with temporary credentials where possible, implementing transaction limits and other safeguards that cannot be bypassed, and strengthening Multi-Factor Authentication with additional controls such as device binding.",
  "summary": "The victim unknowingly downloaded malicious software during a fake technical assessment.",
  "key_points": [
    "Singapore victim loses US$11.8 million in cryptocurrency scam",
    "Scammer posed as recruiter from fake cryptocurrency firm",
    "Compromised software allowed remote server access and transaction bypass"
  ],
  "editors_take": "This incident highlights the need for heightened scrutiny of online job offers and more robust security measures to prevent remote access to internal systems and protect against financial losses.",
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}