Crypto Potato
2026-04-27 21:28:39

Ripple’s David Schwartz Warns of Phishing Campaign Using Robinhood Emails

Ripple’s CTO Emeritus David Schwartz posted a warning on X, telling users that a phishing campaign had sent fraudulent security alerts appearing to come from Robinhood’s own email infrastructure. Robinhood has since confirmed the incident, attributing it to an abuse of its account creation flow rather than any breach of its systems. What the Phishing Email Looked Like and How It Got Through According to Schwartz, the fake email, whose subject line was “Your most recent login to Robinhood,” claimed that there was an unrecognized login attempt on an “iPhone 17 Pro” device at a specified time and that an account telephone number ending in “87” would be updated shortly. A “Review Activity Now” button sat at the bottom, alongside a warning that once changes were confirmed, they could not be reversed, which is standard panic-inducing language, designed to make people click before they think. Schwartz said he was not certain of the exact mechanics but believed, based on a quick look, that the emails “were somehow injected into Robinhood’s actual email infrastructure at some point.” That matters because the filters that most email providers use check to see if a message really came from the domain it says it did. If the sending path looks real, those checks pass, and that’s how the fraud landed in Schwartz’s inbox looking exactly like the genuine article. Robinhood’s support account later confirmed that “some customers received a falsified email from [email protected],” adding that the attack exploited its account creation flow and that no systems were breached, no personal information was exposed, and no funds were touched. The company’s guidance was for customers to delete the email, not click anything, and contact Robinhood through the app if worried. A Pattern That Keeps Repeating Reactions on X came quickly, with one user asking how a company of Robinhood’s size could have its official email compromised at all, while another, Demosthenes, noted that scam emails tend to multiply during unsettled market periods. Web3 builder Dpac claimed they had received a similar phishing email two days earlier from attackers impersonating XRP Cafe and flagged a separate wave running through X itself, with hijacked accounts sending malicious links via direct messages and multiple reports of wallets being drained. None of this is happening in isolation, with Ledger users in January being hit with phishing emails after a data breach at third-party e-commerce partner Global-e exposed their contacts and order details. Scammers then sent fake merger notices asking them to enter wallet recovery phrases on a fake website. Furthermore, a February report by Scam Sniffer said phishing losses had climbed 207% from December, costing victims $6.27 million across 4,741 cases as attackers used wallet poisoning and fraudulent approvals to trick users into signing away access to funds. The following month, the FBI warned Tron users about fake tokens impersonating the agency and pointing people toward a site built to harvest wallet credentials. The post Ripple’s David Schwartz Warns of Phishing Campaign Using Robinhood Emails appeared first on CryptoPotato .

获取加密通讯
阅读免责声明 : 此处提供的所有内容我们的网站,超链接网站,相关应用程序,论坛,博客,社交媒体帐户和其他平台(“网站”)仅供您提供一般信息,从第三方采购。 我们不对与我们的内容有任何形式的保证,包括但不限于准确性和更新性。 我们提供的内容中没有任何内容构成财务建议,法律建议或任何其他形式的建议,以满足您对任何目的的特定依赖。 任何使用或依赖我们的内容完全由您自行承担风险和自由裁量权。 在依赖它们之前,您应该进行自己的研究,审查,分析和验证我们的内容。 交易是一项高风险的活动,可能导致重大损失,因此请在做出任何决定之前咨询您的财务顾问。 我们网站上的任何内容均不构成招揽或要约