Yesterday I have just suffered a scam for an approximate value of 400 USD invoking the name of this Community.
I make the disclaimer here not because I consider the same responsible for the fact that any user can anonymously impersonate a representative or moderator of the same but because the crime was perpetrated using the name of LeoFinance.
Therefore I think it is important for everyone to be warned of these attitudes. That tomorrow may touch another user and / or another Community.
The responsibility is mine, something incautious on my part, lack of experience, etc.. But what strikes me powerfully is the ease of fraud using HiveSigner.
It is evident that this person knows the code to adulterate it to his own benefit.
HiveSigner normally requires some confirmations to withdraw the funds or transfer them to another user.
In this case the already fraudulent link (obviously I didn't know about it) prompting users to vote for the LeoFinance token was automatically activated after the click without any confirmation.
Here is the anomaly. At no time was I warned of the withdrawal. I noticed it a few minutes later when even the user had already made it disappear from his wallet.
Here are the details of the scam step by step:
a) As seen in the initial image of the post in a comment the user mentioning eLoFinance invites to vote the token of this Community.
b) I click to vote for it. HiveSigner opens. I access it and automatically a message tells me that in three days I will start receiving the reward.
c) At no time I am warned of the withdrawal and much less of the amount of HIVE and HBD transferred.
d) By chance a few minutes later I check the wallet and I see that all the HIVE and HBD tokens are gone.
e) I go to the user's account and see that he has received them.
f) After a few minutes he has made them disappear.
I repeat: I should never have clicked on a link in a comment. But I am amazed at how easy it is to get HiveSigner into my wallet and steal my money. Just like that.
I don't know if there is any way to get it back. If so, I would be grateful if you could let me know.
This is the responsible user @gregoryoo24 to whose account the withdrawn funds went. However the comment with the fraudulent link was from this other user @tomlee
This is the post with the comment that includes the fraudulent link: @greengalletti/engesp-los-fronterizos-de-peter-hoeg-es-una-critica-hacia-el-mecanismo-de-aniquilacion-de-la-memoria-de-los-institutos-psiquiatr