Singapore Firm Loses $11.8M in Crypto Job Scam via Malware Deployment
Security
Bearish

Singapore Firm Loses $11.8M in Crypto Job Scam via Malware Deployment

A Singapore company lost $11.8 million after attackers used a fake cryptocurrency job offer to deploy malware on a company device and bypass multi-factor authentication. The Singapore Police Force and Cyber Security Agency said the attackers harvested session tokens to gain access to corporate systems and transaction controls.

Aug 14, 2026, 04:01 PM1 min read

Written by CoinArticle’s AI Newsroom · from 2 cited sources. How we work

How the Attack Unfolded

Attackers posed as recruiters offering cryptocurrency positions and directed a company employee to complete a fraudulent coding assessment. The assessment contained malware that harvested a session token from the infected device, according to Singapore's Police Force and Cyber Security Agency. The token allowed attackers to bypass the company's multi-factor authentication protections and access the corporate code repository and transaction systems.

The Financial Toll

The breach resulted in $11.8 million in losses, making it one of the largest cryptocurrency-related scams tied to job impersonation in Singapore. Authorities did not disclose whether the attackers used the code repository access to alter transaction logic or directly manipulated outbound payments. The incident highlights how session token theft can circumvent security layers that would normally require additional verification from the legitimate user.

Broader Implications

The attack underscores the effectiveness of social engineering targeting highly technical staff. Cryptocurrency companies and financial firms remain frequent targets because their employees have access to systems that control large fund movements. Singapore's regulators issued no specific guidance on session token security or hiring verification protocols, though the case was flagged as a warning by both the Police Force and Cyber Security Agency.

Why It Matters

For Traders

Cryptocurrency firms may tighten internal controls and audit transaction logs, which could briefly slow fund movements or trigger additional verification delays for large withdrawals.

For Investors

The incident signals ongoing vulnerability in hiring workflows at crypto companies; insurance and compliance costs may rise sector-wide if similar breaches become frequent.

For Builders

Session token management and zero-trust architecture for code repository access warrant hardening; developers should review session lifetime policies and enforce conditional access controls.

This article is for information only and is not financial advice. Read the full disclaimer.

Related Articles

Latest News