Industry News

Fake Google Ads Used to Steal $550,000 in Crypto Phishing Scam

The Block · 14 Aug 2026
Key Takeaway Always navigate to sensitive login pages (banking, crypto, business accounts) by typing the address directly or using a bookmark rather than clicking on search ads.

A cybersecurity specialist has reported that a phishing scam run through fraudulent Google ads led to the theft of $550,000 from a user of the crypto platform Hyperliquid. Attackers used paid search ads to lure victims to fake websites designed to steal login credentials or trick users into authorising malicious transactions.

The crypto security nonprofit Security Alliance (SEAL) said it had identified and blocked 356 malicious Google ad URLs over several weeks in April, highlighting how widespread this type of scam has become. These campaigns often mimic legitimate platform login pages, appearing high in search results due to paid advertising, making them convincing even to experienced users.

While this incident targeted a crypto platform user, the tactic—using fake search ads to impersonate trusted brands—applies broadly across industries, including banking, software, and business services. Small businesses and their staff should be cautious when clicking on sponsored search results, especially for financial or account login pages.

phishing cryptocurrency online scams

Summarised by CISO AI from The Block. We link back to every original so you can read it yourself.